1. Home
  2. |Insights
  3. |FERC Directs Mandatory Physical Security Standards

FERC Directs Mandatory Physical Security Standards

Client Alert | 1 min read | 03.14.14

On March 7, 2014, the Federal Energy Regulatory Commission (FERC) directed the North American Electric Reliability Corporation (NERC) to develop and file for approval reliability standards addressing threats and vulnerabilities to the physical security of critical facilities on the Bulk-Power System (BPS). The reliability standards must require owners or operators of BPS facilities ("registered entities") to take at least three steps to address risks posed by physical security attacks. 

First, registered entities must identify their BPS facilities that "if rendered inoperable or damaged, could have a critical impact on the operation of the interconnection through instability, uncontrolled separation or cascading failures on the Bulk-Power System." Second, registered entities that own or operate such critical facilities must evaluate potential physical threats and vulnerabilities to those facilities. Since potential threats and vulnerabilities will vary depending on the critical facility at issue, registered entities must tailor their evaluations to the unique characteristics of their critical facilities.  Third, registered entities must develop and implement a security plan based on this evaluation. 

NERC must file the proposed reliability standards by June 5, 2014. This very short time frame reflects the importance of having mandatory rules in place to address these physical security threats to BPS facilities. According to FERC, although many registered entities may already have taken voluntary steps to enhance their BPS facilities' physical security, the new reliability standards will require them to identify risks and have a plan that results in an adequate level of protection against the potential physical threats and vulnerabilities faced at their critical facilities. 

Given the short time frame for developing these standards and to avoid problems that could arise from standards developed in haste, registered entities should actively participate to ensure that (1) the standards for determining whether a given BPS facility is critical are not so broad as to include facilities that FERC might not have intended to be covered or that reasonably should not be covered by the new standards, and (2) the standards relating to the threat and vulnerability assessment and security plans are not inappropriately prescriptive.

Contacts

Insights

Client Alert | 5 min read | 07.28.26

Data Centers in the Crosshairs: The Plaintiffs' Bar Has Begun Filing New Claims Using Old Tricks

The rapid buildout of AI infrastructure has placed data centers at the heart of a new and expanding wave of class action litigation. Over the past several months, plaintiffs’ firms with significant experience in mass tort and environmental class actions have begun recruiting plaintiffs and filing lawsuits against data center operators, alleging that noise generated by their facilities — from cooling systems, diesel generators, and HVAC equipment — constitutes a public and private nuisance and reflects actionable negligence. Companies currently operating or constructing data centers near residential communities should treat this as a material and growing legal risk....