Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Secure by Design”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 235 records · Page 13

NASA Aeronautics Research Mission Directorate System Security Engineering Approaches

System security engineering (SSE) is a set of formal engineering methods and is considered a subset of systems engineering. It is a relatively new development in systems engineering with the initial NIST (National Institute of Standards) standard published in November of 2016 with updates in 2018, and 2022. The guiding principles in our methodology are based in NIST Special Publication 800-160 Vol. 1 “Systems Security Engineering: Considerations For A Multidisciplinary Approach In The Engineering Of Trustworthy Secure Systems” and integrate methodologies from common IT (Information Technology) threat modeling approaches utilizing MBSE (Model-Based Systems Engineering). The presentation will discuss how our teams utilize SSE and MBSE (Model-Based Systems Engineering) to develop secure architectures for systems under development in our NASA aeronautics research environment. This includes the activities to develop Protection Needs (PN) that, in turn result in security requirements in the design context and policies for the future state operational context for system protection. The process of applying SSE to analyze project architectures and ConOps (Concept of Operations) is intended to ensure the transferred research is both secure and securable in a “real-world” setting.

Systems Security Engineering↗

Security System Software

C Language Integration Production System (CLIPS), a NASA-developed expert systems program, has enabled a security systems manufacturer to design a new generation of hardware. C.CURESystem 1 Plus, manufactured by Software House, is a software based system that is used with a variety of access control hardware at installations around the world. Users can manage large amounts of information, solve unique security problems and control entry and time scheduling. CLIPS acts as an information management tool when accessed by C.CURESystem 1 Plus. It asks questions about the hardware and when given the answer, recommends possible quick solutions by non-expert persons.

Source record↗

Our teams design high-resolution MeV x-ray radiography systems for National security missions [Poster]

The NNSS has been at the forefront of custom high-fidelity x-ray/gamma radiographic imaging solutions that serve our national security for over five decades. Our radiography team utilizes expertise in physics modeling and analysis, along with optical, mechanical, and electrical design, in close collaboration with our customers, to develop imaging methods and capabilities that go beyond their needs. Conceptual designs are developed through R&D efforts to provide solutions for the specific problem at hand. Field systems are designed and built in-house, then qualified utilizing a range of facilities across the National Security Enterprise. Radiographic imaging systems are deployed by our team in the most challenging environments. The NNSS has a strong math and programming team that provides novel on-site image analysis methods that extract crucial information from data returned in field tests.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

Safe Grid

The biggest users of GRID technologies came from the science and technology communities. These consist of government, industry and academia (national and international). The NASA GRID is moving into a higher technology readiness level (TRL) today; and as a joint effort among these leaders within government, academia, and industry, the NASA GRID plans to extend availability to enable scientists and engineers across these geographical boundaries collaborate to solve important problems facing the world in the 21 st century. In order to enable NASA programs and missions to use IPG resources for program and mission design, the IPG capabilities needs to be accessible from inside the NASA center networks. However, because different NASA centers maintain different security domains, the GRID penetration across different firewalls is a concern for center security people. This is the reason why some IPG resources are been separated from the NASA center network. Also, because of the center network security and ITAR concerns, the NASA IPG resource owner may not have full control over who can access remotely from outside the NASA center. In order to obtain organizational approval for secured remote access, the IPG infrastructure needs to be adapted to work with the NASA business process. Improvements need to be made before the IPG can be used for NASA program and mission development. The Secured Advanced Federated Environment (SAFE) technology is designed to provide federated security across NASA center and NASA partner's security domains. Instead of one giant center firewall which can be difficult to modify for different GRID applications, the SAFE "micro security domain" provide large number of professionally managed "micro firewalls" that can allow NASA centers to accept remote IPG access without the worry of damaging other center resources. The SAFE policy-driven capability-based federated security mechanism can enable joint organizational and resource owner approved remote access from outside of NASA centers. A SAFE enabled IPG can enable IPG capabilities to be available to NASA mission design teams across different NASA center and partner company firewalls. This paper will first discuss some of the potential security issues for IPG to work across NASA center firewalls. We will then present the SAFE federated security model. Finally we will present the concept of the architecture of a SAFE enabled IPG and how it can benefit NASA mission development.

