Search NASA⌕ Search

SEARCH · Search NASA

Results for “security controls”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 127 records · Page 7

Towards intelligent emergency control for large-scale power systems: Convergence of learning, physics, computing and control

Here, this paper has delved into the pressing need for intelligent emergency control in large-scale power systems, which are experiencing significant transformations and are operating closer to their limits with more uncertainties. Learning-based control methods are promising and have shown effectiveness for intelligent power system control. However, when they are applied to large-scale power systems, there are multifaceted challenges such as scalability, adaptiveness, and security posed by the complex power system landscape, which demand comprehensive solutions. The paper first proposes and instantiates a convergence framework for integrating power systems physics, machine learning, advanced computing, and grid control to realize intelligent grid control at a large scale. Our developed methods and platform based on the convergence framework have been applied to a large (more than 3000 buses) Texas power system, and tested with 56 000 scenarios. Our work achieved a 26% reduction in load shedding on average and outperformed existing rule-based control in 99.7% of the test scenarios. The results demonstrated the potential of the proposed convergence framework and DRL-based intelligent control for the future grid.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Firmware Tampering Detection in Heavy-Duty Vehicles through J1939 CAN Analysis

Modern heavy-duty vehicles rely on complex networks of Electronic Control Units (ECUs) that communicate using the J1939 protocol. While this system makes it easier to update and configure vehicle components, it also opens the door to serious cybersecurity risks if not properly secured. This work investigates the potential for firmware tampering through the J1939 communication protocol, which enables ECU configuration and reprogramming over the Controller Area Network (CAN) bus. By monitoring CAN traffic during legitimate maintenance operations and reverse-engineering OEM diagnostic software, we identified common and proprietary J1939 message identifiers, authentication patterns, and vulnerabilities within Unified Diagnostic Services (UDS). These findings demonstrate that inadequate authentication mechanisms can allow malicious actors to alter ECU firmware or disable safety functions, posing severe operational and safety risks. Our analysis contributes to the development of vehicle intrusion detection systems capable of recognizing abnormal reprogramming activity and future firmware fingerprinting methods to verify software integrity across ECUs. This work highlights the importance of standardizing secure firmware authentication across manufacturers to strengthen cyber resilience in heavy-duty vehicle systems.

33 ADVANCED PROPULSION SYSTEMS↗

Analysis of Line Distance Elements for Various Ibr Controllers and System Conditions

The large-scale penetration of inverter-based resources in power systems has challenged protection engineers because of the different fault behaviors these sources provide compared to conventional generation systems. The main challenges include a low level of fault current magnitude, unpredictable angles of sequence currents, and lack of inertia that can lead to maloperation of conventional phasor-based protection elements. This paper presents a sensitivity analysis of transmission line distance protection elements during phase-to-ground and phase-to-phase faults for different inverter controllers and power system conditions. It also summarizes which line protection elements remain secure near IBR terminations and identifies the ones affected by the inverter-based response. The paper concludes by highlighting that regulating negative-sequence current injection during the fault aids correct protection decisions, but does not address the entire challenge. Finally, alternative protection elements to those affected by the inverter fault response are discussed.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Enhancing Short-Term Flexibility through Characterization of HVDC Transmission Systems

Efficient power grid operation hinges on maintaining safety and reliability through adaptable system flexibility standards. However, in a future power grid characterized by extensive renewable energy integration, conventional system flexibility and predetermined requirements may falter under extreme conditions. This paper addresses the formidable challenge of sustaining secure and dependable power grid operations under these circumstances, emphasizing the role of controllable high voltage direct current (HVdc) transmission systems in amplifying overall system flexibility and tackling operational complexities. To quantitatively assess short-term flexibility and its associated economic benefits from HVdc within specific regions, we propose a Power Flow Distribution Factors (PTDFs) based approach. This methodology takes into account both dispatchable generators and HVdc systems, pinpointing their contributions. Through an analysis of the Western Electricity Coordinating Council (WECC) system, we demonstrate the practical application of this approach to scrutinize the impacts of existing and future HVdc lines.

