Entries by Al McDougall

CMMC2.0/CPCSC

Shipbuilders within the USA Defense Industrial Base (USA-DIB) and Canadian Defence Industrial Base (CDA-DIB) will soon be required to hold a new cybersecurity certification as part of their contractual arrangements. While the CMMC 2.0 regime is now officially on the books, Canadian suppliers continue to wait for the formal requirements communicated through ITSP 10.171, a […]

Cyber in Safety Management

Those involved in integrating Cybersecurity into Safety Management Systems should remain aware of a fundamental cultural different in how safety management and security management approach risk. Safety Risks are tied to a specific set of actions or conditions that can be managed as their own isolated entity. Security risks, however, might be described as being […]

IMO Insider Threat Toolkit

As discussed within the 2024 August newsletter, the IMO Insider Threat toolkit provides some guidance with respect to different things that can be done to mitigate insider threats. A degree of caution is recommended and those thinking about implementing the controls recommended in that package should do so with the assistance of competent practitioners that […]

Attacks on Shipping

The attacks on shipping herald in a new period of instability on the world’s oceans. Attacks over the past few months by Houthi rebels against commercial shipping started this cycle but the recent seizure of the MV Aries illustrates a number of problematic issues. Location The attack on the MSC Aries occurred in International Waters. […]

USA Rule Making

While the USA is currently generating cyber security rules for both ships and ports under a White House Executive Order, there are more than a few things to monitor. This post will look at some of the main issues. First, with the USCG generating the rules, the USA has a significant opportunity to ensure that […]