Cisco Services For Grid Security: A Secure, Intelligent Smart Grid
Cisco Services For Grid Security: A Secure, Intelligent Smart Grid
● Identity management and access control: Secure utility facilities, assets, and data with user authentication
and access control custom-built for grid operations. Cisco products supported include Cisco Secure Access
Control Server, Cisco Identity-Based Network Services, and Cisco Network Access Control.
● Threat defense: Build a layered defense that integrates firewall, VPN, intrusion prevention, and content
security services to detect, prevent, and mitigate threats. Cisco products supported include Cisco ASA, Cisco
IOS® Security, Cisco Intrusion Prevention System (IPS), and Cisco Security Agent.
© 2009 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 1 of 4
Service Overview
● Data center security: Turn network, computing, and storage solutions into a secure, shared pool of
resources that protects application and data integrity, secures communications between business processes
and applications within the utility, and secures connectivity to external resources such as providers of
renewable energy. Cisco products supported include Cisco ASA, Cisco IPS, server and data center firewalls,
and Cisco ACE Web Application Firewall.
● Utility compliance: Improve risk management and satisfy compliance and regulatory requirements such as
NERC-CIP with assessment, design, and deployment services.
● Security monitoring and management: Identify, manage, and counter information security threats and
maintain compliance through ongoing monitoring of cyberevents. Cisco products supported include Cisco
Security Monitoring, Analysis, and Response System (MARS); Cisco Security Manager; and Cisco LAN
Management System.
● Physical safety and security: Provide physical security
to utility environments with access control and video
surveillance for real-time monitoring. Cisco products
supported include Cisco Physical Access Gateways,
Cisco Physical Access Manager, Video Surveillance
(media servers, IP cameras, video storage, and video
Planning Services
These services help prepare a grid security transformational plan through assessments, requirements development,
and architecture design and include:
● Security strategy and architecture assessment: Provides a grid security infrastructure strategy and plan
that include an assessment of your business’s requirements for grid security and development of a security
architecture and roadmap.
● Utility compliance assessment for NERC-CIP: Analyzes internal controls and procedures for NERC-CIP
compliance, identifies gaps in security controls, and provides recommendations to address high-priority
vulnerabilities.
● Physical security site vulnerability assessment: Analyzes requirements for access control, surveillance,
and operations and provides recommendations to improve physical security.
© 2009 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 2 of 4
Service Overview
● Data center facilities assessment: Provides a data center site security assessment to improve physical
infrastructure security.
● Data center virtualization assessment: Analyzes information security requirements and provides
recommendations to improve data center security.
● Security technical requirements development: Develops detailed technical requirements based on your
business’s physical and information security strategy and architecture.
● Security technical architecture design: Develops a detailed security design that meets your requirements
for physical and information security.
Build Services
These services help facilitate the rapid deployment of grid security solutions within the utility control center,
generation plant, and transmission and distribution network environments that meet requirements for regulatory
compliance and reliable physical and information security and include:
● Physical security solution design: Develops detailed designs for rich media collaboration, access control,
video surveillance, and command and control solutions.
● Network security solution design: Develops detailed designs for data center security, identity management,
threat defense, and security management.
● Data center virtualization design: Provides a detailed design and implementation plan for virtualized data
center environment, including security requirements for network, storage, and compute resources.
● Grid security deployment: Provides implementation plans and custom deployment and integration of
physical and information security solutions.
Run Services
These services can help a utility company operate and optimize its grid security solutions to lower operating costs
while maintaining the highest level of security and include:
● Remote management and monitoring: Provide operational support for security incident monitoring, fault and
performance management, problem resolution, security infrastructure tuning, and secure network access
control support.
● Security optimization: Strengthens your security infrastructure through strategic planning, architectural
assessments, design, performance tuning, and ongoing optimization support.
● Security architecture assessment: Identifies vulnerabilities and recommends improvements to align your
security architecture with industry security models, best practices, and business policy.
● Cisco Services for IPS: Deliver timely security intelligence information, signature file updates, and
comprehensive support for Cisco IPS solutions.
© 2009 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 3 of 4
Service Overview
Availability
Cisco Grid Security products and services are available globally. Service delivery details might vary by region.
Further Information
For more information about Cisco Smart Grid Security solutions, contact your local Cisco account representative or
visit www.cisco.com/go/smartgrid.
For more information about Cisco Services for Grid Security, please visit www.cisco.com/go/smartgridservices.
© 2009 Cisco Systems, Inc. All rights reserved. This document is Cisco Public Information. Page 4 of 4