HomeCybersecurityM12663Evidence
Topic/Matter Intersection

Topic:"Cybersecurity" in M12663

Matter: Nova Scotia Independent Energy System Operator (IESO Nova Scotia) - 2026/2027 Revenue Requirement and Fees Application
33 passages 6 documents

Cybersecurity across all matters →

N-3IESO (CA) RIR 1 to 10 - Redacted 18 passages
REDACTED p. p. 12
REDACTED 40 focused on AMI, with limited experience in control centre operations and NERC CIP 41 requirements. Please refer to Attachment 2 for the proposal evaluation spreadsheet. 42 43 (c) Refer to Attachment 3 and Attachment 4 for copie...

AI summary The document includes references to attachments related to AMI, control centre operations, NERC CIP requirements, contract, SOW, and a response to NSEB IR-06. The filing date is March 10, 2026, and the entity involved is the Nova Scotia Independent Energy System Operator.

1. Contract Documents p. p. 12
1. Contract Documents The contract between the parties in respect of certain consulting services, for the development of a phase 2 transition plan and IT, OT & cybersecurity roadmap, is comprised of the following documents, which are colle...

AI summary The contract outlines consulting services for a phase 2 transition plan and IT, OT, and cybersecurity roadmap, comprising the Agreement, Schedule 1 (deliverables and work statement), and Schedule 2 (standard terms).

Phase 2: Transition Plan and IT, OT & Cybersecurity Roadmap p. p. 18
Phase 2: Transition Plan and IT, OT & Cybersecurity Roadmap Prepared for IESO Nova Scotia 1791 Barrington St, Suite 1010 Halifax, NS B3J 3Y8 January 27, 2026 IBM Confidential Information

AI summary Phase 2 of the Nova Scotia regulatory proceeding outlines a transition plan and IT, OT, and cybersecurity roadmap for IESO Nova Scotia, focusing on energy system operations and security measures.

1.1 Project Scope p. p. 18
1.1 Project Scope This SOW is part of a binding contract, not a sales or marketing document. To support Client's objective to assume full dispatching, balancing authority, and control centre responsibilities in compliance with the More Acc...

AI summary The Statement of Work (SOW) outlines IBM's obligation to provide a Transition Plan and integrated IT/OT/Cybersecurity Roadmap to the Client, enabling them to assume dispatching, balancing authority, and control centre responsibilities under the More Access to Energy Act (2024) , NERC CIP standards, and NPCC requirements, ensuring system reliability and compliance.

4.2 Current-State Operational, Technical, and Regulatory Assessment p. p. 18
4.2 Current-State Operational, Technical, and Regulatory Assessment IBM will establish a validated baseline of existing NSP and IESO Nova Scotia operational, technical, cybersecurity, and regulatory states to inform subsequent option analy...

AI summary IBM is conducting a baseline assessment of NSP and IESO Nova Scotia's operational, technical, cybersecurity, and regulatory states. Tasks include reviewing control room operations, IT/OT systems, NERC CIP compliance, emergency frameworks, market rules, legislative obligations, and organizational readiness under the More Access to Energy Act (2024). The analysis identifies capability gaps and transition dependencies.

Stage 3 - Transition Plan and IT/OT/Cybersecurity Roadmap p. p. 18
Stage 3 - Transition Plan and IT/OT/Cybersecurity Roadmap

AI summary The document outlines Stage 3 of a regulatory proceeding, focusing on the Transition Plan and IT/OT/Cybersecurity Roadmap. Key entities involved include Nova Scotia Power (NSP) and the Nova Scotia Independent Energy System Operator (NS-IESO), with considerations for cybersecurity and operational technology integration.

Stage III – Transition Plan and IT/OT/Cybersecurity Roadmap p. p. 18
Stage III – Transition Plan and IT/OT/Cybersecurity Roadmap k. Future-State Architecture Package The Future-State Architecture Package will consist of the following, as applicable: - (1) Control centre, data centre, IT, OT, and cybersecuri...

AI summary The document outlines four key deliverables for Stage III: Future-State Architecture Package, Integrated Transition Plan, IT/OT/Cybersecurity Roadmap, and Regulatory Compliance Plan. Each includes specific components like diagrams, risk mitigation strategies, capex/opex estimates, and compliance mappings. IBM will deliver these to the client in specified formats as part of Transition Planning.

8. Risks p. p. 18
8. Risks Risk Potential Impact Mitigation Approach Knowledge gaps or staff turnover Loss of continuity in roadmap execution Embed multiple staff in each workshop; provide comprehensive documentation and "train the trainer" materials; recom...

AI summary The document outlines potential risks and mitigation strategies for a project involving the Independent Energy System Operator Nova Scotia (IESO) and Nova Scotia Power (NSP). Risks include knowledge gaps, limited data access, cybersecurity complexity, regulatory changes, and resource constraints, with corresponding measures to address these challenges.

