NERC CIP
Released: March 27, 2024
Level: Beginner
Certificate: Finish lessons and pass the quiz with 70%
Course Title: Understanding NERC CIP Standards and Cybersecurity
Course Description: The "Understanding NERC CIP Standards and Cybersecurity" course provides comprehensive insights into the critical infrastructure protection plan developed by the North American Electric Reliability Corporation (NERC) to safeguard the North American Bulk Electric System (BES) against cyber threats.
This course is designed to equip participants with a deep understanding of NERC CIP standards, their significance in regulating, enforcing, and monitoring cybersecurity measures, and the implications of non-compliance. Participants will learn about the key elements of the NERC CIP standards, including the categorization of best cyber systems, management of security controls, training and management of security personnel, safeguarding electronic security perimeters, and physical security of BES cyber systems.
Through interactive lessons, real-world case studies, and practical examples, participants will explore the various types of insider threats, cybersecurity risks associated with the BES, and strategies for identifying and mitigating these risks effectively. Additionally, participants will gain insights into the importance of NERC CIP compliance, its benefits, and the potential consequences of non-compliance, including fines, damages, and penalties.
By the end of the course, participants will have the knowledge and skills to assess cybersecurity risks within their organizations, implement robust security measures in accordance with NERC CIP standards, and contribute to maintaining the reliability and security of the North American Bulk Electric System.
Course Objectives:
- Understand the purpose and scope of NERC CIP standards in protecting critical infrastructure.
- Identify the key elements and requirements of NERC CIP standards, including categorization of assets, security controls, and incident response.
- Recognize the different types of insider threats and cybersecurity risks associated with the BES.
- Learn strategies for detecting, mitigating, and responding to insider threats and cybersecurity incidents.
- Explore the benefits of NERC CIP compliance and the potential consequences of non-compliance.
- Gain practical insights into implementing security measures to enhance the reliability and security of the North American Bulk Electric System.

Dr Zoran Mitrovic is an ICT professional and senior academic with a career spanning over 40 years. He had gained extensive experience in consulting, lecturing, and research, making him a leading figure in his field. Dr Mitrovic had specialized in a range of areas, including Information Systems Management, Cybersecurity Management, 4IR technologies, e-Skills/e-Competences development, and e-Government. As one of the Directors at the Mitrovic Development and Research Institute (MDRI), Dr Mitrovic is involved in cutting-edge research and consulting projects, working with a number of organizations in South Africa and overseas. He is also affiliated with several universities, where he shares his knowledge and expertise with students and researchers alike.
His a registered ICT expert of the European Union EC Research Executive Agency. Dr Mitrovic's expertise in Cybersecurity Management is particularly noteworthy. He is a leading authority on organizational strategies and policies, board concerns, cybersecurity risk management, awareness campaigns, insider threats, capacity-building programmes, national strategies and policies, and cybersecurity culture. His insights were invaluable in helping organizations protect themselves from cyber threats and develop a cybersecurity culture that was embedded in their operations.
Dr Mitrovic is also passionate about the role of 4IR technologies in organizational and societal advancement. He believed that these technologies hold tremendous potential for transforming industries and societies, so he works on promoting their adoption and implementation. One of Dr Mitrovic's most significant contributions is in the area of e-Skills/e-Competences development. He was a firm believer in the power of education and training to empower individuals and communities, and he played a key role in developing national and organizational e-Skills/e-Competences development strategies.
Dr Mitrovic is always willing to share his insights with a wider audience. He had authored numerous academic and popular articles, with his popular articles on various cybersecurity topics aimed at non-technical businesspeople and the wider public. Through his writing and his work, Dr Mitrovic is making a significant contribution to advancing the field of ICT and helping organizations and societies thrive in the digital age.
Classes by this teacher
What is StormWarning! ?
StormWarning! is a Cybersecurity consultancy. Our experienced team of cybersecurity experts provide cybersecurity assessments, cybersecurity training and cybersecurity solutions to organisations that have a high risk public profile. StormWarning! is your organisation's best defense against the ever growing cascade of innovative security threats raining down on all organisations with a public digital footprint.
What is Cybersecurity?
Cybersecurity is the practice of protecting critical systems and sensitive information from digital attacks. Also known as information technology (IT) security, cybersecurity measures are designed to combat threats against networked systems and applications, whether those threats originate from inside or outside of an organization. StormWarning! is constantly researching the latest cybersecurity threats and building innovative measures to prevent them.
NIST Audit & Targeted Cyber-Risk Training
StormWarning! offers comprehensive Cybersecurity Consulting, with a focus on its Automated Online Auditing Solutions, primarily the NIST CSF Readiness Audit. This audit is prioritized as its results directly inform the organization's needs for targeted cybersecurity training. By identifying specific gaps in risk management knowledge, they deliver precise education via Short Courses—like Cybersecurity Risk Management or Understanding Cybersecurity GRC—to ensure staff and leadership close deficiencies and maintain compliance.
Their full suite of services also includes robust Risk Management planning, development of essential Policies, impactful Cybersecurity Awareness Campaigns, and a security monitoring/incident response platform, StormFront. Additionally, we offer a resource library of Cybersecurity Books authored by our esteemed associate Dr. Zoran Mitrovic.