Laserfiche WebLink
W A T E R E N E R C Y I <br />WI& <br />P U B L I C U T I L I T I E S <br />BOARD OF PUBLIC UTILITIES <br />RIVERSIDE PUBLIC UTILITIES <br />Board Memorandum <br />DATE: AUGUST 14, 2017 <br />ITEM NO: 4 <br />SUBJECT: PURCHASE OF SERVERS AND TAPE DRIVES FOR ELECTRIC SCADA CYBER <br />SECURITY IMPROVEMENTS FROM HEWLETT PACKARD ENTERPRISE OF PALO <br />ALTO, CALIFORNIA FOR $62,181 — APPROVAL OF WORK ORDER NO. 1727191 <br />FOR $110,000 <br />ISSUES: <br />Award purchase of Hewlett Packard servers and tape drives to Hewlett Packard Enterprise of Palo Alto, <br />California in the amount of $62,181 and; approve Work Order No. 1727191 in the amount of $110,000 <br />for Electric SCADA Cyber Security Improvements. <br />RECOMMENDATIONS: <br />That the Board of Public Utilities: <br />Award purchase of Hewlett Packard servers and tape drives to Hewlett Packard Enterprise (HPE) <br />in the amount of $62,180.66; and <br />2. Approve Work Order No. 1727191 in the amount of $110,000 for Electric SCADA Cyber Security <br />Improvements. <br />BACKGROUND: <br />Riverside Public Utilities (RPU) hired Securicon, LLC to perform a Security Vulnerability Assessment in <br />2016. The resulting Vulnerability Assessment Report for the Electric Supervisor Control and Data <br />Acquisition (SCADA) system listed risks ranging from High, Medium, to Low levels. Staff is working <br />aggressively at formulating and executing an Implementation Plan addressing all identified risks. <br />The Implementation Plan incorporates adherence to the North American Electric Reliability Corporation <br />Critical Infrastructure Protection standards as best practices resulting in the following recommendations: <br />1. Deploying a suite of new SCADA Standard Practices to tighten cyber securities, improve <br />maintenance practices, and formalize documentations. (Completed) <br />2. Upgrading existing software versions and purchasing new ones. (In progress) <br />3. Purchasing additional Network equipment such as switch and firewall. (On Order) <br />4. Purchasing additional System equipment such as servers, tape drives, and other related <br />equipment. (Seeking Board approval) <br />The following Network equipment was purchased to further secure and protect SCADA Electronic <br />Security Perimeter. <br />