Nova Scotia Independent Energy System Operator p. pp. 60-61
Nova Scotia Independent Energy System Operator For Phase 2: Transition Plan and IT, OT & Cybersecurity Roadmap By Bruce Orloff 1592 Barrington Street Halifax NS B3J 1Z6 Telephone (613) 620-0535 Email [email protected] December 5, 2025

AI summary Document outlines Phase 2 of the Nova Scotia Independent Energy System Operator's Transition Plan and IT/OT/Cybersecurity Roadmap. Authored by Bruce Orloff of IBM Consulting Advantage, dated December 5, 2025. Context includes regulatory proceedings involving energy system operations and cybersecurity frameworks.

1.Our Understanding of the Engagement p. pp. 62-63
he Nova Scotia Energy Board. - Supporting provincial decarbonization and renewable energy goals consistent with the Environmental Goals and Climate Change Reduction Act. The Act also mandates a phased transition of system operator responsi...

AI summary The document outlines a phased transition of system operator responsibilities from Nova Scotia Power (NSP) to IESO Nova Scotia, mandated by the Environmental Goals and Climate Change Reduction Act. The RFP emphasizes control centre strategy, cybersecurity, NERC/CIP alignment, and transition planning to ensure continuity and reliability. The Act and implementation plan guide Phase 2 activities, aiming to position IESO Nova Scotia as a technically sophisticated, independent operator for a high-renewables grid.

Phase 2 – Dispatching and Control (Target: Q2 2027) p. pp. 63-64
Phase 2 – Dispatching and Control (Target: Q2 2027) - - Transfer of real-time system operations, near-term operational planning, balancing authority (BA), and transmission operator (TOP) functions. - - Implementation of independent control...

AI summary Phase 2 focuses on transferring real-time operations, planning, and transmission functions to IESO Nova Scotia by March 2026, with a 2027 go-live. It includes establishing independent control room capabilities, cybersecurity measures, and inter-organizational interfaces compliant with NERC/NPCC standards.

2.1. Overview p. p. 64
2.1. Overview Our approach is designed to deliver a clear, actionable, and consensus driven roadmap that enables IESO Nova Scotia to assume its Phase 2 responsibilities in full compliance with the More Access to Energy Act (2024) , NERC an...

AI summary The approach outlines a three-stage roadmap for IESO Nova Scotia to fulfill Phase 2 responsibilities, ensuring compliance with the More Access to Energy Act (2024), NERC, NPCC standards, and cybersecurity practices. It leverages a Merger, Acquisition, and Divestiture management methodology, enhanced by ISO-specific strategies, to facilitate the transition.

Section 365 p. pp. 67-68
The table below illustrates an initial mapping of NERC CIP controls to architecture domains, which will serve as the foundation for our evaluation of NSP's current compliance posture.

AI summary The text discusses the initial mapping of NERC CIP controls to architecture domains, which will be used to evaluate NSP's current compliance posture.

p. p. 68
Architecture Domain NERC CIP Standards Most Relevant Enterprise IT & External Interfaces CIP-002, 004, 005, 011, 012, 013 Secure DMZ/ IT-OT Integration CIP-005, 008, 009, 011 OT Environment CIP-002, 005, 007, 010, 011, 014 Cybersecurity &...

AI summary The document presents a table mapping NERC CIP standards to various architecture domains within the Nova Scotia power system, highlighting the relevance of specific cybersecurity standards to different IT and operational technology environments.

Preamble p. p. 70
As the transition process defines the split responsibilities between IESO NS and NSP, common and shared responsibilities will be considered as well. For shared responsibilities, we envision: - Connection process: IESO remains with operatio...

AI summary The document outlines the transition process and shared responsibilities between IESO NS and NSP, focusing on areas such as connection processes, emergency response, reliability, regulatory reporting, data exchange, cybersecurity, hybrid models, and inter-regional collaboration.

2.3. Stage III – Transition Plan and IT/OT/Cybersecurity Roadmap p. p. 70
2.3. Stage III – Transition Plan and IT/OT/Cybersecurity Roadmap Purpose: Translate the selected strategy into a detailed, implementable transition plan and integrated technology roadmap that ensures reliable, secure, and compliant operati...

AI summary This section outlines Stage III of the transition plan, focusing on developing a detailed and implementable roadmap for IT/OT/cybersecurity. Key activities include initial analysis by IBM/Quanta, workshops for feedback, and executive playback sessions to ensure proper enablement of the transition.

3.1. Stage I - Discovery and Current-State Assessment p. p. 74
3.1. Stage I - Discovery and Current-State Assessment Deliverable Form / Format Purpose and Decision Support 1. Discovery Kick-off Package Slide deck and meeting summary Establishes shared understanding of objectives, scope, and governance...

