Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Technology and Operations”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 145 records · Page 8

Assessing Anomaly-Based Intrusion Detection Configurations for Industrial Control Systems

To reduce cost and ease maintenance, industrial control systems (ICS) have adopted Ethernetbased interconnections that integrate operational technology (OT) systems with information technology (IT) networks. This integration has made these critical systems vulnerable to attack. Security solutions tailored to ICS environments are an active area of research. Anomalybased network intrusion detection systems are well-suited for these environments. Often these systems must be optimized for their specific environment. In prior work, we introduced a method for assessing the impact of various anomaly-based network IDS settings on security. This paper reviews the experimental outcomes when we applied our method to a full-scale ICS test bed using actual attacks. Our method provides new and valuable data to operators enabling more informed decisions about IDS configurations.

Gillen, Rob↗

Method for Assessment of Security-Relevant Settings in Anomaly-Based Intrusion Detection for Industrial Control Systems

Ensuring the integrity of Ethernet-based networks is a challenging and constantly evolving domain. This problem is exacerbated for those operational technology (OT) networks supporting industrial control systems (ICS) since much of that equipment was originally designed to be on a network that was isolated and generally considered free of malefactors. Increasing pressure to bridge these systems with traditional information technology (IT) networks has introduced a bevy of new threats. In response, both academia and industry have responded with security solutions tailored to ICS environments. Deploying these protection systems often involves several configuration choices. While some of these choices are clear (e.g., block/enable protocol X) others are far more subjective (e.g. alert threshold == 3.43). Further complicating the situation, while often similar to IT networks, OT networks have unique challenges and characteristics that make the task of protecting them simultaneously more difficult and straight forward.Extant solutions for quantifying the relative security of intrusion detection systems fail to effectively support the operators of said systems with understanding the impact of various configuration changes. Further, they assume that the attacks are static and not subject to manipulation or alteration in the face of defenses. In this paper, we present a threat-based method for quantifying the relative impact of various security settings for intrusion detection systems (IDSs) within ICS environments. This method provides operational staff with a clear understanding of the relative impact of their settings and assumes that the attacks levied against them are dynamic. The model is described in detail, we apply the model to a synthetic data set, and discuss the inferences that can be made and what types of decisions they could be used to support.

Gillen, Rob↗

Oak Ridge National Laboratory Pilot Demonstration of an Attestation and Anomaly Detection Framework using Distributed Ledger Technology for Power Grid Infrastructure

This report summarizes the design and pilot demonstration of a framework called Grid Guard that was created to provide increased data and device trustworthiness to electric grid devices by leveraging distributed ledger technology (DLT), specifically blockchain. Grid Guard contains a combination of core cryptographic methods such as the secure hash algorithm (SHA), and asymmetric cryptography, private permissioned blockchain, baselining configuration data, consensus algorithm (Raft) and the Hyperledger Fabric (HLF) framework. The system implements a low energy, fast, and robust enhancement to system trustworthiness within and across electric grid systems such as substations, control centers and metering infrastructures. Blockchain is a distributed database structured that provides a practically unalterable (immutable) timeline of stored transactions. By relying on hashing and the Raft consensus algorithm, if an entity tries to illegitimately alter a record at one instance of the database the other ledger nodes are not altered. They work to cross-reference each other and easily locate any incorrectly added data and remove it. The bulk raw data is stored in an off-chain storage (outside of the blockchain ledger) and a hash of this baseline data is stored in the Blockchain ledger via hashing windows of time-series and configuration data, after aggregation and filtering. The bulk off-chain data repository is then considered to be trust-anchored using the hashes stored in the blockchain. To secure the electric grid testbed devices and data, device configuration baselines were compared to those baselines that had been previously stored in the ledger. Statistical baselines for device configurations, network communication patterns, and high-speed sensor data are calculated and then stored off-chain and hashes stored in the ledger. Measurements such as three-phase voltage and current, frequency, breaker status, protection scheme settings, network configuration settings (and other device configuration artifacts) and network traffic features (packet interarrival times) are compared every minute or other selected time windows. During phase 1 of the Grid Guard DLT project different DLT technologies were studies, and an assessment was performed on DLT technology vulnerabilities, uses, and key characteristics. DLT consensus protocols were studies (e.g., RAFT, named after Reliable, Replicated, Redundant, And Fault-Tolerant). Also, cryptography, public, private and permissioned or permissionless systems were assessed. Grid Guard implements a permissioned private DLT. Consensus algorithm selection and choice of DLT implementation depended heavily on the use-case. For this use-case, parameters were selected to measure performance and existing tools for assessment. Benchmarking was performed theoretically and practically. During phase 2 hashed transactions/blocks were inserted into the ledger every second. During phase 2 of the Grid Guard DLT project, a prototype framework was developed and demonstrated for attestation of critical substation devices and data using precision timing systems that use PTP and IRIG-B protocols) on a testbed of operational devices that emulated a distribution substation, control center, and power metering infrastructure using real Operational Technology (OT). The testbed includes OT devices such as protective relays, human machine interfaces (HMI), and power meters. To determine when to collect and compare system and network baselines, an initial examination of an anomaly detection capability to identify malicious manipulation of data streams was conducted. The resulting anomaly detection was demonstrated in a set of experiments and leveraged to trigger device artifact attestation checks. Attestation checks occur against device configuration baselines when compared with the immutable blockchain-stored baselines, which provided a cryptographically supported means by which to store baselines. The electrical substation-grid testbed was created to test the Grid Guard framework. The testbed emulates the operations of a portion of a power grid and SCADA systems as closely as possible. The testbed integrates real protocols, mainly IEC 61850 standard protocols, such as the Sampled Value (SV) and the GOOSE protocols. The testbed also supports DNP3 and other layer 2 and layer 3 protocols such as Telnet, SSH, SFTP/FTP and other proprietary protocols needed to connect to industrial control system equipment. The testbed emulates real power conditions using the OpalRT hardware-in-the-loop (HIL) device which can create fault situations that cannot be easily tested on real systems. The electrical substation-grid testbed was created using real measurement, communication, and protection devices that electrical utilities commonly use.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Emerging Technologies for Privacy Preservation in Energy Systems

