SlideShare a Scribd company logo
1 of 48
Download to read offline
Smart Grid Projects, Privacy
and Smart Meters Security
Assessment in the Brazilian
Scenario
José Reynaldo Formigoni Filho, MSc
Information and Communication Security Technology Manager
CPqD Foundation
Moacir Giansante
Supply Chain Director - Aptel
Agenda
• Introduction: Brazilian Electric Sector
• Brazilian smart grid projects
• Privacy in smart grid
• Security assessment for smart meters
• Concluding remarks
CPqD Foundation – Campinas – SP - Brazil
Board of Trustees
Executive Board
Audit Committee
R&D Forum
Private Foundation
"Private company without shareholders"
Surplus reinvested
Corporate Governance
2015 Revenue:
US$ 100 mi
Total: 1300
Main R&D areas
Comunicações
Ópticas
Optical
Communications
Comunicações
Ópticas
IP Platforms
Comunicações
Ópticas
Business and
Operations
Support Systems
Communication
and Information
Security
Comunicações
Ópticas
Sensor
Technologies
and Networks
Comunicações
Ópticas
Services,
Applications,
Terminals and
Digital Inclusion
Comunicações
Ópticas
Decision
Management
Mobile
Communications
and Wireless
Networks
Smart
Grid
Aptel
• Aptel is an non profit association of utilities (electricity,
oil, gas, railways and highways) which manage critical
telecommunication systems for their core business.
Agenda
• Introduction: Brazilian Electric Sector
• Smart grid projects in Brazil
• Privacy in smart grid
• Security assessment for smart meters
• Concluding remarks
Brazilian Electric Sector
• Population: ~204 mi
• Attendance extension: superior to
98% of the population
• Number of consumer units: 75 mi
• Regulated consumption: 463.335
GWh
• Per capta consumption: 2.557
KWh/year
Brazilian Electric Sector
• The Electric System National
Operator is an entity of private right,
responsible for coordinating and
controlling the operation of
generation and transmission facilities
in the National interconnected
Power System (NIPS)
• Under supervision and regulation of
the Electric Energy National
Agency (ANEEL).
Brazilian Electric Sector
• Generation companies: 146
• Distribution companies: 55
• Transmission companies: 104
Brazilian Eletric Energy Matrix and Capacity
89.385
37.821
1.990 5.139
POWER (MW) - TOTAL CAPACITY 134,3 GW
Hidroeletric Thermoeletric Thermonuclear Wind
67%
28%
Agenda
• Introduction
• Smart grid projects in Brazil
• Privacy in smart grid
• Security assessment for smart meters
• Concluding remarks
Public policies to encourage Smart Grid
Projects: Aneel R&D Fund
• The electric power distribution, generation and
transmission should apply a minimum percent of
their net operating income every year in the R&D
Program for the Electric Power Sector;
• Aneel establishes guidelines and instructions
that regulate the elaboration of R&D projects
• The percentages to be invested from the net
operating income:
Segment %
Distribution 0,20%
Generation 0,40%
Transmission 0,40%
Public policies to encourage R&D investments
- Aneel R&D Fund
Year Number of projects Value (US$ mi)
2009 226 154,50
2010 569 821,59
2011 462 500,00
2012 489 769,23
2013 180 348,84
Total 1926 2.594,16
* Aneel – Relatórios de Gestão do Exercício 2009-2013
Innovate National Energy Plan
• Sponsors:
• Aneel
• BNDS (Brazilian Development Bank)
• FINEP (Financier of Studies and Projects – state institution)
• One of the main subjects: Support the development and diffusion of
electronic, microelectronic devices, systems, integrated solutions and
standards for implementation of smart grids in Brazil.
• Total value: US$ 1,1 bi (from 2013 to 2017), only US$ 44 mi is 100%
subsidy
• Beneficiaries: power companies, suppliers of equipment and systems and
R&D centers
• 59 projects were approved in the first phase
Brazilian Smart Grid Projects*
• Total of power companies involved in SG projects:
• Generation: 21
• Transmission: 7
• Distribution: 34
• Number of projects: 273 from 2008 to 2013
• Total of investment: ~US$ 575 mi
• The 10 most important projects:
* Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
Brazilian Smart Grid Projects *
• Smart Grid sub-areas:
• AMI – Advanced Metering Infrastructure
• DA – Distributed Authomation
• DG - Distributed Generation
• Telecom
• IT – Information Technology
• IB – Intelligent Building
• Smart Grid areas:
• DSD - Distributed Storage Systems and
Batteries
• EVH - Electric vehicles, hybrids and loading
systems
• CMS – Customer Management System
• DEMO – Pilot Projects
• Others
AMI DA DG DSD EVH Telecom TI IB CSM Others
Quant. of projects Quant. of companies
* Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
Brazilian Smart Grid Projects – suppliers at
power companies*
Suppliers
Quant.ofpowercompanies
* Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
Brazilian Smart Grid Projects – Universities
and R&D centers at power companies*
Quant.ofpowercompanies
* Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
Brazilian Smart Grid Projects*
• Information security is not a priority in the
Brazilian smart grid projects
• Less than 10 projects have considered
Information Security (IS) activities
• Only one project is 100% focused in
Information Security
Agenda
• Introduction
• Smart grid projects in Brazil
• Privacy in smart grid
• Security assessment for smart meters
• Concluding remarks
Cemig Smart Meter Project
• Power company: CEMIG
• An open capital company
controlled by the Government
of the State of Minas Gerais
• Cemig is responsible for
supplying nearly 33 million
people in 805 municipalities in
the states of Minas Gerais and
Rio de Janeiro (including Light),
and for the management of the
largest electric energy
distribution network in South
America
• Name: Cities of the Future
• Budget: US$ 20 mi
• City: Sete Lagoas
• Number of consumer units: 5000
• Duration: 2011 - 2014
Cemig Smart Meter Project
Technological scope
• Measurement of consumption
of the Consumer Units
• Distributed Automation
• Distributed Generation
• Telecommunication
• Information technology
• Georeferencing
Strategical scope
• Regulatory
• Communication and
Relationships with
Consumers
• Privacy
• Process
• Indicators and Metrics.
Cemig Smart Meter Project
Technological scope
• Measurement of consumption
of the Consumer Units
• Distributed Automation
• Distributed Generation
• Telecommunication
• Information technology
• Georeferencing
Strategical scope
• Regulatory
• Communication and
Relationships with
Consumers
• Privacy
• Process
• Indicators and Metrics.
Cemig Smart Meter Project - Privacy
The main activities of privacy the project:
1. Data costumer privacy: Studies of contextualization
2. Development of a Methodology of Privacy Protection
3. Recommendations on privacy for the smart grid
elements: smart meter and telecom infrastructure
4. Recommendations on privacy on Smart Grid
environment: call center and MDM/AMI
5. Consumer Data Privacy - guidance manual for
employees of Cemig
6. Recommendations for creating Privacy Policy for
Cemig
Data costumer privacy: Studies of contextualization
Smart Grid Environment
Best Practices
Legal and regulatory framework
Data costumer privacy: Project scope
Customer
Environment
Telecom
Network
Environment
Smart
Meters
Telecom
Infrastructure
MAN Architecture
and network
elements
Power Company
