You are on page 1of 35

NE 317

Computer Security and


Risk

1
Purpose:
To provide States with the necessary guidance and external
expertise to support the detection of, and response to,
criminal or intentionalcyber attacks involving or directed at
nuclear material, other radioactive material, associated
facilities, or associated activities.

2
Why
The Computer and Information
Security programme is focused on
preventing computer acts that could
directly or indirectly lead to:
•unauthorized removal of
nuclear/other
radioactive material
•sabotage against nuclear material
or nuclear facilities
•theft of nuclear sensitive
information

3
Rationale (3)
Nuclear Security Series No 13 – Nuclear
Security Recommendations on Physical
Protection of Nuclear Material and Nuclear
Facilities (INFCIRC/225/Revision 5)
“4.10. Computer based systems used for
physical protection, nuclear safety, and
nuclear material accountancy and control
should be protected against compromise
(e.g. cyber attack, manipulation or
falsification) consistent with the threat
assessment or design basis threat.”
4
The
Threat

5
Threat
Origins

6
Computer Security
Events

7
8
9
10
11
12
13
14
15
16
Incidents Involving Abundant Radioactive
Sources

17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
Discussion
and
question

35

You might also like