AI summary This section outlines the deliverables for Stage I of the Discovery and Current-State Assessment, including kick-off packages, regulatory summaries, as-is assessments, capability transfer matrices, and gap and risk analyses. These deliverables aim to establish understanding, validate compliance, document current states, and identify gaps and risks.

3.3. Stage III - Transition Plan and IT/OT/Cybersecurity Roadmap p. p. 75
3.3. Stage III - Transition Plan and IT/OT/Cybersecurity Roadmap Deliverable Form / Format Purpose and Decision Support 10. Future-State Architecture Package Technical diagrams + narrative Depicts the proposed control center architecture,...

AI summary This section outlines the deliverables for Stage III, focusing on the transition plan and IT/OT/cybersecurity roadmap. The deliverables include technical diagrams, detailed plans, reports, and toolkits that support the implementation of the future-state architecture, regulatory compliance, and risk management.

N-4IESO (DGT) RIR 1 to 23 1 passage
NON-CONFIDENTIAL p. p. 13
NON-CONFIDENTIAL 100 • Immigration support with respect to temporary foreign workers, if applicable; 101 • General labour and employment support for matters arising through the year; 102 • The provision of advice in relation to matters per...

AI summary The document outlines various areas of legal and regulatory support required, including immigration support for temporary foreign workers, labor and employment matters, human resource management, regulatory compliance with NERC/FERC/NPCC standards, governance alignment, and privacy and cybersecurity considerations.

N-7IESO (PHP) RIR 1 to 15 2 passages
GILBERT PEREZ p. pp. 38-39
GILBERT PEREZ Senior Advisor Gilbert Perez, Senior Advisor, has nearly 40 years of experience supporting IT/OT telecommunications, cybersecurity, compliance (CIP, NEI, and 693), control center communications (data, voice, and satellite), s...

AI summary Gilbert Perez, a Senior Advisor with 40 years of experience, specializes in IT/OT telecommunications, cybersecurity, compliance (CIP, NEI, 693), and grid infrastructure. He has led communications system deployments, worked with SERC, and contributed to smart grid projects and SLA improvements.

AREAS OF EXPERTISE p. p. 39
AREAS OF EXPERTISE - Voice communications - Data communications - Cybersecurity - Physical security - Compliance CIP, NEI, and 693 - Grid infrastructure communications modernization and enabling new field technologies and operational capab...

AI summary The document outlines expertise in voice and data communications, cybersecurity, physical security, and compliance with CIP, NEI, and 693 standards. It highlights modernization of grid infrastructure using ADMS, EMS, GMS, and DERMS, along with cybersecurity tools like Nessus and Tripwire.

N-17Transition Plan and IT, OT & Cybersecurity Roadmap - IESO 8 passages
Scope of Work p. p. 2
- A. A clear definition of the technology capabilities required by IESO Nova Scotia to deliver the Phase 2 dispatching and control functions enabled by the Act, including near-term operational planning, reliable system operations (includin...

AI summary The document outlines the scope of work for Phase 2 dispatching and control functions under the Act, focusing on technology capabilities, strategic options, and a roadmap for implementation. It emphasizes the need to assess existing NSP assets, identify integration requirements, and evaluate the feasibility of meeting the April 2027 delivery date.

Expected Deliverables p. p. 4
Expected Deliverables - A defined list of capabilities required by IESO Nova Scotia and which are being transferred from NSP vs being developed net new - An 'As Is' assessment for NSP and IESO Nova Scotia for relevant technology and archit...

AI summary The deliverables include assessing technology, identifying NERC CIP policies, and defining control center strategies for IESO Nova Scotia. The focus is on evaluating existing infrastructure, exploring control center models, and developing a comprehensive technology strategy.

Anticipated Work p. p. 4
Anticipated Work - Appropriately bundling capabilities and logically phasing their deployment - Develop architecture and processes as appropriate to show interconnections between IESO Nova Scotia and NSP while achieving all regulatory, cyb...

AI summary The anticipated work involves bundling capabilities, developing system architecture, ensuring compliance with regulatory and cybersecurity standards, identifying milestones and dependencies, estimating timelines and budgets, and developing a procurement approach with detailed SOWs to accelerate implementation.

Expected Deliverables p. p. 4
Expected Deliverables - Transition Plan - Strategy Decisions made - IT, OT and Cybersecurity Roadmap with defined target operating model, process and architecture - Overall roadmap for IESO Nova Scotia to deliver Phase 2 and beyond - Estim...

AI summary The expected deliverables include a transition plan, strategy decisions, IT and cybersecurity roadmaps, cost and timing estimates, regulatory compliance plans, risk summaries, success metrics, and procurement strategies, all to be completed by 31 March 2026.

