Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Cybersecurity Resilience”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 145 records · Page 8

Evaluation of IEC 62443 Standard Gaps for Electric Grid Substation Model Use Case

This report presents an evaluation of the IEC 62443 standards in the context of electric grid substations, as part of a collaborative effort among Sandia National Laboratories (SNL), Idaho National Laboratory (INL), and the National Renewable Energy Laboratory (NREL). The primary objective is to assess the applicability of these standards to enhance cybersecurity measures for industrial automation and control systems (IACS) within the energy sector. The evaluation identifies strengths, such as the scalability of security levels and the structured lifecycle guidance provided by IEC 62443. However, it also highlights significant gaps, including limited integration of physical security, insufficient guidance for legacy systems, and challenges in addressing emerging threats like supply chain vulnerabilities. Recommendations for refining the standards are proposed, including the need for tailored guidance for securing legacy systems, integrating physical security with cybersecurity frameworks, and enhancing interoperability across multi-vendor environments. By addressing these gaps, the IEC 62443 standards can be strengthened to ensure comprehensive cybersecurity for electric grid substations, thereby supporting the resilience and reliability of critical energy infrastructure.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Cybersecurity Standards for Photovoltaic Operations

Solar energy plays an important role in securing a more resilient, cyber-secure electrical grid in Pennsylvania. Solar's ability to be widely "distributed" on residential and large roofs, marginal lands, and many other locations across Pennsylvania - as opposed to being centralized - offers a strong option for addressing the myriad of potential disruptions that can occur to the grid's infrastructure. And when combined with energy storage, local energy needs can be met immediately without having to wait on the delivery of an off-site fuel source. As more and more distributed solar electricity generation is brought online, researchers, technology developers, solar developers and grid operators are paying close attention to the potential for solar to enhance grid cybersecurity. Although nobody may know when, where, or how the next cyberattack will take place, there are security measures, technical solutions, and management practices that are being implemented across the industry to protect against network control issues and grid operations. Everyone participating in the solar value chain stands to gain from a coordinated, iterative approach to protect against cyber vulnerabilities and build deeper resilience into the architecture of our grid.

cybersecurity↗

Cybersecurity Guide for Distributed Wind Presentation

This presentation communicates information about the MIRACL project Resilience Metrics report and Resilience Framework report. It was created for the 2021 MIRACL advisory board meeting. Distributed wind sits at the intersection of grid-connected, off-grid and behind-the-meter cyber-physical electrical energy systems. The unique physical properties and communications requirements for distributed wind systems mean that there are unique cybersecurity considerations, but there is little to no existing guidance on best practices for cybersecurity. This presentation is intended to be a starting point for distributed wind stakeholders including manufacturers, installers and integrators, and operators (facility, aggregator, or utility). A holistic threat perspective is used to describe the adversaries, threats, and potential impacts of cyberattacks, with special emphasis on what sets distributed wind systems apart from other distributed energy resources (DER). We present the recommendations for cybersecurity, both in terms of needs of the system and roles that specific stakeholders should fulfill. Distributed wind systems can come in a variety of architectures and applications, so there is no one-size-fits-all approach to cybersecurity. However, this document contains the relevant information for stakeholders to identify the cybersecurity needs of their system, refer to relevant standards, and apply best practices in a manner most consistent with their security and operational goals.

17 WIND ENERGY↗

Cyber-Informed Engineering (CIE) – Engineered Controls Database and Use

Cyber-Informed Engineering (CIE) addresses the reality that cyber-attacks on engineered systems can have consequences far beyond data loss or disruption of digital networks. When control systems are compromised, safety, reliability, and performance of the physical process itself may be threatened. This database is meant to establish clear examples and guidance for defining and applying engineered controls in CIE. It explains what engineered controls are, how they differ from information security measures, and how they are integrated into system design. The goal is to ensure that resilience is engineered into systems from the outset. Unlike cybersecurity protections that defend the digital layer, engineered controls act directly at the physical and algorithmic levels to guarantee that unacceptable consequences are prevented or limited. CIE keeps the consequences of a cyber attack from impacting the safety, reliability, and performance of engineered systems.

42 - ENGINEERING↗

SDN-Based Smart Cyber Switching (SCS) for Cyber Restoration of a Digital Substation

In recent years, critical infrastructure and power grids have increasingly been targets of cyber-attacks, causing widespread and extended blackouts. Digital substations are particularly vulnerable to such cyber incursions, jeopardizing grid stability. This paper addresses these risks by proposing a cybersecurity framework that leverages software-defined networking (SDN) to bolster the resilience of substations based on the IEC- 61850 standard. The research introduces a strategy involving smart cyber switching (SCS) for mitigation and concurrent intelligent electronic device (CIED) for restoration, ensuring ongoing operational integrity and cybersecurity within a substation. The SCS framework improves the physical network’s behavior (i.e., leveraging commercial SDN capabilities) by incorporating an adaptive port controller (APC) module for dynamic port management and an intrusion detection system (IDS) to detect and counteract malicious IEC-61850-based sampled value (SV) and generic object-oriented system event (GOOSE) messages within the substation’s communication network. The framework’s effectiveness is validated through comprehensive simulations and a hardware-in-the-loop (HIL) testbed, demonstrating its ability to sustain substation operations during cyber-attacks and significantly improve the overall resilience of the power grid.