This study explores the intersection of digitalization and privacy within the energy sector, focusing on the emerging challenges and opportunities presented by integrating Distributed Energy Resources (DERs) and advanced metering infrastructure. The need for robust digital privacy measures has become crucial as the energy industry evolves towards a more decentralized, digitalized, and decarbonized future. This study delves into four cutting-edge privacy-preserving technologies—Homomorphic Encryption (HE), Secure Multiparty Computation (SMPC), Differential Privacy (DP), and Federated Learning (FL)—each offering unique solutions to safeguard consumer data by increasing digital connectivity and data exchange. Through a detailed examination of these methods, the study explains how each technology operates, its applications within the energy sector, and the specific privacy challenges it addresses. Homomorphic Encryption allows for secure computations on encrypted data, enabling data analysis without compromising privacy. Secure Multiparty Computation enables collaborative data analysis across different entities while protecting the confidentiality of the inputs. Differential Privacy introduces randomness into the assembled data set, preventing the identification of individual records in statistical databases. Lastly, Federated Learning offers a paradigm shift in data analysis, where machine learning models are trained at the edge, minimizing the centralization of sensitive data. The research underscores the significance of implementing these privacy-enhancing technologies to comply with strict data protection regulations, foster consumer trust, and enhance the security of the energy infrastructure. By providing a comprehensive overview of these methodologies and their practical implications for the energy sector, this study aims to contribute to the ongoing discourse on digital privacy, offering insights into how the energy industry can navigate the complexities of data privacy in the digital age.