Additional Context p. pp. 4-7
Additional Context Phase 1 Transition (system planning, generation interconnection planning and energy procurement) is planned to take place on December 1, 2025. Phase 1 will focus on the transfer of transmission planning and procurement r...

AI summary The document outlines the transition of electricity system planning and operations from Nova Scotia Power (NSP) to the Independent Electricity System Operator (IESO) in two phases. Phase 1, set for December 2025, involves transmission planning and procurement functions, while Phase 2, planned for Q2 2027, includes real-time dispatch operations. The transition considers Nova Scotia’s unique energy landscape and challenges, including cybersecurity recovery and limited interconnectivity.

Proponent Qualifications & Instructions p. pp. 7-9
Proponent Qualifications & Instructions Proponents are permitted (even encouraged) to form partnerships, where appropriate. Proponents must ensure the engagement team collectively demonstrates the following capabilities and experience: - P...

AI summary The document outlines qualifications and instructions for proponents participating in a Request for Proposals (RFP) process. Key requirements include experience in control center builds, strategic assessments, system integration, and compliance with NERC CIP standards. Proponents must also demonstrate cybersecurity expertise and the ability to work with local resources.

Proposed Approach and Methodology p. p. 10
Proposed Approach and Methodology Describe your approach for defining each major stage of the engagement. Include methods for stakeholder engagement, workshops, and consensus building. Clearly explain how your approach ensures alignment wi...

AI summary The text outlines the need for a proposed approach and methodology for defining major stages of an engagement, emphasizing stakeholder engagement, workshops, consensus building, and alignment with regulatory obligations, NERC/NPCC standards, and IT/OT cybersecurity integration.

Experience and Capabilities p. p. 10
Experience and Capabilities Summarize (table format is acceptable) relevant project experience, and the role specific proposed project team played particularly in electricity market transitions, control center design or relocation, NERC CI...

AI summary The text requests a summary of relevant project experience, emphasizing the role of the proposed project team in electricity market transitions, control center design or relocation, NERC CIP compliance, IT, OT, and cybersecurity, along with examples of similar engagements and associated risks.

20260617-1Hearing Transcript — 06/17/2026 (Johnny Johnston, Chris Milligan, Mike McFeters) 1 passage
Section 120
INTERNATIONAL REPORTING INC. CERTIFIED COURT REPORTERS 1 we have been through a thorough process on the 2 cybersecurity role and going back to market. On the 3 operational oversight, the VP of System Planning and Grid 4 Integration, I am p...

AI summary The discussion outlines the hiring process for key roles in operational oversight and market operations, including the VP of System Planning and Grid Integration, and the ongoing interviews for the Director of Operational Policy and Market Operations.

20260625-1Hearing Transcript — 06/25/2026 (Johnny Johnston, Chris Milligan, Mike McFeters, Angie Brown) 3 passages
Section 5
EXHIBIT NO. DESCRIPTION PAGE NO. June 17, 2026 (None entered) June 25, 2026 N-17 Transition Plan and IT, OT & Cybersecurity Roadmap-IESO 364

AI summary The document includes an exhibit titled 'Transition Plan and IT, OT & Cybersecurity Roadmap-IESO' dated June 25, 2026, with no other content provided in the chunk.

IESO NOVA SCOTIA PANEL 351 Cr-ex, (Rudderham)
IESO NOVA SCOTIA PANEL 351 Cr-ex, (Rudderham) 1 I can give you a moment to read Q. 11 very different categories of procurement activities. 12 Q. Yes, and I was just clarifying 13 that there will be two separate policies, then? 14 A. (Milli...

AI summary The text discusses the procurement process under the Nova Scotia Procurement Act, referencing an RFP for the Phase II Transition Plan IT/OT Cybersecurity Road Map. It highlights the evaluation process and controls, governed by the Procurement Act, and includes interactions between Ms. Rudderham and Mr. Norwood during a proceeding.

IESO NOVA SCOTIA PANEL 363 Cr-ex, (Rudderham)
IESO NOVA SCOTIA PANEL 363 Cr-ex, (Rudderham) 1 PDF page 21. 2 MR. FUREY: Mr. Chair, I apologize. 3 Before we move on, I wondered and I don't know the 4 practice here, I wondered if the document that was 5 referred to would be marked for i...

AI summary A proceeding involving the IESO Nova Scotia Panel discusses the marking of a document related to an IT and OT Cybersecurity Roadmap as Exhibit N-17. The discussion involves confirming the procurement budget categories of capital and operating, and the need for clarification on the application.

Disclaimer: These summaries were generated by AI from the filings they describe. We take care to make them accurate, but errors are possible - and they aren't advice. Only the filings themselves are the record: if you're relying on something here, confirm it against the source documents or the Nova Scotia Energy Board's own record. Full disclaimer →