Liu, Chen-Ching (ORCID:0000000289417958)↗

Securing The Future: 2026 Manufacturing & Critical Infrastructure Threat Landscape

This report outlines the current state of manufacturing weaknesses introduced by the complexities of modern environments, including cloud services and Internet of Things (IoT) devices, with particular attention paid to the unique vulnerabilities encountered by SMMs. It also highlights CyManII’s strategic initiatives and collaborative solutions to mitigate these risks and strengthen the cybersecurity posture of the manufacturing ecosystem. Utilizing data from 2025 to inform forward-looking mitigation strategies, this report provides manufacturers with a clear understanding of both current and emerging cybersecurity threats, as well as practical opportunities to strengthen their cyber ecosystems. The following sections detail key vulnerabilities and threat vectors, along with actionable mitigation strategies, many of which have been developed or piloted through CyManII-led efforts. A thorough understanding of these risks and mitigation strategies is essential for manufacturers seeking to strengthen the security and resilience of their manufacturing operations.

3D Printing↗

Engineering Controls Database

Cyber-Informed Engineering (CIE) addresses the reality that cyber attacks on engineered systems can have consequences far beyond data loss or disruption of digital networks. When control systems are compromised, safety, reliability, and performance of the physical process itself may be threatened. This database is meant to establish clear examples and guidance for defining and applying engineered controls in CIE. It explains what engineered controls are, how they differ from information security measures, and how they are integrated into system design. The goal is to ensure that resilience is engineered into systems from the outset. Unlike cybersecurity protections that defend the digital layer, engineered controls act directly at the physical and algorithmic levels to guarantee that unacceptable consequences are prevented or limited. CIE keeps the consequences of a cyber attack from impacting the safety, reliability, and performance of engineered systems.

Source record↗

Geothermal Sector Cybersecurity Vulnerability Assessment

A review of geothermal sector-specific cybersecurity vulnerabilities and risks (consequences) was conducted at the request of the Geothermal Technologies Office (GTO). The vulnerabilities and risks reviewed in this study have relevance to achieving the 2019 GeoVision Report (DOE GTO 2019) technological advancements and expected sector growth. The study offers areas for consideration but does not quantify the likelihood (frequency) of the consequences. This cybersecurity analysis project represents a proactive effort to identify areas to enhance cybersecurity in geothermal development and operations. It was not initiated to address any immediate threat or specific known risk. Of the eight identified vulnerabilities analyzed, the review identified reservoir data system monitoring as one that is unique to geothermal systems and may warrant further investigation to better understand risk and mitigation. A detailed analysis of the other vulnerabilities may highlight additional uniqueness relative to other industries. Further research actions are recommended to better quantify risk and enhance cybersecurity preparedness of the sector. As the geothermal industry grows, the cybersecurity strategies to be deployed will be of increasing importance to ensure resilient, reliable, and secure clean energy for years to come.

cyber-physical security↗

Bridge Seismic Screening Tool (BSST), Version 2.0

The Regional Resiliency Assessment Program (RRAP) is a cooperative assessment of specific critical infrastructure within a designated geographic area and a regional analysis of the surrounding infrastructure that addresses a range of infrastructure resilience issues that could have regionally and nationally significant consequences. In 2018, DHS’s Cybersecurity and Infrastructure Security Agency (CISA) sponsored the Oregon Transportation Systems RRAP project in coordination with the Office of the Governor (under the oversight of the state resilience officer), the Oregon Office of Emergency Management (OEM), the Oregon Department of Transportation (ODOT), and other regional stakeholders (CISA 2021). This project focuses on assessing the impacts of a Cascadia Subduction Zone (CSZ) earthquake on state transportation systems and, in particular, how those impacts may affect the ability of emergency response efforts to move supplies into the region. The intended outcome of this analysis is the prioritization of transportation routes and modes for additional planning, investment, hardening, or other activities to enhance their resilience—and therefore, to enhance their ability to support response and recovery efforts following a CSZ earthquake. An important part of this transportation system-level assessment has been to assess the seismic vulnerability of the state highway system. In doing so, the RRAP project team used the Bridge Seismic Screening Tool (BSST) to assess, at a system-level, the potential impacts that a CSZ earthquake could have on state highway bridges (Bergerson et al. 2019).1 Argonne National Laboratory (Argonne), in collaboration with the Washington State Department of Transportation (WSDOT), originally developed the BSST as part of the 2017 Washington State Transportation Systems RRAP project, a sister project to the 2018 Oregon Transportation Systems RRAP project. Argonne updated the BSST during this more recent project in Oregon based on feedback from stakeholders and subject matter experts (SMEs) on the original version of the tool. The first step in the BSST is to assess the seismic vulnerability of roadway bridges following a CSZ earthquake to determine a projected or potential damage state. Damage states then help determine approximate reopening times for bridge crossings.2 This document provides details on the BSST methodology, the implementation of that tool to analyze the projected damage incurred in a CSZ earthquake scenario, and the determination of corresponding reopening times of interstate, state highway, and local bridges following such an event.

