首页 | 本学科首页   官方微博 | 高级检索  
     

美国电力行业信息安全运作机制和策略分析
引用本文:朱晓燕,方泉. 美国电力行业信息安全运作机制和策略分析[J]. 中国电力, 2015, 48(5): 81-88. DOI: 10.11930.2015.5.81
作者姓名:朱晓燕  方泉
作者单位:江苏电力信息技术有限公司,江苏 南京 210024
摘    要:网络威胁对电力系统的影响是涉及国家安全、公共安全和国民经济的至关重要的问题。美国已形成了多方协同的电力行业信息安全运作机制。以美国电力行业信息安全的战略框架及其实施策略为切入点,梳理了承担美国电力行业信息安全相关职责的政府机构和组织的职责及其工作现状,研究了参与美国电力行业信息安全研究的机构和组织的工作成果。从信息安全标准、安全文化建设、风险管理、协作共享以及网络攻击响应5个角度分析了美国电力行业信息安全运作策略。电力行业信息安全的持续运作和良性发展,不仅需要标准规范的不断完善和主动执行,更需要安全文化、安全风险、应急响应等方面的切实有效的管理和协同。

关 键 词:电力行业  能源传输系统  信息安全  风险管理  协作共享  应急响应  
收稿时间:2015-01-29

Study on Mechanism and Strategy of Cybersecurity in U.S. Electric Power Industry
ZHU Xiaoyan,FANG Quan. Study on Mechanism and Strategy of Cybersecurity in U.S. Electric Power Industry[J]. Electric Power, 2015, 48(5): 81-88. DOI: 10.11930.2015.5.81
Authors:ZHU Xiaoyan  FANG Quan
Affiliation:Jiangsu Electric Power Information Technology Corporation, Nanjing 210024, China
Abstract:Cyber threats to electric power system have great impact on the national security, public safety and country economy. After years of researches and practices, the United States of America (US) has well formed a multi-party cooperative mechanism for the cybersecurity to safeguard the operation of electric power industry. The cybersecurity framework and strategy for electric power industry in US is presented first. The corresponding duty and its working status of related government agencies and organizations involved in the cybersecurity of the electric power industry is then introduced respectively. The study results and working conclusions of US research institutions and organizations are also briefed. Based on those information, the characteristics of cyber security mechanism in US are studied and analyzed from different points of view including cyber security standard, culture construction, risk management, collaboration and information sharing, and effective response to cyber-attacks. In order to sustain the cybersecurity and evolvement of power information security, not only the standard and specification are required to be continuously improved and actively implemented, but also the culture of security, the risk management, the collaboration and information sharing, the effective response to cyber-attacks are needed to be effectively coordinated and managed.
Keywords:electric power industry   energy delivery systems   cyber security   management of risk   collaboration and information sharing   cyber incident response  
点击此处可从《中国电力》浏览原始摘要信息
点击此处可从《中国电力》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号