Highlights for September 22-26, 2003

Activities Underway

Office of Safeguards and Security Evaluations (OA-10)

SNL-NM Comprehensive Safeguards and Security Inspection: Topic teams have analyzed the information collected during the first week of onsite inspection activities and have initiated preparations for subsequent inspection activities.

Y-12 Comprehensive Safeguards and Security Inspection: Preparations continue in support of the force-on-force exercise. Coordination of the large-scale performance testing of the protective force was conducted this week.

Special Review of Protective Force Management and Capabilities: Coordination between review team members continues in preparation for the inspection.

CMPC Special Reviews: A draft of the LANL special review has been developed. The next reviews will be conducted at Y-12 and Headquarters. A management review board will be convened in November to review all three reports.

Composite Adversary Team (CAT): Five additional CAT members are being requested from selected sites and organizations.

Office of Cyber Security Evaluations (OA-20)

Perimeter Scanning Project: In partnership with the Office of the Chief Information Officer (CIO), OA-20 is conducting a special study (Perimeter Scanning Project) to map out and characterize the DOE network perimeter. This effort is being undertaken to establish a baseline understanding of the magnitude and make-up of DOE computer systems exposed to the Internet in order to improve the Department's protection posture. All anticipated testing agreements have been signed and testing has been completed for 52 DOE/NNSA sites. A final project report will be issued this fall.

Cyber Security Inspection at the Sandia National Laboratories (SNL): A cyber security inspection is being conducted at SNL New Mexico (SNL-NM). The inspection will include penetration testing and a programmatic review of key elements of the SNL-NM cyber security program. A trip to SNL California and return trips to SNL-NM are planned as part of the inspection process.

Cyber Security Inspection at the Y-12 Plant: Planning activities have begun in preparation for a cyber security inspection at the Y-12 Plant in Oak Ridge, Tennessee. A document request and an inspection plan are being drafted and a technical assessment protocol, in support of the penetration testing, is being prepared.

Office of Emergency Management Oversight (OA-30)

Inspection of the Idaho National Engineering and Environmental Laboratory (INEEL): OA-30 and OA-50 have completed the combined environment, safety, and health and emergency management inspection. The site has provided written comments on the final draft report, and these comments are being considered for incorporation into the final report. Briefings of the inspection results are being provided to the Assistant Secretary for Environmental Management and the Director, Office of Nuclear Energy, Science and Technology.

Office of Secure Transportation (OST) Emergency Management Inspection: A scoping visit is being conducted in Albuquerque in preparation for an emergency management inspection.

Office of Environment, Safety and Health Evaluations (OA-50)

Idaho National Engineering and Environmental Laboratory Inspection: The site has provided comments on the draft report and the final report is being prepared for issue. The Assistant Secretary for Environmental Management was briefed on the results of the inspection on September 16 and a briefing is scheduled with the Director, Office of Nuclear Energy, Science and Technology.

Pacific Northwest National Laboratory: Preparations have started for conducting an ES&H evaluation at the Pacific Northwest National Laboratory. The scoping visit was completed on September 12, 2003. A detailed evaluation plan is being developed to guide the onsite data collection.

Yucca Mountain Management Assessment: Preparations have started for conducting the assessment. The plan was issued and team planning initiated.

Nevada Test Site Special Review of the Work for Others Program: Preparations have begun for conducting the special review. The plan was issued and team planning completed.

Activities Completed

Office of Safeguards and Security Evaluations (OA-10)

DOE/NNSA/NSIE Safeguards and Security Director's Meeting: The Office Director, OA-10, participated in this annual meeting of senior field Federal and contractor security managers.

Composite Adversary Team (CAT): Completed development of an operational tactical doctrine to enhance training objectives and performance testing employment.

Office of Cyber Security Evaluations (OA-20)

Annual Independent Evaluation of Classified Information System Security: OA completed a report on the annual evaluation of the DOE classified information systems security program as required by the Federal Information Security Management Act (FISMA). A copy of this report will be included in the DOE submission to the Office of Management and Budget on the status of cyber security in the Department. Additionally, OA will send copies of the report to key managers at Headquarters and in the field.

Office of Environment, Safety and Health Evaluations (OA-50)

Nuclear Criticality Safety Program: A staff member attended the Nuclear Criticality Safety Program meeting at the Forrestal Building on September 25-26.