Environment
Systems (HW and SW), IS policies,
processes and people
MDM - Meter Data Management
Políticas Processos
Pessoas
Processes
IS Policies
People
Agenda
• Introduction
• Smart grid projects in Brazil
• Privacy in smart grid
• Security assessment for smart meters
• Concluding remarks
Deployment of smart meters in Brazil – our
reality
• In August 2012, ANEEL approved a
resolution which states that energy
distributors will have to install electronic
meters for all consumers who choose
time-of-use billing program by
January 2014.
• It was the first step by the Brazilian
Government to replace the
electromechanical meters.
• Fraud average: 5,6%
dailyreporter.com
The main threats in Brazil – Energy usage frauds
• Many frauds related to
electromechanical meters currently in
use in Brazil
• There are also record of frauds related
to other new electronic devices, for
instance pay TV
Fraud
• It is possible to infer that the new smart
meter devices to be used in Brazil will
further increase the current level of fraud
Security assessment for smart meter – Project
Overview
• Name: R&D in security assessment for smart meters
• Client:
• Sponsor: Aneel R&D Fund
• Period: from September 2012 to December 2014
• Totally executed by CPqD Foundation
• Number of clientes: 2.4 mi
• 8ª. biggest power company in Brazil
• Number of cities: 228
Security assessment for smart meter – Project Overview
Subjects:
• Investigate different brands and types of smart
meters available in the market
• Run tests for checking security requirements
• Assess potential impacts
• Build two labs specialized in security evaluation of
smart meters and homologation
Security assessment for smart meter
Goal 1
Methodology for security
assessment
Goal 2
Smart Meter Cyber Security
Laboratory Deployment
Goal 3
Security analysis and
tests of smart meters
State of the art survey for
smart meters security
Specification of the test
environment
Development of the
security assessment
methodology for smart
meters
Security test
Implementation of a Smart
Meter Security Training
Platform
Laboratory deployment
Laboratory operation
Knowledge and
technology transfer
Security Assessment for Smart Meters
Homologation test
Security requirements - references
• There are international standards related to security
requirements:
• OIML D31 - General requirements for software controlled
measuring instruments, 2008.
• NIST 7823* - Advanced Metering Infrastructure Smart Meter
Upgradeability Test Framework, July 2012
• This report describes conformance test requirements that may
be used voluntarily by testers and/or test laboratories to
determine whether Smart Meters and Upgrade Management
Systems conform to the requirements of NEMA SG-AMI**
• The Brazilian standard:
• Instituto Nacional de Metrologia, Qualidade e
Tecnologia – INMETRO. RTM 586 - Regulamento
Técnico Metrológico – 2012: addresses metrologically
relevant software security aspects of the smart
meters.
* National Institute of Standards and Methodology
** NEMA – National Electrical Manufacturers Association
*** INMETRO – Instituto Nacional de Metrologia
Hardware security requirements
• Unprotected interface
• Hardware anti-tampering mechanisms
• Hardware integrity checking
• Hardware backdoors
• Hardware anti-reverse engineering
Software security requirements
List of requirements:
1. Authentication
2. Authorization
3. Log registers
4. Software fault detection
5. Secure data storage (protection
against unauthorized access -
privacy of measurement data
and other data, cryptographic
key protection, etc.)
6. Safe boot
7. Cryptography support (for secure
transmission and other services)
8. Firmware authenticity
9. Firmware integrity
10. Firmware protection
11. Safe firmware update
12. Data integrity stored and
transmitted
13. Authenticity of transmitted
data
Security assessment methodology for smart
meter
Goal 1
Methodology for security
assessment
Goal 2
Smart Meter Cyber Security
Laboratory Deployment
Goal 3
Security analysis and
tests of smart meter
State of the art survey for
smart meter security
Specification of the test
environment
Development of the
security assessment
methodology for smart
meter
Security test
Implementation a Smart Meter
Security Training Platform
Laboratory deployment
Laboratory operation
Knowledge and
technology transfer
Security Assessment for Smart Meters
Reliability test
Security assessment methodology for smart
meter
Main subjects:
• Security approach: Perform standard security
assessments for different types of smart meters used by
the Brazilian power companies.
• Homologation approach: Check if the smart meter is in
compliance with the standard from Inmetro called RTM
586 (Regulamento Técnico Metrológico – Inmetro)
Steps of the methodology
Scope
definition
Context
definition
Smart meter
technical
description
Threats
Identification
and analysis
Risk
analysis
Implementing
security tests
Implementing
homologation
tests
Elaboration of
the reports
1
2
3
4
5
6
8
7
Steps of the methodology
Scope
definition
Context
definition
Smart meter
technical
description
Threats
Identification
and analysis
Risk
analysis
Implementing
security tests
Implementing
homologation
tests
Elaboration of
the reports
1
2
3
4
5
6
8
7
Steps of the methodology
Scope
definition
Context
definition
Smart meter
technical
description
Threats
Identification
and analysis
Risk
analysis
Implementing
security tests
Implementing
homologation
tests
Elaboration of
the reports
1
2
3
4
5
6
8
7
Test results
• Number smart meters tested: 8
• Number of manufacters: 6
• The tests were performed in the Smart Meter Security
Assessment Laboratory at CPqD. A subset of these tests
were performed at the Elektro´s lab.
• Sw and hw vulnerabilities were found in 100% of smart
meters
Agenda
• Introduction
• Smart grid projects in Brazil
• Privacy in smart grid
• Security assessment for smart meters
• Concluding remarks
Concluding remarks (1/2)
• The last years a lot of money was invested in many Smart Grid
projects in Brazil. Most of them demanded by electric power
companies using Aneel R&D fund
• Participants of these projects: electric power companies, suppliers
(equipment and systems), R&D centers and universities
• CPqD has participated as a leader in some important projects (CEMIG,
Light and Eletrobrás)
• Most electric power companies do not prioritize information security
in smart grid projects: less then 5% of total
• Privacy is a real and an important threat for companies which are
deploying smart grid and they need to develop methodologies to
mitigate the risks
Concluding remarks (2/2)
• Smart meters are frequently
built without any security
requirements in mind.
• 100% of the smart meters
tested had hw and sw
vulnerabilities
• Smart meters are made of
electronic components and
encompass different types of
technologies, protocols, and
embedded systems.
Security of Embedded Systems
Embedded system security: much more
dangerous, costly than traditional software
vulnerabilities
Questions ?
www.cpqd.com.br
Thank You!
www.cpqd.com.br
José Reynaldo Formigoni Filho
Information and Communication Security Technology Manager
CPqD Foundation
Tel.: +55 19 3705-7121 / Fax: +55 19 3705-6833
Cel.: +55 19 99838-2321
reynaldo@cpqd.com.br
www.cpqd.com.br

