Security Awareness Program
CIP-004 R1 NERC Standard
Today’s electric utility companies are burdened with numerous NERC requirements which can consume extensive time and energy.
Network & Security Technologies (N&ST) and SOS Intl have partnered to create a small solution for the critical infrastructure protection requirements. The Security Awareness Program provides, at a reasonable rate, all the elements your company needs to fulfill the communications requirement of the CIP-004 R1 NERC Standard. This removes the headaches and time commitments and provides a simple to implement and fully effective Security Awareness Program that satisfies the communications requirement of the applicable standard.
CIP-004 R1 requires the Responsible Entity to establish, maintain, and document a security awareness program to ensure personnel having authorized cyber or authorized unescorted physical access receive on-going reinforcement in sound security practices.
The standard requires security awareness reinforcement on at least a quarterly basis using mechanisms such as:
- Direct communications (e.g., emails, memos, computer based training, etc.);
- Indirect communications (e.g., posters, intranet, brochures, etc.);
- Management support and reinforcement (e.g., presentations, meetings, etc.).
In order to satisfy these requirements, the N&ST and SOS Intl Security Awareness Program provides the following:
- Monthly emails (12 total) – Each email explores a security-based topic, informing participants on various elements of proper security practices.
- Quarterly Posters – Full-color, high-quality posters designed to act as a reminder that security is a vital topic that must be practiced in order to remain effective. (4 posters - 10 of each)
- 1 annual presentation – Designed to be delivered by senior management, the presentation is an easily executable summary of security issues, security-related topics and the efficacy of security initiatives.
The Security Awareness Program provides a communications solution to the CIP-004 R1 Standard, easing the burden of NERC requirements and increasing company security awareness in an efficient and effective manner.
Download product description: CLICK HERE
Security Awareness Program – A partnership between Network & Security Technologies and SOS Intl