Overview
IEC TS 62351-1:2007 - "Power systems management and associated information exchange - Data and communications security - Part 1: Communication network and system security – Introduction to security issues" is the introductory Technical Specification for the IEC 62351 series. It frames information security requirements for power system control operations and Smart Grid environments, explains why security is needed in telecontrol and power system communications, and introduces the structure and objectives of the remaining IEC 62351 parts.
Key Topics
- Scope and objectives: Defines the series’ focus on information security for IEC TC 57 communication protocols (IEC 60870‑5, IEC 60870‑6, IEC 61850, IEC 61970, IEC 61968) and the need for end‑to‑end security in power system operations.
- Threats and vulnerabilities: Describes types of security threats (deliberate and inadvertent), common vulnerabilities and potential attack vectors affecting communication networks and system components.
- Security requirements: Emphasizes authentication as a core requirement and covers confidentiality, integrity, availability, non‑repudiation, and related countermeasures.
- Risk assessment and policies: Introduces security risk assessment, the importance of security policies, and how security measures impact power system operation.
- Security process and lifecycle: Presents a continuous security process (planning, implementation, monitoring, and review) and a five‑step security process for operational deployment.
- Relationship to protocol profiles: Summarizes how later parts of IEC 62351 define profiles and measures for TCP/IP, MMS, IEC 60870‑5, IEC 61850 multicast protocols (e.g., GOOSE/SMV), and network/system management (NSM).
- Practical caveats: Warns that simple “bump‑in‑the‑wire” encryption or VPNs alone are insufficient for complete end‑to‑end security.
Applications
- Utility and transmission operators securing telecontrol and control‑centre communications
- Substation automation and IEC 61850 deployment teams implementing secure multicast and MMS profiles
- Network and systems engineers designing defense‑in‑depth for Smart Grid communications
- System integrators and vendors creating products compatible with IEC 62351 security profiles
- Regulators and cybersecurity auditors assessing security posture of power system operations
Who Should Use It
Security architects, utility cyber teams, substation automation engineers, protocol implementers, and Smart Grid project managers will use IEC TS 62351‑1 to understand security concepts, coordinate risk assessments, and plan adoption of the more technical parts (IEC 62351‑2 through IEC 62351‑7).
Related Standards
Keywords: IEC TS 62351-1:2007, IEC 62351, power systems security, communication network and system security, Smart Grid security, IEC 61850 security, IEC TC 57.