More Related Content

What's hot

Challenges in smart grid project execution
Challenges in smart grid project executionChallenges in smart grid project execution
Challenges in smart grid project executionChandan Patary
 
Security challenges to power grid and smart grid infrastructures
Security challenges to power grid and smart grid infrastructuresSecurity challenges to power grid and smart grid infrastructures
Security challenges to power grid and smart grid infrastructuresP K Agarwal
 
Schneider electric home systems solar decathlon 2011
Schneider electric home systems solar decathlon 2011Schneider electric home systems solar decathlon 2011
Schneider electric home systems solar decathlon 2011Schneider Electric
 
Efficient security to meet modern day challenges
Efficient security to meet modern day challengesEfficient security to meet modern day challenges
Efficient security to meet modern day challengesSchneider Electric
 
Smart grid distribution system
Smart grid distribution systemSmart grid distribution system
Smart grid distribution systemAng Sovann
 
IoT Solutions for Smart Energy Smart Grid and Smart Utility Applications
IoT Solutions for Smart Energy Smart Grid and Smart Utility ApplicationsIoT Solutions for Smart Energy Smart Grid and Smart Utility Applications
IoT Solutions for Smart Energy Smart Grid and Smart Utility ApplicationsEurotech
 
Schneider Electric Smart City Success Stories (Worldwide)
Schneider Electric Smart City  Success Stories (Worldwide)Schneider Electric Smart City  Success Stories (Worldwide)
Schneider Electric Smart City Success Stories (Worldwide)Schneider Electric India
 
Understanding Open Protocols in Building Automation
Understanding Open Protocols in Building AutomationUnderstanding Open Protocols in Building Automation
Understanding Open Protocols in Building AutomationSchneider Electric
 
Advance Metering Infrastructure: Smart Meter
Advance Metering Infrastructure: Smart MeterAdvance Metering Infrastructure: Smart Meter
Advance Metering Infrastructure: Smart MeterMD NAWAZ
 
Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...
Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...
Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...Power System Operation
 
Matthew Hause: The Smart Grid and MBSE Driven IoT
Matthew Hause: The Smart Grid and MBSE Driven IoT Matthew Hause: The Smart Grid and MBSE Driven IoT
Matthew Hause: The Smart Grid and MBSE Driven IoT EnergyTech2015
 
Cyber security: A roadmap to secure solutions
Cyber security: A roadmap to secure solutionsCyber security: A roadmap to secure solutions
Cyber security: A roadmap to secure solutionsSchneider Electric
 
Industrial Automation Press Conference Hannover Messe
Industrial Automation Press Conference Hannover MesseIndustrial Automation Press Conference Hannover Messe
Industrial Automation Press Conference Hannover MesseSchneider Electric
 
Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...
Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...
Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...Schneider Electric
 
Designing a security policy to protect your automation solution
Designing a security policy to protect your automation solutionDesigning a security policy to protect your automation solution
Designing a security policy to protect your automation solutionSchneider Electric India
 
Making Smart & Intelligent Buildings a Reality
Making Smart & Intelligent Buildings a RealityMaking Smart & Intelligent Buildings a Reality
Making Smart & Intelligent Buildings a RealitySchneider Electric India
 
Cyber security in power sector
Cyber security in power sectorCyber security in power sector
Cyber security in power sectorP K Agarwal
 
Using Grid data analytics to protect revenue, reduce network losses and impro...
Using Grid data analytics to protect revenue, reduce network losses and impro...Using Grid data analytics to protect revenue, reduce network losses and impro...
Using Grid data analytics to protect revenue, reduce network losses and impro...Schneider Electric
 

What's hot (20)

Challenges in smart grid project execution
Challenges in smart grid project executionChallenges in smart grid project execution
Challenges in smart grid project execution
 
Security challenges to power grid and smart grid infrastructures
Security challenges to power grid and smart grid infrastructuresSecurity challenges to power grid and smart grid infrastructures
Security challenges to power grid and smart grid infrastructures
 
Schneider electric home systems solar decathlon 2011
Schneider electric home systems solar decathlon 2011Schneider electric home systems solar decathlon 2011
Schneider electric home systems solar decathlon 2011
 
Efficient security to meet modern day challenges
Efficient security to meet modern day challengesEfficient security to meet modern day challenges
Efficient security to meet modern day challenges
 
Smart grid distribution system
Smart grid distribution systemSmart grid distribution system
Smart grid distribution system
 
Smart Energy Systems of Future
Smart Energy Systems of FutureSmart Energy Systems of Future
Smart Energy Systems of Future
 
IoT Solutions for Smart Energy Smart Grid and Smart Utility Applications
IoT Solutions for Smart Energy Smart Grid and Smart Utility ApplicationsIoT Solutions for Smart Energy Smart Grid and Smart Utility Applications
IoT Solutions for Smart Energy Smart Grid and Smart Utility Applications
 
Schneider Electric Smart City Success Stories (Worldwide)
Schneider Electric Smart City  Success Stories (Worldwide)Schneider Electric Smart City  Success Stories (Worldwide)
Schneider Electric Smart City Success Stories (Worldwide)
 
Understanding Open Protocols in Building Automation
Understanding Open Protocols in Building AutomationUnderstanding Open Protocols in Building Automation
Understanding Open Protocols in Building Automation
 
Advance Metering Infrastructure: Smart Meter
Advance Metering Infrastructure: Smart MeterAdvance Metering Infrastructure: Smart Meter
Advance Metering Infrastructure: Smart Meter
 
Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...
Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...
Cybersecurity Considerations for Power Substation SCADA Systems Using IEC 618...
 