Chow, Edward T.↗

NASA's Photon-Counting SLR2000 Satellite Laser Ranging System: Progress and Applications

NASA's new unmanned SLR2000 system is designed to track, with millimeter precision and using single photon returns, a constellation of roughly 24 retroreflector-equipped satellites, which range in altitude from about 300 km to 20,000 km. Totally autonomous operation and a common engineering configuration are expected to greatly reduce station operations costs relative to NASA's current manned systems. The system has also been designed with a goal of significantly lowering replication costs. All of the prototype components and subsystems have been completed and tested and have substantially met the original specifications. The prototype system is presently undergoing final integration and testing in a dedicated shelter with an azimuth tracking dome synchronized to the optical tracking mount. The facility also features a number of security features such as security cameras and sensors designed to detect power or thermal control problems or entry by unauthorized personnel. Field tests are in progress. The present paper provides an overview of the various subsystems and test results to date. The meteorological subsystem, which has operated successfully in the field for almost three years, consists of several sensors which measure: (1) pressure, temperature, and relative humidity; (2) wind speed and direction; (3) ground visibility and precipitation; and (4) local cloud cover as a function of station azimuth and elevation (day and night). A "pseudo-operator" software program interprets the sensor readings and modifies satellite tracking priorities based on local meteorological conditions.

Degnan, John J.↗

Battery Energy Storage Systems Report

Battery energy storage systems (BESS) are a critical component of grid reliability and resilience today, providing rapid response capabilities while enabling grid modernization and capacity expansion across the United States. As utilities, communities, and customers prepare to deploy significant BESS capacity over the next several years, the United States has an opportunity to build security into battery system design and deployments. This report provides a framework for assessing the current dominance of foreign-manufactured components in the supply chains for BESS, inverter-based resources, and transformers. It offers high-impact, actionable solutions to service partners, industry, and government to address supply chain risks for currently installed, in design, and future deployments.

24 - POWER TRANSMISSION AND DISTRIBUTION↗

Protecting Websites from Cross-Site Scripting (XSS) Attacks: A Novel Configuration using Pulse Secure © Pulse Connect Secure © and Virtual Web Application Firewall (vWAF)

Cross-site scripting (XSS), one of the most prevalent forms of client-side attacks, is when bad actors attempt to access sensitive information from the backend web server and other systems on the backend network. Some XSS attacks attempt to access client-side sensitive information, such as cookies. Web application firewalls (WAFs) are a first line of defense where common Uniform Resource Locator (URL) patterns are analyzed to detect and block known attacks. This paper describes a novel configuration using the Pulse Secure © Pulse Connect Secure © (PCS © ) Secure Socket Layer Virtual Private Network software and Virtual Web Application Firewall (vWAF) that protects a website from XSS attacks. This paper also presents novel aspects of the configuration that control the redirection of traffic through the vWAF and provide fine-grained behavioral control at the application level while decoupling the PCS and vWAF configurations. The intended audience for this paper comprises system and site administrators who are familiar with standard web server environments. These configuration details might prove useful during the design of a more secure infrastructure.

97 MATHEMATICS AND COMPUTING↗

Engineering-In Cybersecurity

Cyber-Informed Engineering is a framework which allows engineers to build resiliency to the impacts of cyber attack into engineered systems starting in the early design phases. This article introduces the framework and provides a description of some of its principles and resources for learning more.

