ML21256A254

From kanterella
Jump to navigation Jump to search
OEDO-21-00017 NSIR Response to Eric Rivera, OIG, Memo Status of Recommendations: Audit Audit of Nrc'S Cyber Security Inspections at Nuclear Power Plants, Dated January 13th, 2021 (OIG-19-A-13)
ML21256A254
Person / Time
Issue date: 09/10/2021
From: Mirela Gavrilas
NRC/NSIR/DPCP/CSB
To: Rivera E
NRC/OIG/AIGA
Holloway K
Shared Package
ML21013A237 List:
References
OIG-19-A-13
Download: ML21256A254 (2)


Text

September 10, 2021 MEMORANDUM TO: Eric Rivera Deputy Assistant Inspector General for Audits Office of the Inspector General FROM: Mirela Gavrilas, Director Office of Nuclear Security and Incident Response

SUBJECT:

STAFF RESPONSE UPDATE TO THE OFFICE OF THE INSPECTOR GENERALS AUDIT OF THE U.S. NUCLEAR REGULATORY COMMISSIONS CYBER SECURITY INSPECTIONS AT NUCLEAR POWER PLANTS (OIG-19-A-13)

The U.S. Nuclear Regulatory Commission (NRC) staff received the Office of the Inspector Generals (OIG) Audit Report OIG-19-A-13, Audit of NRCs Cyber Security Inspections at Nuclear Power Plants, dated June 4, 2019 (Agencywide Documents Access and Management System (ADAMS) Accession No. ML19155A317). In this report, OIG presents two audit recommendations for improving the cyber security inspection program. The staff considers Recommendation 1 closed, as detailed in a memo to you from Daniel Dorman, dated July 3, 2019, Staff Response to the Office of the Inspector Generals Audit of the U.S.

Nuclear Regulatory Commissions Cyber Security Inspections at Nuclear Power Plants (OIG-19-A-13) (ADAMS Accession No. ML19172A292). To address Recommendation 2, the staff issued Inspection Procedure (IP) 71130, Attachment 10, Cyber Security (ADAMS Accession No. ML21155A172), on September 3, 2021, to incorporate performance-based methods for licensees to demonstrate cyber security program effectiveness in the reactor oversight program framework. The IP enables licensee use of performance measures and performance testing. With issuance of the IP, which will be used starting in calendar year 2022, NSIR recommends closure of Recommendation 2. The NRC staff appreciates the OIGs audit of cyber security inspections at nuclear power plants.

If you have any questions regarding staffs response, please contact Kim Holloway or Jim Beardsley of my staff.

Enclosure:

Response to OIG Recommendation #2 (OIG-19-A-13)

CONTACT: Kimberly Holloway, NSIR/DPCP (301) 415-0286

E. Rivera 2 OFFICE OF THE INSPECTOR GENERALS AUDIT OF THE U.S. NUCLEAR REGULATORY COMMISSIONS CYBER SECURITY INSPECTIONS AT NUCLEAR POWER PLANTS (OIG-19-A-13); DATED: September 10, 2021 DISTRIBUTION: OEDO-21-00017 ERivera, OIG RidsNsirOd JJolicoeur, EDO RIDSNsirMailCenter RidsEdoMailcenter ADAMS Accession Number: ML21256A254 OFFICE DPCP/CSB DPCP/CSB DPCP/D NSIR NAME KHolloway JBeardsley SAtack CErlanger DATE 8/24/2021 8/24/2021 9/3/2021 9/10/2021 OFFICIAL RECORD COPY