Matthew Hause: The Smart Grid and MBSE Driven IoT
Matthew Hause: The Smart Grid and MBSE Driven IoT Matthew Hause: The Smart Grid and MBSE Driven IoT
Matthew Hause: The Smart Grid and MBSE Driven IoT
 
Cyber security: A roadmap to secure solutions
Cyber security: A roadmap to secure solutionsCyber security: A roadmap to secure solutions
Cyber security: A roadmap to secure solutions
 
Industrial Automation Press Conference Hannover Messe
Industrial Automation Press Conference Hannover MesseIndustrial Automation Press Conference Hannover Messe
Industrial Automation Press Conference Hannover Messe
 
smart grid
smart gridsmart grid
smart grid
 
Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...
Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...
Impact of IEC 61508 Standards on Intelligent Electrial Networks and Safety Im...
 
Designing a security policy to protect your automation solution
Designing a security policy to protect your automation solutionDesigning a security policy to protect your automation solution
Designing a security policy to protect your automation solution
 
Making Smart & Intelligent Buildings a Reality
Making Smart & Intelligent Buildings a RealityMaking Smart & Intelligent Buildings a Reality
Making Smart & Intelligent Buildings a Reality
 
Cyber security in power sector
Cyber security in power sectorCyber security in power sector
Cyber security in power sector
 
Using Grid data analytics to protect revenue, reduce network losses and impro...
Using Grid data analytics to protect revenue, reduce network losses and impro...Using Grid data analytics to protect revenue, reduce network losses and impro...
Using Grid data analytics to protect revenue, reduce network losses and impro...
 

Viewers also liked

AMI Security 101 - Smart Grid Security East 2011
AMI Security 101 - Smart Grid Security East 2011AMI Security 101 - Smart Grid Security East 2011
AMI Security 101 - Smart Grid Security East 2011dma1965
 
Cyber Security of Power grids
Cyber Security of Power grids Cyber Security of Power grids
Cyber Security of Power grids Jishnu Pradeep
 
The Evolution of Cyber Attacks
The Evolution of Cyber AttacksThe Evolution of Cyber Attacks
The Evolution of Cyber AttacksVenafi
 
Vilde icon
Vilde icon Vilde icon
Vilde icon SofiaNim
 
Slideshare Linkedin
Slideshare LinkedinSlideshare Linkedin
Slideshare LinkedinMbomberger
 
61850easy Test Tool for IEC 61850 Networks & Systems
61850easy Test Tool for IEC 61850 Networks & Systems61850easy Test Tool for IEC 61850 Networks & Systems
61850easy Test Tool for IEC 61850 Networks & SystemsGE Grid Solutions
 
GridWise 2010 Cyber Security Update
GridWise 2010 Cyber Security UpdateGridWise 2010 Cyber Security Update
GridWise 2010 Cyber Security UpdateAndy Bochman
 
Mysore, pilot project
Mysore, pilot projectMysore, pilot project
Mysore, pilot projectcanaleenergia
 
Ataques informáticos contra el sector sanitario -Panda Security
Ataques informáticos contra el sector sanitario -Panda SecurityAtaques informáticos contra el sector sanitario -Panda Security
Ataques informáticos contra el sector sanitario -Panda SecurityPanda Security
 
ISTQB Agile Extension
ISTQB Agile ExtensionISTQB Agile Extension
ISTQB Agile ExtensionDavis Thomas
 
Nist 800 82
Nist 800 82Nist 800 82
Nist 800 82majolic
 
Transforming, testing and explaining smart grid models
Transforming, testing and explaining smart grid modelsTransforming, testing and explaining smart grid models
Transforming, testing and explaining smart grid modelsSteve Ray
 
Cybersecurity in Industrial Control Systems (ICS)
Cybersecurity in Industrial Control Systems (ICS)Cybersecurity in Industrial Control Systems (ICS)
Cybersecurity in Industrial Control Systems (ICS)Joan Figueras Tugas
 
Security And Ethical Challenges Of Infornation Technology
Security And Ethical Challenges Of Infornation TechnologySecurity And Ethical Challenges Of Infornation Technology
Security And Ethical Challenges Of Infornation Technologyparamalways
 
Physical Security Presentation
Physical Security PresentationPhysical Security Presentation
Physical Security PresentationWajahat Rajab
 
Visual Design with Data
Visual Design with DataVisual Design with Data
Visual Design with DataSeth Familian
 

Viewers also liked (20)

AMI Security 101 - Smart Grid Security East 2011
AMI Security 101 - Smart Grid Security East 2011AMI Security 101 - Smart Grid Security East 2011
AMI Security 101 - Smart Grid Security East 2011
 
61850easy Test Tool 2013
61850easy Test Tool 201361850easy Test Tool 2013
61850easy Test Tool 2013
 
Cyber Security of Power grids
Cyber Security of Power grids Cyber Security of Power grids
Cyber Security of Power grids
 
The Evolution of Cyber Attacks
The Evolution of Cyber AttacksThe Evolution of Cyber Attacks
The Evolution of Cyber Attacks
 
Vilde icon
Vilde icon Vilde icon
Vilde icon
 
Slideshare Linkedin
Slideshare LinkedinSlideshare Linkedin
Slideshare Linkedin
 
61850easy Test Tool for IEC 61850 Networks & Systems
61850easy Test Tool for IEC 61850 Networks & Systems61850easy Test Tool for IEC 61850 Networks & Systems
61850easy Test Tool for IEC 61850 Networks & Systems
 
GridWise 2010 Cyber Security Update
GridWise 2010 Cyber Security UpdateGridWise 2010 Cyber Security Update
GridWise 2010 Cyber Security Update
 
Mysore, pilot project
Mysore, pilot projectMysore, pilot project
Mysore, pilot project
 
