Guiding Principles for the Nation's Critical Infrastructure


Book Description

The Critical Infrastructure Guidance Task Committee presents guiding principles to ensure quality in critical infrastructure systems that may involve multiple constituents, multiple jurisdictions, and complex financing.




Critical Infrastructures Resilience


Book Description

This text offers comprehensive and principled, yet practical, guidelines to critical infrastructures resilience. Extreme events and stresses, including those that may be unprecedented but are no longer surprising, have disproportionate effects on critical infrastructures and hence on communities, cities, and megaregions. Critical infrastructures include buildings and bridges, dams, levees, and sea walls, as well as power plants and chemical factories, besides lifeline networks such as multimodal transportation, power grids, communication, and water or wastewater. The growing interconnectedness of natural-built-human systems causes cascading infrastructure failures and necessitates simultaneous recovery. This text explores the new paradigm centered on the concept of resilience by approaching the challenges posed by globalization, climate change, and growing urbanization on critical infrastructures and key resources through the combination of policy and engineering perspectives. It identifies solutions that are scientifically credible, data driven, and sound in engineering principles while concurrently informed by and supportive of social and policy imperatives. Critical Infrastructures Resilience will be of interest to students of engineering and policy.




Countering Cyber Sabotage


Book Description

Countering Cyber Sabotage: Introducing Consequence-Driven, Cyber-Informed Engineering (CCE) introduces a new methodology to help critical infrastructure owners, operators and their security practitioners make demonstrable improvements in securing their most important functions and processes. Current best practice approaches to cyber defense struggle to stop targeted attackers from creating potentially catastrophic results. From a national security perspective, it is not just the damage to the military, the economy, or essential critical infrastructure companies that is a concern. It is the cumulative, downstream effects from potential regional blackouts, military mission kills, transportation stoppages, water delivery or treatment issues, and so on. CCE is a validation that engineering first principles can be applied to the most important cybersecurity challenges and in so doing, protect organizations in ways current approaches do not. The most pressing threat is cyber-enabled sabotage, and CCE begins with the assumption that well-resourced, adaptive adversaries are already in and have been for some time, undetected and perhaps undetectable. Chapter 1 recaps the current and near-future states of digital technologies in critical infrastructure and the implications of our near-total dependence on them. Chapters 2 and 3 describe the origins of the methodology and set the stage for the more in-depth examination that follows. Chapter 4 describes how to prepare for an engagement, and chapters 5-8 address each of the four phases. The CCE phase chapters take the reader on a more granular walkthrough of the methodology with examples from the field, phase objectives, and the steps to take in each phase. Concluding chapter 9 covers training options and looks towards a future where these concepts are scaled more broadly.




National Strategy for the Physical Protection of Critical Infrastructures and Key Assets


Book Description

The National Strategy for Physical Protection of Critical Infrastructures and Key Assets serves as a critical bridge between the National Strategy for Homeland Security and a national protection plan to be developed by the Department of Homeland Security.







Increasing National Resilience to Hazards and Disasters


Book Description

Natural disasters are having an increasing effect on the lives of people in the United States and throughout the world. Every decade, property damage caused by natural disasters and hazards doubles or triples in the United States. More than half of the U.S. population lives within 50 miles of a coast, and all Americans are at risk from such hazards as fires, earthquakes, floods, and wind. The year 2010 saw 950 natural catastrophes around the world-the second highest annual total ever-with overall losses estimated at $130 billion. The increasing impact of natural disasters and hazards points to increasing importance of resilience, the ability to prepare and plan for, absorb, recover from, or more successfully adapt to actual or potential adverse events, at the individual , local, state, national, and global levels. Assessing National Resilience to Hazards and Disasters reviews the effects of Hurricane Katrina and other natural and human-induced disasters on the Gulf Coast of Louisiana and Mississippi and to learn more about the resilience of those areas to future disasters. Topics explored in the workshop range from insurance, building codes, and critical infrastructure to private-sector issues, public health, nongovernmental organizations and governance. This workshop summary provides a rich foundation of information to help increase the nation's resilience through actionable recommendations and guidance on the best approaches to reduce adverse impacts from hazards and disasters.




