16 December 2024
WindEurope Response to ENTSO-E Public Consultation on Cybersecurity Risk Assessment Methodologies for the Network Code on Cybersecurity
WindEurope provided feedback on the public consultation organized by ENTSO-E regarding the cybersecurity risk assessment methodologies for the Network Code on Cybersecurity (NCCS).
Under Article 18 of the NCCS, the European Network of Transmission System Operators for Electricity (ENTSO-E), in cooperation with the EU DSO Entity, developed methodologies for cybersecurity risk assessments. These methodologies address three levels: Union-wide, regional, and member state.
Notably, no specific methodology is prescribed for risk assessments at the entity level, as entities are free to choose their own, provided it complies with Article 26 of the NCCS. The methodologies focus on assessing the impact of cyberattacks on the grid’s operational security, ensuring consistent risk evaluation across the levels defined in the NCCS.