The Not So Smart Grid
The Not So Smart GridThe Not So Smart Grid
The Not So Smart Grid
 
Ataques informáticos contra el sector sanitario -Panda Security
Ataques informáticos contra el sector sanitario -Panda SecurityAtaques informáticos contra el sector sanitario -Panda Security
Ataques informáticos contra el sector sanitario -Panda Security
 
ISTQB Agile Extension
ISTQB Agile ExtensionISTQB Agile Extension
ISTQB Agile Extension
 
Nist 800 82
Nist 800 82Nist 800 82
Nist 800 82
 
Transforming, testing and explaining smart grid models
Transforming, testing and explaining smart grid modelsTransforming, testing and explaining smart grid models
Transforming, testing and explaining smart grid models
 
Cybersecurity in Industrial Control Systems (ICS)
Cybersecurity in Industrial Control Systems (ICS)Cybersecurity in Industrial Control Systems (ICS)
Cybersecurity in Industrial Control Systems (ICS)
 
DDoS Attacks
DDoS AttacksDDoS Attacks
DDoS Attacks
 
Security And Ethical Challenges Of Infornation Technology
Security And Ethical Challenges Of Infornation TechnologySecurity And Ethical Challenges Of Infornation Technology
Security And Ethical Challenges Of Infornation Technology
 
Physical Security Presentation
Physical Security PresentationPhysical Security Presentation
Physical Security Presentation
 
Slideshare ppt
Slideshare pptSlideshare ppt
Slideshare ppt
 
Visual Design with Data
Visual Design with DataVisual Design with Data
Visual Design with Data
 

Similar to Smart grid projects and ciber security in brazil conference

Smart metering security assessment in smart grid projects: the Brazilian Expe...
Smart metering security assessment in smart grid projects: the Brazilian Expe...Smart metering security assessment in smart grid projects: the Brazilian Expe...
Smart metering security assessment in smart grid projects: the Brazilian Expe...José Reynaldo Formigoni Filho, MSc
 
Presentation : Smart Grid based on research paper
Presentation : Smart Grid based on research paperPresentation : Smart Grid based on research paper
Presentation : Smart Grid based on research paperUsman Ksk
 
5 g and local fibre programme inca presentation
5 g and local fibre programme   inca presentation5 g and local fibre programme   inca presentation
5 g and local fibre programme inca presentationJames Saunby
 
Managed Connectivity for Digital Signage, Utilities & mHealth
Managed Connectivity for Digital Signage, Utilities & mHealthManaged Connectivity for Digital Signage, Utilities & mHealth
Managed Connectivity for Digital Signage, Utilities & mHealthTelefónica IoT
 
Abiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] Final
Abiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] FinalAbiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] Final
Abiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] FinalNigel Tebbutt
 
Smart Grid
Smart GridSmart Grid
Smart GridNexus
 
Satellite Applications Catapult Overview
Satellite Applications Catapult OverviewSatellite Applications Catapult Overview
Satellite Applications Catapult OverviewtechUK
 
Workplace Technology Devices (WTD) Initiative
Workplace Technology Devices (WTD) InitiativeWorkplace Technology Devices (WTD) Initiative
Workplace Technology Devices (WTD) InitiativeKBIZEAU
 
Smart Metering Implementation Program
Smart Metering Implementation ProgramSmart Metering Implementation Program
Smart Metering Implementation ProgramTelefónica IoT
 
Smart Electric Meters - Role of Govt. in Technology Management
Smart Electric Meters - Role of Govt. in Technology ManagementSmart Electric Meters - Role of Govt. in Technology Management
Smart Electric Meters - Role of Govt. in Technology ManagementASHOK BHATLA
 
CSquare practical steps for future proof networks
CSquare practical steps for future proof networksCSquare practical steps for future proof networks
CSquare practical steps for future proof networksMyles Freedman
 
Company Profile - jvnetwroks resources sdn bhd
Company Profile - jvnetwroks resources sdn bhdCompany Profile - jvnetwroks resources sdn bhd
Company Profile - jvnetwroks resources sdn bhdIT FIRST SDN BHD
 
SGN Webinar March 14 2013 Norman_SAIC
SGN Webinar March 14 2013 Norman_SAICSGN Webinar March 14 2013 Norman_SAIC
SGN Webinar March 14 2013 Norman_SAICJeffrey Norman
 
Research Methodology Presentation - Research in Supply Chain Digital Twins
Research Methodology Presentation - Research in Supply Chain Digital TwinsResearch Methodology Presentation - Research in Supply Chain Digital Twins
Research Methodology Presentation - Research in Supply Chain Digital TwinsArwa Abougharib
 
fINAL SMART CITYseamless communication and collaboration between citizens and...
fINAL SMART CITYseamless communication and collaboration between citizens and...fINAL SMART CITYseamless communication and collaboration between citizens and...
fINAL SMART CITYseamless communication and collaboration between citizens and...sol zem
 

Similar to Smart grid projects and ciber security in brazil conference (20)

Smart metering security assessment in smart grid projects: the Brazilian Expe...
Smart metering security assessment in smart grid projects: the Brazilian Expe...Smart metering security assessment in smart grid projects: the Brazilian Expe...
Smart metering security assessment in smart grid projects: the Brazilian Expe...
 
Presentation : Smart Grid based on research paper
Presentation : Smart Grid based on research paperPresentation : Smart Grid based on research paper
Presentation : Smart Grid based on research paper
 
M2M Telefónica - Internet of Things Keynote
M2M Telefónica - Internet of Things KeynoteM2M Telefónica - Internet of Things Keynote
M2M Telefónica - Internet of Things Keynote
 
5 g and local fibre programme inca presentation
5 g and local fibre programme   inca presentation5 g and local fibre programme   inca presentation
5 g and local fibre programme inca presentation
 
Smart Advanced Metering in the UK – An overview
Smart Advanced Metering in the UK – An overviewSmart Advanced Metering in the UK – An overview
Smart Advanced Metering in the UK – An overview
 
Lect k week 12 summary on smart meters & sg 1
Lect k  week 12 summary on smart meters & sg  1Lect k  week 12 summary on smart meters & sg  1
Lect k week 12 summary on smart meters & sg 1
 
Lect k week 12 summary on smart meters & sg 1
Lect k  week 12 summary on smart meters & sg  1Lect k  week 12 summary on smart meters & sg  1
Lect k week 12 summary on smart meters & sg 1
 