Operational Flexibility, Multi-terminal HVdc, tran↗

X-ray Security Imaging on Personal Dosimetry [Slides]

Federal regulations mandate that personal dosimetry devices — like optically stimulated luminescence (OSLs) — must be worn by all US Department of Energy (DOE) and associated radiation workers to track their occupational dose. Unfortunately, the inadvertent passage of OSLs through x-ray security scanners can compromise their validity. With the advent of high energy, advanced resolution security technology used in airports, this once insignificant issue now requires that Radiological Control (RadCon) be able to accurately discern non-occupational dose to effected OSLs. This presentation will discuss the principles, methods, and, rather surprising, models for establishing the corrective dose estimates at the Idaho National Laboratory (INL), and its implication across the DOE.

61 RADIATION PROTECTION AND DOSIMETRY↗

Intern Sized Poster for Dosimetry Research

Federal regulations mandate that personal dosimetry devices — like optically stimulated luminescence (OSLs) — must be worn by all US Department of Energy (DOE) and associated radiation workers to track their occupational dose. Unfortunately, the inadvertent passage of OSLs through x-ray security scanners can compromise their validity. With the advent of high energy, advanced resolution security technology used in airports, this once insignificant issue now requires that Radiological Control (RadCon) be able to accurately discern non-occupational dose to effected OSLs. This presentation will discuss the principles, methods, and, rather surprising, models for establishing the corrective dose estimates at the Idaho National Laboratory (INL), and its implication across the DOE.

61 RADIATION PROTECTION AND DOSIMETRY↗

Intern Sized Poster for Dosimetry Research

Federal regulations mandate that personal dosimetry devices — like optically stimulated luminescence (OSLs) — must be worn by all US Department of Energy (DOE) and associated radiation workers to track their occupational dose. Unfortunately, the inadvertent passage of OSLs through x-ray security scanners can compromise their validity. With the advent of high energy, advanced resolution security technology used in airports, this once insignificant issue now requires that Radiological Control (RadCon) be able to accurately discern non-occupational dose to effected OSLs. This presentation will discuss the principles, methods, and, rather surprising, models for establishing the corrective dose estimates at the Idaho National Laboratory (INL), and its implication across the DOE.

61 RADIATION PROTECTION AND DOSIMETRY↗

X-ray Security Imaging on Personal Dosimetry

Federal regulations mandate that personal dosimetry devices — like optically stimulated luminescence (OSLs) — must be worn by all US Department of Energy (DOE) and associated radiation workers to track their occupational dose. Unfortunately, the inadvertent passage of OSLs through x-ray security scanners can compromise their validity. With the advent of high energy, advanced resolution security technology used in airports, this once insignificant issue now requires that Radiological Control (RadCon) be able to accurately discern non-occupational dose to effected OSLs. This presentation will discuss the principles, methods, and, rather surprising, models for establishing the corrective dose estimates at the Idaho National Laboratory (INL), and its implication across the DOE.

61 RADIATION PROTECTION AND DOSIMETRY↗

The Meaning of Risk for Safety, Security, and Safeguards in the Design of Advanced Nuclear Reactors

What is the meaning of risk as it applies to the design of advanced reactors in the disciplines of safety, security, and safeguards? How can we find common terminology for the concept of risk and how can we find interfaces between these disciplines? These are important questions that should be explored in order that they may be applied in an integrated manner for the most effective and efficient design approaches. Eliminating or minimizing risks is a key design driver that motivates and informs the development of nuclear reactors. For safety, risk is well understood and applied in Probabilistic Risk Assessments. For security, the risk-based concepts of vulnerability assessments and vital areas are all considered in designing security systems. For safeguards, the concept of risk is not formally defined, as it relates to the design and operation of nuclear reactors. International nuclear safeguards seek to reduce the risk of proliferation in the nuclear fuel cycle and as such the concept of risk does exist. Therefore, the current understanding of the “3S’ approach, which seeks to find the interfaces and conflicts between safety, security, and safeguards requires a thorough understanding of the role that the reduction of risk plays in all three disciplines. The intersection of risk for safety and security is now being developed as there is a strong correlation between reactor design and operations and their vulnerability to sabotage. The intersection of risk for security and safeguards has to date chiefly been focused on the nuclear material control and accounting systems, which are relied on by both the operator (State) and the IAEA. This paper explores the concept of risk in each of the three disciplines, how they interact, potential conflicts and interfaces , how these might be addressed and leveraged, and a notional framework for how this could be achieved.

