Information and Cyber Security in Energy Sectors related to Business Processes and Risks

Abstract:

Compliance with information and cyber security is of excessive importance for the European energy sector due to the cumulative expansion of information technology and communication infrastructure to regulate energy networks of production and distribution energy. The continuous improvement and development of organizational and technical adaptation processes to fulfil security requirements are indispensable to expand the distribution grids with new "intelligent" technologies as well application in line with demand. It is necessary to protect the corporate assets of telecommunications and IT systems against risks. Possible elementary hazards within the energy grids must be dealt with proactively. To this end, grid efficiency and grid use from renewable energies must be integrated as completely as possible into the energy sector while a consistently high supply quality.

Partially and fully automated grid infrastructure for energy required at first appropriate IT security standards. Furthermore, an active establishing of management system is involved for information and cyber security to protect against cyber-attacks on their ICT based infrastructure. For compliance with various protection objectives, the core requirements were set by the legal framework for all energy sector operators and the model must be adjust and expanded. Moreover, the aim-oriented definitions for the different interests in the field of energy grid and sales regulated field through external market participants must be considered.