Managed Connectivity for Digital Signage, Utilities & mHealth
Managed Connectivity for Digital Signage, Utilities & mHealthManaged Connectivity for Digital Signage, Utilities & mHealth
Managed Connectivity for Digital Signage, Utilities & mHealth
 
Abiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] Final
Abiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] FinalAbiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] Final
Abiliti Smart Cities Of The Future Programme 1st Contact Pre Nda[2007] Final
 
Smart Grid
Smart GridSmart Grid
Smart Grid
 
Satellite Applications Catapult Overview
Satellite Applications Catapult OverviewSatellite Applications Catapult Overview
Satellite Applications Catapult Overview
 
Workplace Technology Devices (WTD) Initiative
Workplace Technology Devices (WTD) InitiativeWorkplace Technology Devices (WTD) Initiative
Workplace Technology Devices (WTD) Initiative
 
Smart Metering Implementation Program
Smart Metering Implementation ProgramSmart Metering Implementation Program
Smart Metering Implementation Program
 
Smart Electric Meters - Role of Govt. in Technology Management
Smart Electric Meters - Role of Govt. in Technology ManagementSmart Electric Meters - Role of Govt. in Technology Management
Smart Electric Meters - Role of Govt. in Technology Management
 
CSquare practical steps for future proof networks
CSquare practical steps for future proof networksCSquare practical steps for future proof networks
CSquare practical steps for future proof networks
 
Company Profile - jvnetwroks resources sdn bhd
Company Profile - jvnetwroks resources sdn bhdCompany Profile - jvnetwroks resources sdn bhd
Company Profile - jvnetwroks resources sdn bhd
 
SGN Webinar March 14 2013 Norman_SAIC
SGN Webinar March 14 2013 Norman_SAICSGN Webinar March 14 2013 Norman_SAIC
SGN Webinar March 14 2013 Norman_SAIC
 
Research Methodology Presentation - Research in Supply Chain Digital Twins
Research Methodology Presentation - Research in Supply Chain Digital TwinsResearch Methodology Presentation - Research in Supply Chain Digital Twins
Research Methodology Presentation - Research in Supply Chain Digital Twins
 
fINAL SMART CITYseamless communication and collaboration between citizens and...
fINAL SMART CITYseamless communication and collaboration between citizens and...fINAL SMART CITYseamless communication and collaboration between citizens and...
fINAL SMART CITYseamless communication and collaboration between citizens and...
 
Smart grid journey
Smart grid journey Smart grid journey
Smart grid journey
 

More from José Reynaldo Formigoni Filho, MSc

More from José Reynaldo Formigoni Filho, MSc (10)

Blockchain no setor elétrico: conceitos, potenciais aplicações e iniciativas
Blockchain no setor elétrico: conceitos, potenciais aplicações e iniciativasBlockchain no setor elétrico: conceitos, potenciais aplicações e iniciativas
Blockchain no setor elétrico: conceitos, potenciais aplicações e iniciativas
 
Segurança em IoT - conceitos e iniciativas de padronização
Segurança em IoT - conceitos e iniciativas de padronizaçãoSegurança em IoT - conceitos e iniciativas de padronização
Segurança em IoT - conceitos e iniciativas de padronização
 
IoT + Blockchain: o mesh perfeito
IoT + Blockchain: o mesh perfeitoIoT + Blockchain: o mesh perfeito
IoT + Blockchain: o mesh perfeito
 
Plano Nacional de IoT e a Segurança Cibernética das Coisas
Plano Nacional de IoT e a Segurança Cibernética das CoisasPlano Nacional de IoT e a Segurança Cibernética das Coisas
Plano Nacional de IoT e a Segurança Cibernética das Coisas
 
(In)segurança em iot no setor elétrico
(In)segurança em iot no setor elétrico(In)segurança em iot no setor elétrico
(In)segurança em iot no setor elétrico
 
Tecnologia blockchain: uma visão geral
Tecnologia blockchain:  uma visão geralTecnologia blockchain:  uma visão geral
Tecnologia blockchain: uma visão geral
 
Tecnologia Blockchain: uma visão Geral (CPqD)
Tecnologia Blockchain: uma visão Geral (CPqD)Tecnologia Blockchain: uma visão Geral (CPqD)
Tecnologia Blockchain: uma visão Geral (CPqD)
 
Smart Grid Forum 2016 Segurança IoT v3
Smart Grid Forum 2016 Segurança IoT v3Smart Grid Forum 2016 Segurança IoT v3
Smart Grid Forum 2016 Segurança IoT v3
 
Gestão de Risco e Maturidade WS Aneel 2016 v3
Gestão de Risco e Maturidade WS Aneel 2016 v3Gestão de Risco e Maturidade WS Aneel 2016 v3
Gestão de Risco e Maturidade WS Aneel 2016 v3
 
Cibersegurança no Setor Elétrico: Ações internacionais e proposta para mitiga...
Cibersegurança no Setor Elétrico: Ações internacionais e proposta para mitiga...Cibersegurança no Setor Elétrico: Ações internacionais e proposta para mitiga...
Cibersegurança no Setor Elétrico: Ações internacionais e proposta para mitiga...
 

Recently uploaded

Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slidevu2urc
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CVKhem
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessPixlogix Infotech
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?Antenna Manufacturer Coco
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfhans926745
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024The Digital Insurer
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century educationjfdjdjcjdnsjd
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 

Recently uploaded (20)

Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your Business
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdf
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 