Cali, Umit↗

Application of Cyber-Informed Engineering for Protecting BESS

This white paper synthesizes an array of crucial grid services provided by BESS technology, assesses its architecture and communications, and presents a case study for analysis against the principles introduced by Cyber-Informed Engineering (CIE). Furthermore, in walking through the analysis, this paper presents a framework to evaluate risks and solutions when considering BESS components. Asset owners and buyers could perform this analysis to assess their BESS product implementations, alternative inverter-based resources (IBR), and energy management systems (EMS). Battery systems fulfill various roles contingent on the unique market demands and the specific challenges presented by regional grid infrastructures. These roles also vary due to the differing utility models for ownership and operation, which are adapted to meet regional and local capabilities and requirements. Concerns have been raised regarding the potential for adversaries to exploit knowledge of battery operational patterns to orchestrate decisive attacks. However, the security of operational data for these systems may not be the primary vulnerability, as much of this information is already well-understood within the community. Applying a modest degree of subject matter expertise can often yield valuable predictions regarding how a battery will respond under certain conditions, such as grid emergencies, high or low-temperature days, Public Safety Power Shutoff (PSPS) events, and outages. The operational characteristics of batteries are well-documented, and their capabilities, including the risks associated with misoperation and the resulting consequences, are published and understood within the industry. CIE practices represent the next step in gaining functional assurance and providing an acceptable level of risk, regardless of whether a battery vendor can support a trusted and validated supply chain. While this issue has exacerbated supply chain challenges, it is not an isolated condition. This foreign supply route is the primary source of BESS for the U.S. market. Significant efforts are underway through the Bipartisan Infrastructure Law (BIL) to change that. Still, strategic short-term operational mitigations are needed to ensure the security of our operational technology (OT) systems, which are enhanced by instilling trust and are separate from vendors implementing CIE principles.

25 ENERGY STORAGE↗

Position Papers for the ASCR Workshop on Cybersecurity and Privacy for Scientific Computing Ecosystems

At the request of the Department of Energy's (DOE) Office of Advanced Scientific Computing Research (ASCR), this program committee has been tasked with organizing a workshop to identify basic research needs in cybersecurity and privacy to better support DOE's science and energy mission. As part of the process, the program committee is soliciting community input in the form of position papers to help identify significant use cases, facility issues, and other barriers to enabling verifiably trustworthy computational science while preserving data confidentiality as appropriate for scientific workflows of interest to DOE. The program committee will review these position papers and based on the fit of their area of expertise and interest, selected contributors will have the opportunity to participate in the workshop currently planned as a virtual event November 3-5th, 2021. The thrust areas that will be explored by this workshop are the following: (1) Algorithms for secure, scalable, privacy-enhancing technologies and frameworks, including: Federated AI/ML, Differential privacy, Randomized algorithms, Adversarial modeling & simulation, Graph algorithms, and Formal methods; (2) Platforms to support the entire scientific-computing ecosystem, including edge computing for large-scale experiments, focusing on heterogeneous systems and distributed systems, including: Heterogeneous computing systems, Distributed computing systems, and Secure data architectures; and (3) Data workflows to allow agile use of data while preserving integrity and privacy, making the important properties verifiable either at runtime or post-computation, including: Integrity and provenance and Data management infrastructure. Topics that are out-of-scope for the workshop include discussing specific proposed solutions or areas that are clearly out of DOE's fundamental and applied-sciences mission scope, e.g., cryptography, enterprise security, and general-operations technology.

97 MATHEMATICS AND COMPUTING↗

Decarbonization in Climate Resilience Planning

Recent executive orders such as E.O. 14008 require federal agencies to address climate change by enhancing resilience and reducing emissions through decarbonization. Traditionally, federal agencies require their sites to develop preparedness plans, such as continuity of operations plans and/or more comprehensive resilience plans. When climate change is included in these plans, the focus tends to be on climate adaptation solutions such as hardening infrastructure and not on climate mitigation through decarbonization. However, with the ambitious emission reductions targets set out by the federal government, it is essential to provide resources and tools to support energy and water managers in achieving decarbonization goals. To achieve this, there is a need for decarbonization to be incorporated into existing resilience planning processes. We discuss a method of incorporating a decarbonization analysis into an existing resilience planning process to create a holistic framework that considers climate adaptation, climate mitigation, and risk reduction priorities when developing and prioritizing solutions for federal sites. Site managers and decision makers must be aware of potential opportunities and trade-offs in meeting energy and water performance goals, emission reductions goals, and climate adaptation goals when developing technological, operational, or institutional resilience solutions. By combining these processes, energy and water managers can minimize the additional level of effort to ensure that their sites are not only able to withstand climate-related energy and water disruptions, but also contribute to climate mitigation. A holistic approach can help federal agencies serve as a model for incorporating decarbonization strategies into site-level resilience planning for the rest of the nation.