42 ENGINEERING↗

Proposed Subcritical Assembly for Nuclear Criticality Safety Training at the Oak Ridge National Laboratory

The design of a new subcritical assembly at Oak Ridge National Laboratory (ORNL) has been finalized. This design takes the feasibility study of the subcritical assembly performed in August 2020 to an implementable design. This subcritical assembly will support the Nuclear Criticality Safety Program (NCSP) training and education program. The addition of this subcritical assembly into the NCSP training and education will enhance the program by providing backup capacity for training if nuclear facility operations are disrupted at Sandia National Laboratories or the National Criticality Experiments Research Center; providing a new location that is more accessible to students in the Eastern portion of the United States; providing flexibility to support students from a diverse background (e.g., university students, foreign nationals). The proposed subcritical assembly uses legacy AGN-201M research reactor fuel plates that are available at the Y-12 National Security Complex. The final design of this subcritical assembly contains approximately 617 grams of 235 U as UO 2 powder distributed homogeneously in polyethylene. The fuel plates will have a graphite neutron reflector to obtain a core multiplication, M, from 10 to 20, corresponding to a $k_{eff}$ of 0.90 to 0.95, respectively. The subcritical assembly will be able to support at least four experiments for the training courses: (1) the addition of fissile material to the core (mass), (2) a core separation experiment (interaction), (3) the addition of moderators to the core (moderation), and (4) the addition of neutron absorbers to the core (poison/absorption). The subcritical assembly will be designed to be inherently safe—subcritical under all normal and abnormal conditions— and will provide the capability to conduct hands-on training to support NCSP and general nuclear criticality safety staff training and qualification goals.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

International Nuclear Security Nuclear Material Accounting and Control Instructions for Use and Supplementary Documentation

This document describes the use of exercise kits (called NMAC Kits) developed to support training and technical engagements sponsored by DOE/NNSA Office of Nuclear Security (INS) in the use of nuclear material accounting and control (NMAC) methodologies in support of nuclear security. INS has previously used other similar kits that were originally designed to support NMAC training for international safeguards purposes. These new kits are specifically designed to be used in nuclear security training and emphasis the role NMAC plays in nuclear security as well as security against the insider threat. Planning for the development of these kits is described in LA-UR-24-30063, FY24 NMAC Kits Upgrade and served as the initial framework for the development of the new NMAC Kit material in FY25.

98 NUCLEAR DISARMAMENT, SAFEGUARDS, AND PHYSICAL P↗

Laboratory Tool

Veterans Administration medical researchers, along with Langley Research Center are investigating possibility that peritoneal membrane (lining of abdominal cavity) can absorb nutrients and thus provide alternative route for nutrition when intestinal function is impaired. Apparatus (cake box design) consists of octagonal chamber with eight smaller chambers attached and secured by O-ring seals. Design is simple, interchangeable, and time controllable.

Source record↗

Development of a Helical Closure for Radioactive Material Shipping Packages

The Savannah River National Laboratory (SRNL) Packaging Technology group proposed a closure design for the outer packaging of a prototype Type B shipping package being developed for the Department of Energy (DOE). The closure design provides an efficient means of securing the containment vessel (CV) within the radioactive material packaging. This design has a simplified operation, requires less components, and less maintenance when compared to current radioactive material package closure methods. This paper will review and discuss the materials, designs, processes, and testing activities that were considered and pursued in the development of the novel closure for the outer packaging of new radioactive material shipping packages.

Housley, William M. [Savannah River National Labor↗

CMIP6-based Multi-model Streamflow Projections over the Conterminous US, Version 1.1

This dataset presents an ensemble of streamflow projections covering the conterminous United States (CONUS), developed to support the SECURE Water Act Section 9505 Assessment for the US Department of Energy (DOE) Water Power Technologies Office (WPTO). Multiple Coupled Models Intercomparison Project phase 6 (CMIP6) Global Climate Models (GCMs) were downscaled using either statistical (DBCCA) or dynamical (RegCM) downscaling methods, based on two meteorological reference datasets (Daymet and Livneh). Subsequently, the downscaled precipitation, temperature, and wind speed data were used to drive two calibrated hydrologic models (VIC and PRMS), with total runoff routed through the Routing Application for Parallel computatIon of Discharge (RAPID) routing model, producing an ensemble of streamflow projections across 2.7 million NHDPlusV2 stream reaches across the CONUS. Each ensemble member covers the 1980-2019 baseline and 2020-2059 near-future periods under the high-end (SSP585) emission scenario. Additionally, using only DBCCA and Daymet, the projections extend to the 2060-2099 far-future period and encompass three additional emission scenarios (SSP370, SSP245, and SSP126). This dataset is designed to support the SECURE Water Act Section 9505 Assessment for the US Department of Energy (DOE) Water Power Technologies Office (WPTO). For further details, refer to Kao et al. (2022), Rastogi et al. (2022), and Ghimire et al. (2023).