Kovacic, Donald N↗

A practical control strategy for demand flexibility with ensured occupant comfort in grid-interactive efficient buildings

This study proposes a practical and simplified demand response (DR) control strategy from the perspective of grid-interactive efficient buildings (GEBs), aiming to secure demand flexibility while ensuring occupant thermal comfort. Focusing on summer on-peak periods, a linear demand response (LDR) strategy that integrates cooling setpoint adjustment and lighting dimming was designed, and its performance was quantitatively evaluated. A case study was conducted using EnergyPlus-based simulations for a U.S. DOE small office prototype building under summer on-peak weather conditions. Compared with a conventional rapid demand response (RDR) strategy, the proposed LDR approach gradually reduced electrical loads while maintaining occupant thermal comfort indices, including predicted mean vote (PMV) and predicted percentage of dissatisfied (PPD), within acceptable comfort ranges. Quantitative analysis of demand flexibility using the grid-interactive impact index (GII) and the flexibility strength index (FSI) showed that the LDR strategy provided approximately 12.5% demand flexibility during DR periods and achieved an electricity cost reduction of about 8.8%. In addition, the results of the part-load ratio (PLR)-based cooling system performance analysis showed that, in the on-peak period, the LDR strategy exhibited improved cooling performance compared with the baseline. Overall, this study shows the potential of a practical DR control strategy that can simultaneously achieve occupant comfort and demand flexibility without relying on complex advanced control technologies.

Jung, Dong Eun↗

Proposed Classifications of Remote Operations for Nuclear Reactors Based on Physical and Cybersecurity Considerations

The incorporation of remote operations into reactor operations is a topic of high interest among advanced and small modular reactor (A/SMR) vendors, with some considering it essential to the success of their business models. However, remote operations are a concept novel to the nuclear industry. While various technical aspects of remote operations have been explored, a significant gap remains in understanding the security implications of integrating remote operations into reactor designs, particularly concerning the security requirements for remote-operations facilities and infrastructure. This report aims to address this gap by first defining classes of remote operation based on the extent of remote access to reactor control systems and grounded in the existing regulatory framework with compatible terminology. Secondly, the report outlines the physical and cybersecurity requirements applicable to remote-operations facilities and infrastructure at each defined class. These requirements are based on existing licensing frameworks provided by 10 Code of Federal Regulations (CFR) Part 50 and 10 CFR Part 52, as well as the upcoming A/SMR licensing framework in the proposed Part 53. The assessment focuses specifically on security regulations, such as 10 CFR Part 73, which includes provisions for both cybersecurity (§ 73.54) and physical security (§ 73.55). This report proposes five classes of remote reactor operations. Class 1 involves remote monitoring only, with no control over reactor systems. Class 2 allows for the remote issuance of allowlisted commands to the reactor facility. Class 3 extends control to non-safety-significant, non-safety-related, or not important to safety systems and equipment. Class 4 permits remote control of safety-significant systems. Finally, Class 5 allows remote control of safety-related systems. It is important to note that these classes were defined purely with functionality in mind, without considering the practicality or feasibility of implementation for each class under current or upcoming regulatory guidance. The intention behind this approach is to enable an assessment of which security requirements apply to each class, allowing readers to evaluate the implementation possibilities for their specific use cases. Following the definition of remote-operation classes, the report assesses the specific physical and cybersecurity requirements applicable to the remote-operations facility and infrastructure within each defined class. This includes defining the types and locations of operators that are possible at each class of operation and, based on operator type and location, as well as functionality within each class, outlining the physical and cybersecurity requirements. By detailing the security requirements by class, the report provides readers with the information needed to determine the type of security program they may need to implement for their desired concept of operation. The next contribution of this report was to assess the practicality of implementing each proposed class of remote operations based upon the security requirement assessment. In short, three of the five proposed remote-operation classes were found to possibly have a practical path forward to implementation under the U.S. regulatory framework. Class 1 remote operations are currently in use in the U.S. while Class 2 and 3 remote operations may be logistically possible to implement under the U.S. regulatory framework. The final two Classes, 4 and 5, would likely be logistically difficult, if not infeasible to implement within the current U.S. physical- and cybersecurity regulatory framework. Given the results of the feasibility assessment, an example architecture is proposed for both Class 2, remote allowlisted commands, and Class 3, remote control of non-safety systems as well as security implication assessments of each architecture. These example implementations are not meant to be prescriptive in terms of how Class 2 or Class 3 remote operations should be deployed; instead, they are intended to be informative to stakeholders on how Class 2 or Class 3 could potentially be applied in order to inform their system design. An example architecture for Class 1 remote monitoring was not provided as Class 1 in already in use in U.S. nuclear operations. Example architectures for Class 4 and Class 5 were not provided due to their assessment of being likely infeasible to implement. The final contribution is an assessment of the physical- and cybersecurity implications of introducing autonomous operations into an A/SMR. What was found was that the security implications can be separated into two cases. Autonomous operations supported by SSCs located only at the reactor site, and autonomous operations supported by SSCs outside of the reactor site. For the first case, the introduction of autonomous systems will likely not change the facility’s requirement to comply with existing cyber and physical security regulation

