Skip to content

Malicious Insider Threat

Risk Overview

Malicious insiders are considered to be an employee or a contractor/vendor integrated into the workplace that have motivation, knowledge, and legitimate access to more easily attack a utility’s cyber systems or physical assets. An insider motivated by unmanaged workplace disgruntlement, ideological reasons, or financial gain could compromise systems or render them inoperable which can degrade grid reliability. Utilities should have a robust insider threat program supported by executive management that builds a culture of security that encourages employees to look out for each other and address unusual behavior. Utilities should also limit employee access based their position’s requirements, vet employees before granting access, and segment systems to minimize impact.

Key Drivers and Trends

Actions to Reduce Risk

Related Resources

Related Documents

MRO 2025 Regional Risk Assessment

MRO publishes a Regional Risk Assessment (RRA or assessment) each year to identify and prioritize risks to the reliable and secure operations of the regional bulk power system.

Related Events

Related News

Understanding Insider Threats

Tools and resources for mitigating what has been identified as a high risk MRO’s mission is to identify, prioritize and assure effective and efficient mitigation of risks to the reliability…

Read More

Insider Threats Remain a High Priority

MRO develops new tools and resources to mitigate risk This article is an update to Understanding Insider Threats – Midwest Reliability Organization (mro.net), which was published on May…

Read More