Critical Infrastructures, Key Resources, Key Assets


Book Description

In the face of increasing failures, comments attributed to Albert Einstein loom large: “We cannot solve our problems with the same thinking we used when we created them.” There is a pervasive feeling that any attempt to make sense of the current terrain of complex systems must involve thinking outside the box and originating unconventional approaches that integrate organizational, managerial, social, political, cultural, and human aspects and their interactions. This textbook offers research-based models and tools for diagnosing and predicting the behavior of complex techno-socio-economic systems in the domain of critical infrastructures, key resources, key assets and the open bazaar of space, undersea, and below-ground systems. These models exemplify emblematic models in physics, within which the critical infrastructures, as well as society itself and its paraphernalia, share the profile of many-body systems featuring cooperative phenomena and phase transitions – the latter usually felt as disruptive occurrences. The book and its models focus on the analytics of real-life-business actors, including policy-makers, financiers and insurers, industry managers, and emergency responders.




Introduction to Infrastructure


Book Description

Introduction to Infrastructure: An Introduction to Civil and Environmental Engineering breaks new ground in preparing civil and environmental engineers to meet the challenges of the 21st century. The authors use the infrastructure that is all around us to introduce students to civil and environmental engineering, demonstrating how all the parts of civil and environmental engineering are interrelated to help students see the "big picture" in the first or second year of the curriculum. Students learn not only the what of the infrastructure, but also the how and the why of the infrastructure. Readers learn the infrastructure is a system of interrelated physical components, and how those components affect, and are affected by, society, politics, economics, and the environment. Studying infrastructure allows educators and students to develop a valuable link between fundamental knowledge and the ability to apply that knowledge, so students may translate their knowledge to new contexts. The authors' implementation of modern learning pedagogy (learning objectives, concrete examples and cases, and hundreds of photos and illustrations), and chapters that map well to the ABET accreditation requirements AND the ASCE Civil Engineering Body of Knowledge 2nd edition (with recommendations for using this text in a 1, 2, or 3 hour course) make this text a key part of any civil and/or environmental engineering curriculum.




Foundations of Homeland Security


Book Description

This book is the complete guide to understanding the structure of homeland security – its underlying law and policy. Created from a broad and in depth, yet edited collection of statutes, policy papers, presidential directives, and other documents, it cultivates a detailed understanding of the foundations of homeland security. It is arranged in a topic-by-topic format structured to include only the documents and statues that affect a particular subject, making for much easier understanding. Thus, the chapter on FEMA contains only the portions of the statutes and other documents that relate to FEMA. There are twenty-five topic areas. It contains hundreds of end notes, references, and suggestions for further study. This book offers important legal guidance that students, law enforcement officers, lawyers, and other homeland security professionals need to accurately interpret, understand, and apply homeland security policy. The Introduction provides an in-depth overview of the subject of homeland security and includes a discussion of what is homeland security, definitions of homeland security and terrorism, what is homeland security law, its development, and what is a homeland security curriculum. There are contributing chapters about homeland security in Europe, and homeland security in China and Japan.




Framework for Improving Critical Infrastructure Cybersecurity


Book Description

The Framework focuses on using business drivers to guide cybersecurity activities and considering cybersecurity risks as part of the organization’s risk management processes. The Framework consists of three parts: the Framework Core, the Implementation Tiers, and the Framework Profiles. The Framework Core is a set of cybersecurity activities, outcomes, and informative references that are common across sectors and critical infrastructure. Elements of the Core provide detailed guidance for developing individual organizational Profiles. Through use of Profiles, the Framework will help an organization to align and prioritize its cybersecurity activities with its business/mission requirements, risk tolerances, and resources. The Tiers provide a mechanism for organizations to view and understand the characteristics of their approach to managing cybersecurity risk, which will help in prioritizing and achieving cybersecurity objectives.