Elliott, Douglas B.↗

Modbus RTU for Embedded Cyber Secure Inverter Controller

The Modbus communication protocol is a widely adopted communication standard in industrial control systems. This communication protocol is known for being reliable and straightforward to implement while being versatile in terms of its operating parameters while supporting multiple formats over various hardware infrastructures and architectures. Many intelligent devices such as Programmable Logic Controllers (PLCs), Human-Machine Interfaces (HMIs), Internet-of-Things (IoT), and various Operational Technologies (OT) utilize Modbus for their communication systems. These types of systems must communicate with each other through a standardized and central communication process. To support the integration of these modular systems, a Field-Programmable Gate Array (FPGA) can act as an embedded central routing fabric for this communication to take place. Embedded systems are versatile enough to interface with various devices and systems to accomplish various goals. Additionally, embedded systems require relatively small physical designs to minimize the required resources to facilitate the intended application by providing low-level system access. This minimization of system resources goes hand in hand with reducing the financial cost of a proposed solution or system. As remotely collaborating researchers often use FPGAs to prototype designs that are required to have a method for data transmission among systems, it is imperative to provide a baseline standard for communications among devices and systems. A typical method of implementing the Modbus RTU communication protocol in an embedded environment is using integrated logic architectures within the FPGA called “Intellectual Property (IP) cores.” IP cores can be designed using integrated logic or circuit designs to function as an embedded processor. These IP cores can then perform the required computational actions to support the Modbus RTU communication protocol by utilizing high-level programming languages such as the C programming language. The hardware description language of Very High-Speed Integrated Circuit Hardware Description Language (VHDL) allows for the control of real hardware at the logic gate and signal level. These logic gates and signals can be designed and controlled to perform desired actions based on the system design. Programming an FPGA using VHDL allows an individual to access the lowest abstraction level of the system during FPGA development. This level of abstraction is referred to as the register-transfer level (RTL), which gives access to manipulating values and variables at the register level. This register-level manipulation provides precision over creating the logical circuit within the FPGA, thus minimizing the required code to perform desired operations. The Modbus RTU communication protocol can be implemented within an FPGA using VHDL programming to establish a standardized and embedded serial communication pathway. This implementation provides a standardized communication protocol to streamline research efforts among researchers, thus increasing the efficiency of research efforts. Additionally, this Modbus RTU implementation requires fewer resources when compared to typical communication protocol implementations that utilize an IP core, reducing the hardware requirement for effective research efforts.

communication↗

Demonstration of neutrinoless double beta decay searches in gaseous xenon with NEXT

The NEXT experiment aims at the sensitive search of the neutrinoless double beta decay in 136 Xe, using high-pressure gas electroluminescent time projection chambers. The NEXT-White detector is the first radiopure demonstrator of this technology, operated in the Laboratorio Subterráneo de Canfranc. Achieving an energy resolution of 1% FWHM at 2.6 MeV and further background rejection by means of the topology of the reconstructed tracks, NEXT-White has been exploited beyond its original goals in order to perform a neu- trinoless double beta decay search. The analysis considers the combination of 271.6 days of 136 Xe-enriched data and 208.9 days of 136Xe-depleted data. A detailed background modeling and measurement has been developed, ensuring the time stability of the radiogenic and cosmogenic contributions across both data samples. Limits to the neutrinoless mode are obtained in two alternative analyses: a background-model-dependent approach and a novel direct background-subtraction technique, offering results with small dependence on the background model assumptions. With a fiducial mass of only 3.50 ± 0.01 kg of 136 Xe-enriched xenon, 90% C.L. lower limits to the neutrinoless double beta decay are found in the $T^{0v}_{1/2} > 5.5 \times 10^{23} - 1.3 \times 10^{24}$ yr range, depending on the method. The presented techniques stand as a proof-of-concept for the searches to be implemented with larger NEXT detectors.

46 INSTRUMENTATION RELATED TO NUCLEAR SCIENCE AND ↗

Direct Experimental Observations of Ion Distributions during Overcharging at the Muscovite–Water Interface by Adsorption of Rb + and Halides (Cl – , Br – , I – ) at High Salinity

Classical electric double layer (EDL) models have been widely used to describe ion distributions at charged solid-water interfaces in dilute electrolytes. However, the chemistry of EDLs remains poorly constrained at high ionic strength where ion-ion correlations control non-classical behavior such as overcharging, i. e., the accumulation of counter-ions in amounts exceeding the substrate's surface charge. Here, we provide direct experimental observations of correlated cation and anion distributions adsorbed at the muscovite (001)-aqueous electrolyte interface as a function of dissolved RbBr concentration ([RbBr]=0.01–5.8 M) using resonant anomalous X-ray reflectivity. Our results show alternating cation-anion layers in the EDL when [RbBr]≳100 mM, whose spatial extension (i. e., ~20 Å from the surface) far exceeds the dimension of the classical Stern layer. Comparison to RbCl and RbI electrolytes indicates that these behaviors are sensitive to the choice of co-ion. This new in-depth molecular-scale understanding of the EDL structure during transition from classical to non-classical regimes supports the development of realistic EDL models for technologies operating at high salinity such as water purification applications or modern electrochemical storage.

