Another survey says utilities taking cyber security seriously - really?
One of my litmus tests for utility industry cyber security improvement, particularly for transmission and distribution, is implementing the hardware mitigation for Aurora. Aurora is a gap in protection of the electric grid that affects EVERY substation. China is well aware of this vulnerability. It is hard for me to believe industry is taking security seriously when it has been more than 5 years since the Aurora demonstration and there is almost no hardware mitigation in place.
I hope industry actually is doing what the survey claims.