13 HYDRO ENERGY↗

Advanced Reactor Safeguards Program Roadmap

The Advanced Reactor Safeguards (ARS) program was established in 2020 as part of appropriations for the Advanced Reactor Demonstration Program (ARDP) through the Office of Nuclear Energy in the Department of Energy. The goal of this program is to help address near term challenges that advanced nuclear reactor vendors face in meeting domestic Material Control and Accountancy (MC&A) and Physical Protection System (PPS) requirements for U.S. construction. Existing regulations for safeguards and security, as outlined in the Code of Federal Regulations, were written for large light water reactors, and some of the requirements are not suited to smaller, safer advanced reactor designs. The ARS program seeks to remove roadblocks in the deployment of new and advanced reactors by solving regulatory challenges, reducing safeguards and security costs, and utilizing the latest technologies and approaches for robust plant monitoring and protection. Safeguards and Security by Design (SSBD), or the consideration of safeguards and security requirements early in the design process, is an overarching principle that guides this program. This roadmap discusses the goals of the ARS program, current research, and program plan for the next five years.

21 SPECIFIC NUCLEAR REACTORS AND ASSOCIATED PLANTS↗

Modeling and Simulation of Fuel Burnup in Pebble Bed Reactors

Modeling and simulation of fuel burnup plays important roles in reactor design, operation, safety, and security as well as nuclear material control and accounting (MC&A) [1]. This task is uniquely challenging for pebble bed reactors (PBR) because the pebbles are continuously added and recycled into the reactor core, and their paths through the core are random. To address this problem, we present two simulation models in this paper. Brookhaven National Laboratory (BNL) developed a simple lattice model of a PBR in Serpent software to generate used pebble isotopic concentrations. The benefit of using Serpent software in this specific application is that it helps streamline the data generation process without having to use too many independent software codes in combination to achieve a simple task. For example, transport, burnup and zero power decay can be implemented in a single pass. Three-dimensional core models were developed using Serpent to simulate the burnup process of 5 subject pebbles starting from fresh till they reach nearly target burnup, with each pebble placed in one of the five artificially designated radial channels to capture the changing neutron spectra along the core radius. Equilibrium isotopic concentrations were assumed in all other pebbles in the core. To provide a verification for the Serpent isotope transmutation and decay results, Oak Ridge National Laboratory (ORNL) performed simple SCALE/ORIGEN calculations using the average neutron spectra calculated by Serpent for each of the 5 pebbles. The 252-group neutron spectra from Serpent were then used by ORIGEN to produce the one-group library for depletion and decay calculations. The isotopic concentrations of a few nuclides of interest and neutron and gamma source terms produced from the ORIGEN calculations were compared with the ones from the Serpent calculations. The model simulated in this work was based on the Pebble Bed Modular Reactor (PBMR)-400 design because many data needed for the simulation such as core power profiles, fuel and reflector temperatures, and equilibrium core composition are publicly available. In this paper, we will compare the results between these two approaches and benchmark the results against a set of well-established simulation results for PBMR-400.

