CIP-005: Cyber Security Measures

  • M1. The Responsible Entity shall make available documentation about the Electronic Security Perimeter as specified in Requirement R1.
  • M2. The Responsible Entity shall make available documentation of the electronic access controls to the Electronic Security Perimeter(s), as specified in Requirement R2.
  • M3. The Responsible Entity shall make available documentation of controls implemented to log and monitor access to the Electronic Security Perimeter(s) as specified in Requirement R3.
  • M4. The Responsible Entity shall make available documentation of its annual vulnerability assessment as specified in Requirement R4.
  • M5. The Responsible Entity shall make available access logs and documentation of review, changes, and log retention as specified in Requirement R5.