Smart grid projects and ciber security in brazil conference

  • 1. Smart Grid Projects, Privacy and Smart Meters Security Assessment in the Brazilian Scenario José Reynaldo Formigoni Filho, MSc Information and Communication Security Technology Manager CPqD Foundation Moacir Giansante Supply Chain Director - Aptel
  • 2. Agenda • Introduction: Brazilian Electric Sector • Brazilian smart grid projects • Privacy in smart grid • Security assessment for smart meters • Concluding remarks
  • 3. CPqD Foundation – Campinas – SP - Brazil
  • 4. Board of Trustees Executive Board Audit Committee R&D Forum Private Foundation "Private company without shareholders" Surplus reinvested Corporate Governance 2015 Revenue: US$ 100 mi Total: 1300
  • 5. Main R&D areas Comunicações Ópticas Optical Communications Comunicações Ópticas IP Platforms Comunicações Ópticas Business and Operations Support Systems Communication and Information Security Comunicações Ópticas Sensor Technologies and Networks Comunicações Ópticas Services, Applications, Terminals and Digital Inclusion Comunicações Ópticas Decision Management Mobile Communications and Wireless Networks Smart Grid
  • 6. Aptel • Aptel is an non profit association of utilities (electricity, oil, gas, railways and highways) which manage critical telecommunication systems for their core business.
  • 7. Agenda • Introduction: Brazilian Electric Sector • Smart grid projects in Brazil • Privacy in smart grid • Security assessment for smart meters • Concluding remarks
  • 8. Brazilian Electric Sector • Population: ~204 mi • Attendance extension: superior to 98% of the population • Number of consumer units: 75 mi • Regulated consumption: 463.335 GWh • Per capta consumption: 2.557 KWh/year
  • 9. Brazilian Electric Sector • The Electric System National Operator is an entity of private right, responsible for coordinating and controlling the operation of generation and transmission facilities in the National interconnected Power System (NIPS) • Under supervision and regulation of the Electric Energy National Agency (ANEEL).
  • 10. Brazilian Electric Sector • Generation companies: 146 • Distribution companies: 55 • Transmission companies: 104
  • 11. Brazilian Eletric Energy Matrix and Capacity 89.385 37.821 1.990 5.139 POWER (MW) - TOTAL CAPACITY 134,3 GW Hidroeletric Thermoeletric Thermonuclear Wind 67% 28%
  • 12. Agenda • Introduction • Smart grid projects in Brazil • Privacy in smart grid • Security assessment for smart meters • Concluding remarks
  • 13. Public policies to encourage Smart Grid Projects: Aneel R&D Fund • The electric power distribution, generation and transmission should apply a minimum percent of their net operating income every year in the R&D Program for the Electric Power Sector; • Aneel establishes guidelines and instructions that regulate the elaboration of R&D projects • The percentages to be invested from the net operating income: Segment % Distribution 0,20% Generation 0,40% Transmission 0,40%
  • 14. Public policies to encourage R&D investments - Aneel R&D Fund Year Number of projects Value (US$ mi) 2009 226 154,50 2010 569 821,59 2011 462 500,00 2012 489 769,23 2013 180 348,84 Total 1926 2.594,16 * Aneel – Relatórios de Gestão do Exercício 2009-2013
  • 15. Innovate National Energy Plan • Sponsors: • Aneel • BNDS (Brazilian Development Bank) • FINEP (Financier of Studies and Projects – state institution) • One of the main subjects: Support the development and diffusion of electronic, microelectronic devices, systems, integrated solutions and standards for implementation of smart grids in Brazil. • Total value: US$ 1,1 bi (from 2013 to 2017), only US$ 44 mi is 100% subsidy • Beneficiaries: power companies, suppliers of equipment and systems and R&D centers • 59 projects were approved in the first phase
  • 16. Brazilian Smart Grid Projects* • Total of power companies involved in SG projects: • Generation: 21 • Transmission: 7 • Distribution: 34 • Number of projects: 273 from 2008 to 2013 • Total of investment: ~US$ 575 mi • The 10 most important projects: * Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
  • 17. Brazilian Smart Grid Projects * • Smart Grid sub-areas: • AMI – Advanced Metering Infrastructure • DA – Distributed Authomation • DG - Distributed Generation • Telecom • IT – Information Technology • IB – Intelligent Building • Smart Grid areas: • DSD - Distributed Storage Systems and Batteries • EVH - Electric vehicles, hybrids and loading systems • CMS – Customer Management System • DEMO – Pilot Projects • Others AMI DA DG DSD EVH Telecom TI IB CSM Others Quant. of projects Quant. of companies * Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
  • 18. Brazilian Smart Grid Projects – suppliers at power companies* Suppliers Quant.ofpowercompanies * Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
  • 19. Brazilian Smart Grid Projects – Universities and R&D centers at power companies* Quant.ofpowercompanies * Mapeamento da Cadeia Fornecedora de TIC e de seus produtos e Serviços para Rede Elétricas Inteligentes – ABDI – julho 2014
  • 20. Brazilian Smart Grid Projects* • Information security is not a priority in the Brazilian smart grid projects • Less than 10 projects have considered Information Security (IS) activities • Only one project is 100% focused in Information Security
  • 21. Agenda • Introduction • Smart grid projects in Brazil • Privacy in smart grid • Security assessment for smart meters • Concluding remarks
  • 22. Cemig Smart Meter Project • Power company: CEMIG • An open capital company controlled by the Government of the State of Minas Gerais • Cemig is responsible for supplying nearly 33 million people in 805 municipalities in the states of Minas Gerais and Rio de Janeiro (including Light), and for the management of the largest electric energy distribution network in South America • Name: Cities of the Future • Budget: US$ 20 mi • City: Sete Lagoas • Number of consumer units: 5000 • Duration: 2011 - 2014
  • 23. Cemig Smart Meter Project Technological scope • Measurement of consumption of the Consumer Units • Distributed Automation • Distributed Generation • Telecommunication • Information technology • Georeferencing Strategical scope • Regulatory • Communication and Relationships with Consumers • Privacy • Process • Indicators and Metrics.
  • 24. Cemig Smart Meter Project Technological scope • Measurement of consumption of the Consumer Units • Distributed Automation • Distributed Generation • Telecommunication • Information technology • Georeferencing Strategical scope • Regulatory • Communication and Relationships with Consumers • Privacy • Process • Indicators and Metrics.
  • 25. Cemig Smart Meter Project - Privacy The main activities of privacy the project: 1. Data costumer privacy: Studies of contextualization 2. Development of a Methodology of Privacy Protection 3. Recommendations on privacy for the smart grid elements: smart meter and telecom infrastructure 4. Recommendations on privacy on Smart Grid environment: call center and MDM/AMI 5. Consumer Data Privacy - guidance manual for employees of Cemig 6. Recommendations for creating Privacy Policy for Cemig
  • 26. Data costumer privacy: Studies of contextualization Smart Grid Environment Best Practices Legal and regulatory framework