Dim, Odera↗

Modeling and Simulation of Fuel Burnup in Pebble Bed Reactors

Modeling and simulation of fuel burnup plays important roles in reactor design, operation, safety, and security as well as nuclear material control and accounting (MC&A) [1]. This task is uniquely challenging for pebble bed reactors (PBR) because the pebbles are continuously added and recycled into the reactor core, and their paths through the core are random. To address this problem, we present two simulation models in this paper. Brookhaven National Laboratory (BNL) developed a simple lattice model of a PBR in Serpent software to generate used pebble isotopic concentrations. The benefit of using Serpent software in this specific application is that it helps streamline the data generation process without having to use too many independent software codes in combination to achieve a simple task. For example, transport, burnup and zero power decay can be implemented in a single pass. Three-dimensional core models were developed using Serpent to simulate the burnup process of five subject pebbles starting from fresh till they reach nearly target burnup, with each pebble placed in one of the five artificially designated radial channels to capture the changing neutron spectra along the core radius. Equilibrium isotopic concentrations were assumed in all other pebbles in the core. To provide a verification for the Serpent isotope transmutation and decay results, Oak Ridge National Laboratory (ORNL) performed simple SCALE/ORIGEN calculations using the average neutron spectra calculated by Serpent for each of the five pebbles. The 252-group neutron spectra from Serpent were then used by ORIGEN to produce the one-group library for depletion and decay calculations. The isotopic concentrations of a few nuclides of interest and neutron and gamma source terms produced from the ORIGEN calculations were compared with the ones from the Serpent calculations. The model simulated in this work was based on the Pebble Bed Modular Reactor (PBMR)-400 design because many data needed for the simulation such as core power profiles, fuel and reflector temperatures, and equilibrium core composition are publicly available. In this paper, we will compare the results between these two approaches and benchmark the results against a set of well-established simulation results for PBMR-400.

98 NUCLEAR DISARMAMENT, SAFEGUARDS, AND PHYSICAL P↗

Real-World Cyber Security Demonstration for Networked Electric Drives

In this article, we present the design and implementation of a cyber-physical security testbed for networked electric drive systems, aimed at conducting real-world security demonstrations. To our knowledge, this is one of the first security testbeds for networked electric drives, seamlessly integrating the domains of power electronics and computer science, and cybersecurity. By doing so, the testbed offers a comprehensive platform to explore and understand the intricate and often complex interactions between cyber and physical systems. The core of our testbed consists of four electric machine drives, meticulously configured to emulate small-scale but realistic information technology (IT) and operational technology (OT) networks. This setup both provides a controlled environment for simulating a wide array of cyber-attacks, and mirrors potential real-world attack scenarios with a high degree of fidelity. The testbed serves as an invaluable resource for the study of cyber-physical security, offering a practical and dynamic platform for testing and validating cybersecurity measures in the context of networked electric drive systems. As a concrete example of the testbed's capabilities, we have developed and implemented a Python-based script designed to execute step-stone attacks over a wireless local area network (WLAN). This script leverages a sequence of target IP addresses, simulating a real-world attack vector that could be exploited by adversaries. To counteract such threats, we demonstrate the efficacy of our developed cyber-attack detection algorithms, which are integral to our testbed's security framework. Furthermore, the testbed incorporates a real-time visualization system using InfluxDB and Grafana, providing a dynamic and interactive representation of networked electric drives and their associated security monitoring mechanisms. This visualization component not only enhances the testbed's usability but also offers insightful, real-time data for researchers and practitioners, thereby facilitating a deeper understanding of cyber-physical security dynamics in networked electric drive systems.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Cyber-Informed Engineering Implementation Guide: Version 1.0 [Slides]

This Implementation Guide describes the principles of Cyber-Informed Engineering (CIE) and outlines questions that engineering teams should consider during each phase of a system's lifecycle to effectively employ these principles. It describes what it means to engineer systems in a cyber-informed way, rather than offering a comprehensive, step-by-step process or procedure for CIE implementation. This guide complements - but does not replace - the application of cybersecurity standards or practices currently in place within an organization. Engineers and technicians that design critical energy infrastructure installations can use this Implementation Guide to integrate the 12 principles of CIE into each phase of the engineering lifecycle, from concept to retirement. The guide is aimed at system or design engineers, rather than software engineers or operational cybersecurity practitioners. The engineers who design, build, operate, and maintain the physical infrastructure are best positioned to leverage a system's engineering design to diminish the severity of cyber attacks or digital technology failures. CIE expands cybersecurity decisions into the engineering space, not by asking engineers to become cyber experts, but by calling on engineers to apply engineering tools and make engineering decisions that improve cybersecurity outcomes. CIE examines the engineering consequences that a sophisticated cyber attacker could achieve and drives engineering changes that may provide deterministic mitigations to limit or eliminate those consequences.

24 POWER TRANSMISSION AND DISTRIBUTION↗