37 INORGANIC, ORGANIC, PHYSICAL, AND ANALYTICAL CH↗

Steady-state fuel performance analyses for the preliminary fuel concept of general atomics fast modular reactor

Here this manuscript presents the fuel performance analysis results of the General Atomics Fast Modular Reactor (FMR) based on an axi-symmetric (2D-RZ) geometry. Three fuel performance model sets that fit the FMR fuel specifications best, i.e., a BISON baseline model set, a BISON diffusion enhancement model set, and a BISON-FASTGRASS model set, were identified and evaluated against a series of relevant experimental cases featuring high burnup and low irradiation temperature conditions. The three BISON-based model sets were then utilized to conduct a comprehensive fuel performance analysis of the FMR fuel under normal operation including the shutdown/restarting periods for refueling. The evaluation of the fuel performance parameters, represented by temperature, internal pressure, stress, and strain, shows that the FMR fuel maintains its thermal and mechanical integrity during normal operation. Technology gaps and limitations are also discussed to guide future efforts for extending the performance analysis to transient scenarios as well as improving the fuel performance evaluation through experiments.

11 NUCLEAR FUEL CYCLE AND FUEL MATERIALS↗

Influence of Ordered Mesoporous Oxides in Plasma-Assisted Ammonia Synthesis

Widespread implementation of dielectric barrier discharge (DBD)-assisted NH 3 synthesis, a nascent technology operating under sustainable, ambient conditions, is hindered by low energy yields due to, in part, poor fundamental understanding. Porous oxides used to support metal nanoparticle catalysts have shown significant energy yield contributions for DBD-assisted NH 3 synthesis even without metal. Using an AC-powered, coaxial, single-stage reactor at 16 kV with equimolar (N 2 /H 2 ) feed, we measured NH 3 synthesis rates in the presence of different nonordered oxides, ordered SiO 2 structures (SBA-15 and MCM-41), and ordered Al-incorporated analogues (γ-Al 2 O 3 -coated with varying Al-loadings and Al-substitution, respectively: Al 2 O 3 -SBA-15 and Al-MCM-41). We systematically quantified NH 3 energy yield dependence on pore structures and material identities (i.e., ordered pores and Al incorporation) known to facilitate higher DBD-assisted NH 3 synthesis rates. SBA-15 displayed a higher steady-state energy yield than MCM-41, indicating that framework type is a crucial factor, with both ordered porous systems outperforming fumed SiO 2 . 10 wt % Al maximized in situ NH 3 uptake among the various Al loadings, exhibiting a higher steady-state energy yield and similar power to SBA-15. However, Al-MCM-41 had a similar steady-state energy yield and lower power than MCM-41, likely due to the extended γ-Al 2 O 3 surface that has a dielectric constant higher than that of SiO 2 . Both Al-incorporated analogues benefit from surface acid sites that can adsorb NH 3 in situ, resulting in higher overall NH 3 energy yields than that of their parent ordered SiO 2 . Al 2 O 3 -SBA-15 shielded more NH 3 than Al-MCM-41, likely due to a higher acid site density than the acid site identity. Furthermore, Al incorporation via γ-Al 2 O 3 coating more successfully improves the NH 3 energy yield; together with the high-performing ordered framework, these analogues are potential metal catalyst supports with promising energy yields for DBD-assisted synthesis of NH 3 and other chemicals.

