USA’s Nuclear Regulatory Commission at risk of being hacked
Nuclear commission risks being hacked because of organizational issues: watchdog report http://www.washingtontimes.com/news/2016/jan/13/nuclear-commission-risks-being-hacked-because-of-o/ By Andrew Blake – The Washington Times – Wednesday, January 13, 2016
Computer networks used by the U.S. Nuclear Regulatory Commissionpose a real possibility of being exploited by hackers as a result of inadequate organization among security personnel, a federal report found this week.
The NRC’s inspector general said in a 18-page assessment released on Tuesday that its Security Operations Center, or SOC, isn’t “optimized to protect the agency’s network in the current cyber threat environment.”
Weeks after new reports revealed that hackers had successfully compromised a hydroelectric dam in New York City in 2013, the government watchdog said the NRC’s unclassified computer networks risk being breached because the agency has failed to structure itself in a way that would ensure any unauthorized intrusions are handled appropriately.
NRC staffers told the inspector general that the SOC “does not meet agency needs” and singled out a lack of proactive analyses and timely, detailed reports that could otherwise provide the information necessary to keep its networks properly protected.
“There are no performance goals,” the watchdog found, meaning the NRCcannot possibly assess “whether agency needs are being met.”
More specifically, the report faulted “generic” contracts that have yielded “differing expectations” with respect to roles and responsibilities, as well as “inadequate definitions in agency policies and undifferentiated functional descriptions between different entities responsible for securing NRC’s network.”
“This occurs because although the contract performance criteria are aligned with National Institute of Standards and Technology and NRCinternal guidance, the contract does not clearly define SOC performance goals and metrics that can be used to determine whether agency needs are being met,” the inspector general concluded following a five-month audit of the NRC’s headquarters in Rockville, Maryland.
To keep the NRC’s unclassified networks safe from hackers, the agency must ensure that organizational roles and responsibilities are more clearly defined, the watchdog said.
In the meantime, the inspector general acknowledged in a footnote that the nuclear sector has not been spared from cyberattacks: While federal data has suggested a 9.7 percent surge between 2013 and 2014 with regards to computer security incidents across the board, the NRCexperienced an 18 percent increase in hack attacks during that same span, including instances in which hackers had attempted to gain unauthorized access through malicious code injections, social engineering, policy violations or other attempts.
“A dynamic cyber threat environment demands a high-performing SOC,” the inspector general wrote. “The sophistication and frequency of malicious activity targeting NRC has increased. These forces, combined with the need for NRC users to stay connected with stakeholders and partners through the Internet, make effective information security a critical capability.”
No comments yet.
-
Archives
- December 2025 (268)
- November 2025 (359)
- October 2025 (377)
- September 2025 (258)
- August 2025 (319)
- July 2025 (230)
- June 2025 (348)
- May 2025 (261)
- April 2025 (305)
- March 2025 (319)
- February 2025 (234)
- January 2025 (250)
-
Categories
- 1
- 1 NUCLEAR ISSUES
- business and costs
- climate change
- culture and arts
- ENERGY
- environment
- health
- history
- indigenous issues
- Legal
- marketing of nuclear
- media
- opposition to nuclear
- PERSONAL STORIES
- politics
- politics international
- Religion and ethics
- safety
- secrets,lies and civil liberties
- spinbuster
- technology
- Uranium
- wastes
- weapons and war
- Women
- 2 WORLD
- ACTION
- AFRICA
- Atrocities
- AUSTRALIA
- Christina's notes
- Christina's themes
- culture and arts
- Events
- Fuk 2022
- Fuk 2023
- Fukushima 2017
- Fukushima 2018
- fukushima 2019
- Fukushima 2020
- Fukushima 2021
- general
- global warming
- Humour (God we need it)
- Nuclear
- RARE EARTHS
- Reference
- resources – print
- Resources -audiovicual
- Weekly Newsletter
- World
- World Nuclear
- YouTube
-
RSS
Entries RSS
Comments RSS


Leave a comment