作者:
謝增孝,張信情,馮豐業(yè),朱繼峰,徐昊(浙江浙能中煤舟山煤電有限責任公司,浙江 舟山 316100)
孫科達(浙江省能源集團有限公司,浙江 杭州 310063)
摘要:當前,新的攻擊手段和攻擊方式不斷出現(xiàn),要求防護體系不斷加
強以應對新形勢。電力系統(tǒng)是最早關注網(wǎng)絡信息安全問題的行業(yè),歷經(jīng)
10余年電力工控系統(tǒng)安全防護建設,已經(jīng)初步建成了安全分區(qū)、專網(wǎng)專
用、橫向隔離、縱向認證的電力監(jiān)控系統(tǒng)安防體系。然而,電力監(jiān)控系
統(tǒng)信息安全危機應急處置的水平及能力還存在較大不足,具體體現(xiàn)在應
急機制不完善、應急保障缺失、應急演練不到位、事故處置經(jīng)驗不足等
方面。電力監(jiān)控系統(tǒng)信息安全應急管理體系的標準化研究有助于在各個
發(fā)電廠進一步推廣應用,有助于應急處置經(jīng)驗的分享,有助于進一步提
高電力工控領域的應急管理水平。
關鍵詞:電力系統(tǒng);工控系統(tǒng);應急處置
Abstract: In the new period , new cyber attack methods continue to
appear, which inevitably requires the protection system to constantly
updated and strengthened. Electric power system is the first to follow
network information security. After more than 10 years of security
protection construction of power control system, a security system
of power supervisory system with security zoning, private network,
horizontal isolation and vertical certification has been preliminarily
established. However, with the gradual improvement of the information
security protection system of the power supervisory system, there
are still great deficiencies in ability of the information security crisis
emergency response of the power supervisory system, which are
embodied in the imperfect emergency mechanism, the lack of
emergency support, the lack of emergency drill, the lack of experience
in accident disposal and so on. The research on the standardization
of information security emergency management system of power
supervisory system will help to further promote the application in
various power plants, share the experience of emergency disposal, and
further improve the level of emergency management in the field of
electric industrial control system.
Key words: Power system; Industrial control system; Emergency response
摘自《自動化博覽》2021年11月刊