37 INORGANIC, ORGANIC, PHYSICAL, AND ANALYTICAL CH↗

High-Temperature Observation of Intralayer, Interlayer, and Rydberg Excitons in Bulk Van Der Waals Alloy Single Crystals

Transition metal dichalcogenides exhibit remarkable optical properties due to the diverse number of strongly bound excitons, which can be fine-tuned by alloying. Despite a flurry of research activity in characterizing these excitons, a comprehensive and profound understanding of their behavior with temperature is lacking. Here, we report the rich spectrum of excitonic features within bulk van der Waals alloy Mo0.5 W0.5 S2 and Mo0.5 W0.5 Se2 single crystals through temperature-dependent reflectance spectroscopy and first-principles calculations. We observed Rydberg excitons and interlayer excitons in both the single crystals. Notably, we provide the first experimental evidence of highly energetic A' and B' excitons in Mo0.5 W0.5 S2 at room temperature. The strong carrier-phonon scattering significantly broadens the A', B', and interlayer excitons at room temperature in bulk Mo0.5 W0.5 S2 single crystal compared to its selenide. Our findings, supported by density functional theory and Bethe-Salpeter equation calculations, signify the crucial role of carrier-phonon interactions. These results open pathways for next-generation optoelectronic devices and quantum technologies operating at high temperature.

excitons↗

A Novel Vetting Approach to Cybersecurity Verification in Energy Grid Systems

The cybersecurity auditing for Operation Technology is critical and has been largely missing from the cybersecurity research, especially in the energy sector. In this paper, we present a novel “cybersecurity vetting” approach (CYVET) to the problem of verification and validation of cybersecurity in complex cyber-physical installations underlying modern energy grid systems.

Perumalla, Kalyan↗

Cybersecurity Value-at-Risk Framework

As more variable renewable energy sources are added to the grid, the role of hydropower as a reliable baseline and firming resource is growing more critical. However, the U.S hydropower fleet is not fully prepared to face modern issues such as cybersecurity threats. Hydropower accounts for 37% of U.S. utility-scale renewable electricity but is challenged by diverse infrastructure and legacy devices that predate modern security practices. While new cybersecurity solutions cannot simply be added to current hydropower generation and operation technologies, custom cybersecurity assessments can reveal system-specific threats and risk probabilities and identify mitigating enhancements.

cybersecurity valuation methodology↗

Verifying the Computational Integrity of Power Grid Controls with Zero-Knowledge Proof

The control of future power grids is migrating from a centralized to a distributed/decentralized scheme to enable a massive penetration of distributed energy resources with rising dependence on communication infrastructure. A common assumption made for most existing distributed/decentralized controllers is that local controllers would faithfully follow the designated controller dynamics based on the data received from communication channels. However, with increased probability of cyberattacks on Operational Technology infrastructure, such an assumption could be risky because proper execution of the controller dynamics is then built on trust in secure communication and computation. In this work, we leverage a cryptography technology known as zero-knowledge scalable transparent arguments of knowledge (zk-STARK) to verify the computational integrity of power grid control algorithms, with projected linear dynamics-based control schemes as the initial proof-of-concept test case. The method presented here converts the cybersecurity challenge of data integrity for grid control into a subset of computational integrity.

computational integrity↗

Design of a Novel Information System for Semi-Automated Management of Cybersecurity in Industrial Control Systems

There is an urgent need in many critical infrastructure sectors, including the energy sector, for attaining detailed insights into cybersecurity features and compliance with cybersecurity requirements related to their Operational Technology (OT) deployments. Frequent feature changes of OT devices interfere with this need, posing a great risk to customers. One effective way to address this challenge is via a semi-automated cyber-physical security assurance approach, which enables verification and validation of the OT device cybersecurity claims against actual capabilities, both pre- and post-deployment. To realize this approach, this paper presents new methodology and algorithms to automatically identify cybersecurity-related claims expressed in natural language form in ICS device documents. Here, we developed an identification process that employs natural language processing (NLP) techniques with the goal of semi-automated vetting of detected claims against their device implementation. We also present our novel NLP components for verifying feature claims against relevant cybersecurity requirements. The verification pipeline includes components such as automated vendor identification, device document curation, feature claim identification utilizing sentiment analysis for conflict resolution, and reporting of features that are claimed to be supported or indicated as unsupported. Our novel matching engine represents the first automated information system available in the cybersecurity domain that directly aids the generation of ICS compliance reports.

96 KNOWLEDGE MANAGEMENT AND PRESERVATION↗

Mitigation of External Exposure of Energy Delivery System (MEEDS).

MEEDS is a cybersecurity solution that empowers under resourced owners and operators of critical energy infrastructure to rapidly identify and detect the publicly exposed and vulnerable operational technology (OT) and other critical Industrial Control and Energy Delivery Systems.

Mylrea, Michael↗