skip to main content
OSTI.GOV title logo U.S. Department of Energy
Office of Scientific and Technical Information

Title: Project Boeing SGS (Final Report)

Technical Report ·
DOI:https://doi.org/10.2172/1177423· OSTI ID:1177423
 [1]
  1. The Boeing Company, Seattle, WA (United States)

Boeing and its partner, PJM Interconnection, teamed to bring advanced “defense-grade” technologies for cyber security to the US regional power grid through demonstration in PJM’s energy management environment. Under this cooperative project with the Department of Energy, Boeing and PJM have developed and demonstrated a host of technologies specifically tailored to the needs of PJM and the electric sector as a whole. The team has demonstrated to the energy industry a combination of processes, techniques and technologies that have been successfully implemented in the commercial, defense, and intelligence communities to identify, mitigate and continuously monitor the cyber security of critical systems. Guided by the results of a Cyber Security Risk-Based Assessment completed in Phase I, the Boeing-PJM team has completed multiple iterations through the Phase II Development and Phase III Deployment phases. Multiple cyber security solutions have been completed across a variety of controls including: Application Security, Enhanced Malware Detection, Security Incident and Event Management (SIEM) Optimization, Continuous Vulnerability Monitoring, SCADA Monitoring/Intrusion Detection, Operational Resiliency, Cyber Range simulations and hands on cyber security personnel training. All of the developed and demonstrated solutions are suitable for replication across the electric sector and/or the energy sector as a whole. Benefits identified include; Improved malware and intrusion detection capability on critical SCADA networks including behavioral-based alerts resulting in improved zero-day threat protection; Improved Security Incident and Event Management system resulting in better threat visibility, thus increasing the likelihood of detecting a serious event; Improved malware detection and zero-day threat response capability; Improved ability to systematically evaluate and secure in house and vendor sourced software applications; Improved ability to continuously monitor and maintain secure configuration of network devices resulting in reduced vulnerabilities for potential exploitation; Improved overall cyber security situational awareness through the integration of multiple discrete security technologies into a single cyber security reporting console; Improved ability to maintain the resiliency of critical systems in the face of a targeted cyber attack of other significant event; Improved ability to model complex networks for penetration testing and advanced training of cyber security personnel

Research Organization:
The Boeing Company, Seattle, WA (United States)
Sponsoring Organization:
USDOE
DOE Contract Number:
OE0000191
OSTI ID:
1177423
Country of Publication:
United States
Language:
English

Similar Records

WISP: Watching grid Infrastructure Stealthily through Proxies (Final Technical Report)
Technical Report · Mon Oct 31 00:00:00 EDT 2022 · OSTI ID:1177423

Autonomous Tools for Attack Surface Reduction (Final Report)
Technical Report · Mon Mar 01 00:00:00 EST 2021 · OSTI ID:1177423

Detection and Analysis of Threats to the Energy Sector: DATES
Technical Report · Wed Mar 31 00:00:00 EDT 2010 · OSTI ID:1177423