22 - GENERAL STUDIES OF NUCLEAR REACTORS↗

Hungary 908 Event - Risk Based Graded Approach to ITM

This presentation, Risk-Based, Graded Approach to Insider Threat Mitigation: Human Measures, introduces a structured framework for managing insider threat risk using internationally recognized guidance from the International Atomic Energy Agency (IAEA) Nuclear Security Series No. 8-G (Rev. 1) and the Joint Statement on Mitigating Insider Threats (INFCIRC/908). The presentation emphasizes that effective insider threat mitigation (ITM) depends on both positional controls, which manage inherent risk based on access, authority, and knowledge, and human measures, which address residual risk reflected in behavior, motivation, and reliability. Using a risk-informed and graded approach, the presentation outlines methods for identifying and prioritizing high-risk positions, applying layered organizational controls, and integrating human reliability mechanisms such as the Behavior Observation Program (BOP), Fitness-for-Duty (FFD) evaluations, Employee Assistance Programs (EAP), and Nuclear Security Culture (NSC). The human-focused portion examines behavioral and organizational indicators of opportunity, vulnerability, motivation, and crisis, demonstrating how early detection, deterrence, and response can prevent insider events. The session concludes with a case review of the Millstone Nuclear Power Station incident involving engineer George Galatis. The case illustrates how weak leadership and a poor safety culture can create conditions for failure and how a comprehensive ITM framework could have altered the outcome. The objective of this presentation is to help practitioners apply a risk-based, graded philosophy to human factors and promote a culture of accountability, communication, and resilience within nuclear organizations.

99 - GENERAL AND MISCELLANEOUS↗

Cybersecurity for the Operational Technology Environment (CyOTE) (Final Technical Report)

Electric grids have historically been susceptible to both physical attacks and environmental hazards but the implementation of smart grids, remote management, and self-healing networks, has now made the grid vulnerable to cyber attacks. To address risks introduced by routable connectivity, utilities must establish dynamic solutions to identify, protect, detect, respond to, and recover from cyber security threats and vulnerabilities. In response to the evolving threat landscape U.S. Department of Energy-Office of Cybersecurity, Energy Security, and Emergency Response (DOE CESER) initiated the Cybersecurity for the OT Environment (CyOTE) pilot program, a U.S. Department of Energy (DOE) effort designed to leverage U.S. intelligence capabilities to prevent, detect, or mitigate a cyber attack on utility operational technology (OT) networks. As part of the CyOTE pilot, The Southern Company (Southern Company or Southern) researched, evaluated and deployed emerging Commercial off the Shelf (COTS) technologies and cyber security monitoring architectures to provide previously unrealized network visibility and situational awareness through deep packet inspection and data analytics. This Final Scientific/Technical Report documents the objectives, methodology, lessons learned, and results of Southern Company’s participation in the CyOTE pilot from December 2018 to September 2023.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Review of High-Throughput Surface Treatments for Microlens Arrays

Microlenses are increasingly being integrated into modern manufactured devices. From printed security devices and screens to solar panels and microscopes, these optical materials offer high control over light focusing. Thus, understanding how to treat the surfaces of these fragile, transparent devices on an integrated manufacturing line is essential. Here, in this study, we review the surface treatments for the following application categories: cleaning, increasing surface energy, decreasing surface energy, and tunable surface modifications. This overview describes methods available for the large-scale manufacturing of microlens arrays and the potential impact of those treatments on common optical surfaces. Objectives and qualitative compatibility parameters are compared, and outlooks are provided for further study to aid in streamlining the method selection and process optimization for microlenses and similar optical components.