  • 27. Data costumer privacy: Project scope Customer Environment Telecom Network Environment Smart Meters Telecom Infrastructure MAN Architecture and network elements Power Company Environment Systems (HW and SW), IS policies, processes and people MDM - Meter Data Management Políticas Processos Pessoas Processes IS Policies People
  • 28. Agenda • Introduction • Smart grid projects in Brazil • Privacy in smart grid • Security assessment for smart meters • Concluding remarks
  • 29. Deployment of smart meters in Brazil – our reality • In August 2012, ANEEL approved a resolution which states that energy distributors will have to install electronic meters for all consumers who choose time-of-use billing program by January 2014. • It was the first step by the Brazilian Government to replace the electromechanical meters. • Fraud average: 5,6% dailyreporter.com
  • 30. The main threats in Brazil – Energy usage frauds • Many frauds related to electromechanical meters currently in use in Brazil • There are also record of frauds related to other new electronic devices, for instance pay TV Fraud • It is possible to infer that the new smart meter devices to be used in Brazil will further increase the current level of fraud
  • 31. Security assessment for smart meter – Project Overview • Name: R&D in security assessment for smart meters • Client: • Sponsor: Aneel R&D Fund • Period: from September 2012 to December 2014 • Totally executed by CPqD Foundation • Number of clientes: 2.4 mi • 8ª. biggest power company in Brazil • Number of cities: 228
  • 32. Security assessment for smart meter – Project Overview Subjects: • Investigate different brands and types of smart meters available in the market • Run tests for checking security requirements • Assess potential impacts • Build two labs specialized in security evaluation of smart meters and homologation
  • 33. Security assessment for smart meter Goal 1 Methodology for security assessment Goal 2 Smart Meter Cyber Security Laboratory Deployment Goal 3 Security analysis and tests of smart meters State of the art survey for smart meters security Specification of the test environment Development of the security assessment methodology for smart meters Security test Implementation of a Smart Meter Security Training Platform Laboratory deployment Laboratory operation Knowledge and technology transfer Security Assessment for Smart Meters Homologation test
  • 34. Security requirements - references • There are international standards related to security requirements: • OIML D31 - General requirements for software controlled measuring instruments, 2008. • NIST 7823* - Advanced Metering Infrastructure Smart Meter Upgradeability Test Framework, July 2012 • This report describes conformance test requirements that may be used voluntarily by testers and/or test laboratories to determine whether Smart Meters and Upgrade Management Systems conform to the requirements of NEMA SG-AMI** • The Brazilian standard: • Instituto Nacional de Metrologia, Qualidade e Tecnologia – INMETRO. RTM 586 - Regulamento Técnico Metrológico – 2012: addresses metrologically relevant software security aspects of the smart meters. * National Institute of Standards and Methodology ** NEMA – National Electrical Manufacturers Association *** INMETRO – Instituto Nacional de Metrologia
  • 35. Hardware security requirements • Unprotected interface • Hardware anti-tampering mechanisms • Hardware integrity checking • Hardware backdoors • Hardware anti-reverse engineering
  • 36. Software security requirements List of requirements: 1. Authentication 2. Authorization 3. Log registers 4. Software fault detection 5. Secure data storage (protection against unauthorized access - privacy of measurement data and other data, cryptographic key protection, etc.) 6. Safe boot 7. Cryptography support (for secure transmission and other services) 8. Firmware authenticity 9. Firmware integrity 10. Firmware protection 11. Safe firmware update 12. Data integrity stored and transmitted 13. Authenticity of transmitted data
  • 37. Security assessment methodology for smart meter Goal 1 Methodology for security assessment Goal 2 Smart Meter Cyber Security Laboratory Deployment Goal 3 Security analysis and tests of smart meter State of the art survey for smart meter security Specification of the test environment Development of the security assessment methodology for smart meter Security test Implementation a Smart Meter Security Training Platform Laboratory deployment Laboratory operation Knowledge and technology transfer Security Assessment for Smart Meters Reliability test
  • 38. Security assessment methodology for smart meter Main subjects: • Security approach: Perform standard security assessments for different types of smart meters used by the Brazilian power companies. • Homologation approach: Check if the smart meter is in compliance with the standard from Inmetro called RTM 586 (Regulamento Técnico Metrológico – Inmetro)
  • 39. Steps of the methodology Scope definition Context definition Smart meter technical description Threats Identification and analysis Risk analysis Implementing security tests Implementing homologation tests Elaboration of the reports 1 2 3 4 5 6 8 7
  • 40. Steps of the methodology Scope definition Context definition Smart meter technical description Threats Identification and analysis Risk analysis Implementing security tests Implementing homologation tests Elaboration of the reports 1 2 3 4 5 6 8 7
  • 41. Steps of the methodology Scope definition Context definition Smart meter technical description Threats Identification and analysis Risk analysis Implementing security tests Implementing homologation tests Elaboration of the reports 1 2 3 4 5 6 8 7
  • 42. Test results • Number smart meters tested: 8 • Number of manufacters: 6 • The tests were performed in the Smart Meter Security Assessment Laboratory at CPqD. A subset of these tests were performed at the Elektro´s lab. • Sw and hw vulnerabilities were found in 100% of smart meters
  • 43. Agenda • Introduction • Smart grid projects in Brazil • Privacy in smart grid • Security assessment for smart meters • Concluding remarks
  • 44. Concluding remarks (1/2) • The last years a lot of money was invested in many Smart Grid projects in Brazil. Most of them demanded by electric power companies using Aneel R&D fund • Participants of these projects: electric power companies, suppliers (equipment and systems), R&D centers and universities • CPqD has participated as a leader in some important projects (CEMIG, Light and Eletrobrás) • Most electric power companies do not prioritize information security in smart grid projects: less then 5% of total • Privacy is a real and an important threat for companies which are deploying smart grid and they need to develop methodologies to mitigate the risks
  • 45. Concluding remarks (2/2) • Smart meters are frequently built without any security requirements in mind. • 100% of the smart meters tested had hw and sw vulnerabilities • Smart meters are made of electronic components and encompass different types of technologies, protocols, and embedded systems.
  • 46. Security of Embedded Systems Embedded system security: much more dangerous, costly than traditional software vulnerabilities
  • 48. Thank You! www.cpqd.com.br José Reynaldo Formigoni Filho Information and Communication Security Technology Manager CPqD Foundation Tel.: +55 19 3705-7121 / Fax: +55 19 3705-6833 Cel.: +55 19 99838-2321 reynaldo@cpqd.com.br www.cpqd.com.br