[SCADASEC] GAO: TVA Power Plants Vulnerable to Cyber Attacks

Ron Southworth southworthrg at bigpond.com
Wed May 21 16:05:51 CDT 2008


A simple answer.

It is a big picture thing most people don't seem to get it....

It is not the standard it is how it is going to be used It is only 
addressing part of best practices.

Ron Southworth

ljknews wrote:
> At 4:13 AM +1000 5/22/08, Ron Southworth wrote:
>
>   
>> Security Standards give a measure to aspire to and compare 
>> quantitatively and have a place in the industry for certain.
>>
>> Breeding a security culture based on best practices is far more 
>> effective, valuable and long lasting, remember that old saying - loose 
>> lips sink ships.
>>     
>
> I would like to read the regards in which you feel 800-53
> does not represent "best practices".
>
> Probably NIST would like your input as well.
>   



More information about the scadasec mailing list