Australian First: Paving the Way for a Cyber-Secure Energy Future
SYDNEY, 17 December 2024: In a pioneering move for the Australian energy industry, Endeavour Energy today announced it had achieved ISO 27001:2022 certification for its Information Security Management System (ISMS), the internationally recognised standard for cyber and information security management.
The certification, which covers 20 physical locations including 16 critical substations and control rooms, ensures secure, reliable services across Endeavour Energy’s critical infrastructure, including data centres, training rooms, and secondary systems.
It marks a significant milestone in the company’s ongoing commitment to ensuring the security of its customers, critical infrastructure, and the broader energy sector against the growing threat of cyberattacks.
"As we move towards an increasingly smarter grid, cybersecurity remains one of our top priorities," said Endeavour Energy Chief Executive Officer, Guy Chalkley.
"The protection of our assets, systems, and customer data is critical to maintaining the safety and reliability of energy supply, supporting the clean energy transition, and enabling customers to confidently connect their energy resources to the grid."
"This certification sets a new standard for cybersecurity within the Australian energy sector. It supports secure, bidirectional energy flows powered by our advanced grid management technologies, reinforcing our commitment to building a cyber-resilient future for our business and customers," Mr Chalkley said.
The ISO 27001:2022 certification is a vital step in Endeavour Energy’s efforts to integrate both Operational Technology (OT) and Information Technology (IT) systems, bolstering its cyber resilience across both domains.
To enhance its cybersecurity posture and achieve ISO 27001:2022 certification, Endeavour Energy partnered with leading cyber security and cloud services provider CyberCX.
CyberCX played a crucial role in helping Endeavour Energy meet its requirements under the Security of Critical Infrastructure (SOCI) Act, developing a comprehensive ISMS covering both Information and Operational Technology. The implementation process, which spanned 18 months, involved:
- physical site visits
- tailored education and training programs
- identification of critical systems and security controls
- risk mitigation planning across critical infrastructure and personnel.
CyberCX CEO, John Paitaridis said, "Endeavour Energy is setting the benchmark for building customer trust within the energy sector. CyberCX is proud to support this commitment to safeguarding our electricity grid and enhancing the resilience of critical infrastructure for all Australians."
Endeavour Energy's Information Security Manager, Gijo Varghese said “With this certification, we have strengthened the protection of our advanced distribution management systems, substations, and control rooms, ensuring that Endeavour Energy’s operations remain resilient against evolving cyber threats.
“CyberCX played a key role in helping us enhance our Cyber and Information Security Management System and were expert in guiding us to achieve this groundbreaking certification.
“As Australia navigates the current energy transition, it’s essential for the electricity supply industry to continuously enhance its cybersecurity posture to stay ahead of emerging threats.
“The certification allows Endeavour Energy to demonstrate to key stakeholders our commitment to continually improving its cyber security posture, enabling it to be at the forefront of energy transition,” Mr Varghese said.
For media enquiries, to arrange an interview or photos please contact:
Endeavour Energy: Peter Payne, 0409 664 608, peter.payne@endeavourenergy.com.au
Background
About Endeavour Energy
Endeavour Energy is one of Australia's most efficient networks, powering NSW's fastest growing economies and sustaining the jobs and lifestyles of 2.7 million Australians, living, and working in Central West NSW, the Blue Mountains, Greater Western Sydney, Southern Highlands, Illawarra, and South Coast of NSW.
Since 1890, we have expanded our footprint to be at the forefront of Australia's energy industry in integrating traditional and renewable energy sources. Our mission is to leverage the latest technology and data to plan the grid of tomorrow where batteries, microgrids and solar integrate seamlessly with the traditional distribution network to power communities for a brighter future.
Published on Dec 17th 2024