58 GEOSCIENCES↗

Transforming Cyber Education thru Open to All Accessible Pathways

Boise State University’s (BSU) Cyber Operations and Resilience CORe program was intentionally designed so that any student, especially non-traditional and non-technical students, with an interest in cybersecurity could have an education and training pathway to enter the cyber workforce. The CORe curriculum focuses on teaching students how to design, apply, and improve cybersecurity through the interaction of people, processes, and technology. CORe is a stackable curriculum with elective credit hours and options for various academic and industry certificates and certifications that enable students to customize their unique career pathway. The CORe program guides students to think about the system being managed, the risks presented, and the dynamic intersection of system elements when considering how to incorporate resilience frameworks in achieving a resilient system. By developing systems thinking, the students gain an understanding of the interdependencies interacting with the operational system. Further, the CORe program encourages students to integrate cybersecurity knowledge with models and frameworks found in other academic disciplines through a unifying systems approach. CORe is designed around the realities of today’s broad cyber landscape: that breaches will occur in any system over time and proactive design of resilience into systems to detect, respond, and recover in a timely and orderly manner is critical. Students are taught to think holistically about cybersecurity focusing on all system elements. CORe is not a traditional cybersecurity degree. CORe is distinguished by the non-traditional engineering, computer science approach to cybersecurity education with the singular focus on infusing resilience operations and transdisciplinary systems thinking principles throughout the curriculum.

99 GENERAL AND MISCELLANEOUS↗

Digital Twin Framework for the Resilient Remote Monitoring and Operation of Nuclear Microreactors

The nuclear industry is developing new advanced reactor technologies, and many companies are conceptualizing designs for microreactors, a class of nuclear reactor with a sub-20 MWth power output designed to be factory fabricated, easily transportable, and simple to control. Microreactors offer promising solutions to several use cases for which large-scale plants would not be suitable, and conventional power generation means, notably diesel electric generators, are expensive and logistically difficult. Many of the potential use cases are in isolated locations such as arctic communities, remote mines, and military installations. Therefore, the cost of microreactor deployment and traditional onsite operations pose a challenge that requires new technical solutions to address. One solution that has the potential to greatly improve economics is to operate and monitor microreactors remotely from a centralized location. Remote monitoring and operation are novel concepts to the nuclear industry and will greatly alter the tasks and responsibilities associated with current commercial nuclear power plant operators. As such, it is important to perform research on potential technological solutions and the impacts those solutions have on operations with end-goal of defining a safe and effective remote concept of operations. This paper proposes a framework for resilient remote operation of microreactors enabled by a novel digital twin implementation.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

Power Systems Resilience

As communities take steps toward identifying and achieving their clean energy goals, the topic of resilience will likely emerge. This presentation aims to help inform and empower communities as they explore how their clean energy projects can address evolving power systems reliability and resilience due to climate change and other factors. The training provides a basic introduction to power systems and the resilience challenges this traditional infrastructure faces, as well as strategies for enhancing this important quality of electric service.

communities↗

Renewable Energy and Storage Cybersecurity Research (RESCue) Pilot Final Report

The Renewable Energy and Storage Cybersecurity Research (RESCue) project is a collaborative effort aimed at securing the rapidly growing deployment of distributed energy resources (DERs) and transmission-connected hybrid renewable energy systems against escalating cyber threats. This project brings together major original equipment manufacturers (OEMs) of wind, solar, and energy storage, along with major asset owners and DOE National Laboratories, to collectively identify cyber threats, assess risks, and develop robust cybersecurity strategies and solutions. This publication the final report for the first year of the project.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Strengthening U.S. National Security Through Advanced Energy Innovation

NREL's work in strategic energy security is focused on keeping the United States secure and its citizens safe by applying expertise in advanced energy systems and technologies to prevent energy system disruptions from any source, natural or human. NREL pursues national security objectives by providing partners an accurate understanding of national and international security implications of global energy trends; novel installation, facility, and operational energy solutions; access to NREL R&D capabilities to incorporate advanced energy technologies and biomaterials into mission requirements; and the ability to test future technologies using large-scale grid modeling.

24 POWER TRANSMISSION AND DISTRIBUTION↗

CIEPAT for Photovoltaic System Resilience

The Cyber-Informed Engineering Photovoltaic Analysis Tool (CIEPAT) was developed in collaboration with the U.S. Department of Energy's Office of Cybersecurity, Energy Security, and Emergency Response (CESER). This tool is an energy source subcomponent integrated into the CIEMAT ecosystem and is developed to enhance the security and resilience of Photovoltaic installations by incorporating Cyber-Informed Engineering (CIE) principles into the deployment of PV systems.

14 SOLAR ENERGY↗

Advancing Cybersecurity Through Technical Assistance

Electric grids around the world are undergoing rapid structural and operational change, making it more important than ever to understand evolving risks and improve grid resilience and security against natural and human disruptions. Through tailored technical assistance, NREL is working with partners to support the secure and resilient deployment of energy systems and address grid integration challenges.

97 MATHEMATICS AND COMPUTING↗