lens manufacturing↗

A Perspective on the Impact of Group Delay Dispersion in Future Terahertz Wireless Systems

This article discusses the challenges and opportunities of managing group delay dispersion (GDD), and its relation to the performance standards of future sixth-generation (6G) wireless communication systems utilizing terahertz frequency waves. The unique susceptibilities of 6G systems to GDD are described, along with a quantitative description of the sources of GDD, including multipath, rough surface scattering, intelligent reflecting surfaces, and propagation through the atmosphere. An experimental case-study is presented that confirms previous models quantifying the impact of atmospheric GDD. Several GDD manipulation strategies are presented, illustrating their hindered effectiveness in the 6G context. Conversely, some benefits of leveraging GDD to enhance 6G systems, such as improved security and simplified hardware, are also discussed. Finally, a perspective on using photonic GDD control devices is provided, revealing quantitative benefits that may unburden existing equalization schemes. Here, the article argues that GDD will uniquely and significantly impact some 6G systems, but that its careful consideration along with new mitigation strategies, including photonic devices, will help optimize system performance. The conclusion provides a perspective to guide future research in this area.

Strecker, Karl↗

Smart Contracts for Power Grid Applications Using the Advanced DLT Cyber Grid Guard Testbed

In this study is presented two power system applications with distributed ledger technology (DLT) and smart contracts (SC) that were assessed in a Cyber-Grid-Guard System (CGGS) advanced testbed, with protective relays, power meters, communication devices, DLT devices, synchronized time source, clock displays and real time simulator. This CGGS testbed was set in the Advanced Protection Lab, 252 lab space of the Grid Research Integration and Deployment Center (GRID- C), at Oak Ridge National Laboratory. In power grids, customer-owned distributed energy resources (DERs) are more frequent than in the past, and the numbers of points of interconnection (POI) with customer-owned DERs have increased. Disruptive operation from DERs presents a risk to grid operations, and protective relays located at the POI are used to isolate out-of-tolerance or poorly behaving of DERs. Ensuring the integrity of data from the relays at the POI, and DLT could enhance the security of the power grids. The first application is a SC to define and control the allowable total power factor (TPF) of the DER (wind farm) output, and the terms of the SC are implemented using DLT with a CGGS for a customer-owned DER. The TPF SC was implemented by the CGGS using DLT. The experimental model was performed with a real-time simulator using a CGGS and relay in-the-loop. The data collected from the CGGS were used to execute the TPF SC. The TPF limits were between +0.9 and +1.0, and the breakers’ operation in the POI was controlled by the relay using the SC. The events were collected from the real-time simulator, CGGS, and SEL 700GT relay to validate a successful application of the TPF SC using DLT. The second application is a SC to measure and control the allowable voltage service limits (VSL) by the CGGS using DLT. The tests were performed by using a real-time simulator, CGGS and relay in-the-loop. The data was collected from the CGGS that executed the SC. The main constraints were defined based on ANSI C84.1 service voltage limits, and the operation of the breakers in the POI. The events were collected from the CGGS, and SEL 700GT relay to assess a successful operation of the VSL SC using DLT.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Optoelectronic polymer memristors with dynamic control for power-efficient in-sensor edge computing

Abstract As the demand for edge platforms in artificial intelligence increases, including mobile devices and security applications, the surge in data influx into edge devices often triggers interference and suboptimal decision-making. There is a pressing need for solutions emphasizing low power consumption and cost-effectiveness. In-sensor computing systems employing memristors face challenges in optimizing energy efficiency and streamlining manufacturing due to the necessity for multiple physical processing components. Here, we introduce low-power organic optoelectronic memristors with synergistic optical and mV-level electrical tunable operation for a dynamic “control-on-demand” architecture. Integrating signal sensing, featuring, and processing within the same memristors enables the realization of each in-sensor analogue reservoir computing module, and minimizes circuit integration complexity. The system achieves 97.15% fingerprint recognition accuracy while maintaining a minimal reservoir size and ultra-low energy consumption. Furthermore, we leverage wafer-scale solution techniques and flexible substrates for optimal memristor fabrication. By centralizing core functionalities on the same in-sensor platform, we propose a resilient and adaptable framework for energy-efficient and economical edge computing.

Optics↗