Abstract
In this exploratory study, we map the use of free and open source software (FOSS) in the United States energy sector, especially as it relates to cyber security. Through two surveys and a set of semi-structured interviews—targeting both developers and policy makers—we identified key stakeholders, organizations, and FOSS projects, be they rooted in industry, academia, or public policy space that influence software and security practices in the energy sector. We explored FOSS tools, common attitudes and concerns, and challenges with regard to FOSS adoption. More than a dozen themes were identified from interviews and surveys. Of these, drivers for adoption and risks associated with FOSS were the most prevalent. More specifically, the misperceptions of FOSS, the new security challenges presented by the smart grid, and the extensive influence of vendors in this space play the largest roles in FOSS adoption in the energy sector.
Chapter PDF
Similar content being viewed by others
References
About TVA, http://www.tva.com/abouttva/index.html
Batz, D., Brenton, J., Dunn, D., William, G., Clark, P., Elwart, S., Goff, E., Barrell, B., Hawk, C., Henrie, M., Kenchingon, H., Maughan, D., Kaiser, L., Norton, D.: Roadmap to Achieve Energy Delivery Systems Cyber Security (2011), http://www.cyber.st.dhs.gov/wp-content/uploads/2011/09/Energy_Roadmap.pdf
Berg, B.L.: Qualitative research methods for the social sciences. Allyn and Bacon, Glencoe (1989)
Bryant, D., Ramsamy, P.: Public Administrations Code Release Communities: Dossier ONSFA (2011), http://observatorio.cenatic.es/index.php?option=com_content&view=article&id=728%3Adosiier-nuevo&catid=5%3Aadministraciones-publicas&Itemid=21 (accessed March 23)
Coverity: 2011 Open Source Integrity Report, http://softwareintegrity.coverity.com/coverity-scan-2011-open-source-integrity-report-registration.html
Dell to Acquire Secureworks, http://content.dell.com/us/en/corp/d/secure/2011-01-04-ir-shld-release
Department of Energy Launches Initiative with Industry to Better Pro-tect the Nation’s Electric Grid from Cyber Threats, http://energy.gov/articles/department-energy-launches-initiative-industry-better-protect-nation-s-electric-grid-cyber
Falliere, N., Murchu, L.O., Chien, E.: W32. Stuxnet Dossier (2011), http://www.symantec.com/content/en/us/enterprise/media/security_response/whitepapers/w32_stuxnet_dossier.pdf
GADS Open Source, http://gadsopensource.com/
Ghosh, R.A., Glott, R., Krieger, B., Robles, G.: Free/Libre and Open Source Software: Survey and Study, Part 4: Survey of Developers (June 2002), www.flossproject.org/report/
Grid Protection Alliance “Grid Protection Alliance” (2012), http://www.gridprotectionalliance.org
Hahn, A., Govindarasu, M.: Cyber Attack Exposure Evaluation Framework for the Smart Grid. IEEE Transactions of Smart Grid 2(4), 835–843 (2011)
Herraiz, I., Robles, G., Amor, J.J., Romera, T., Gonzalez Barahona, J.M.: The Process of Joining in Global Distributed Software Projects. In: Proc. of the Int’l Workshop on Global Software Development for the Practitioner, pp. 27–33 (2006)
Homeland Open Security Technology, http://www.cyber.st.dhs.gov/host/
Krishnamurthy, S.: Cave or Community? An Empirical Examination of 100 Mature Open Source Projects. First Monday 7(6) (2002)
Lakhani, K.R., Wolf, R.G.: The Boston Consulting Group Hacker Survey (2002), ftp3.au.freebsd.org/pub/linux.conf.au/2003/papers/Hemos/Hemos.pdf
Messmer, E.: Research lab extends host-based cyber sensor project to open source, http://www.networkworld.com/news/2012/041612-hone-258296.html
Open Source Census Tracks Enterprise Use of Open Source Globally (2008), http://www.osscensus.org/9.30.08.php
Ransbotham, S.: An Empirical Analysis of Exploitation Attempts based on Vulnerabilities in Open Source Software. Workshop on the Economics of Information Security (2010), http://weis2010.econinfosec.org/papers/session6/weis2010_ransbotham.pdf
Robles, G., Scheider, H., Tretkowski, I., Webers, N.: Who Is Doing It? A research on Libre Software developers (2001), http://widi.berlios.de/paper/study.html
Siegate: Secure Information Exchange Gateway for Electric Grid Operations, http://www.iti.illinois.edu/research/power-grid/siegate-secure-information-exchange-gateway-electric-grid-operations
Smart Grid, http://energy.gov/oe/technology-development/smart-grid
Smart Grid Investment Grant Program: Progress Report (2012), http://energy.gov/sites/prod/files/Smart%20Grid%20Investment%20Grant%20Program%20-%20Progress%20Report%20July%202012.pdf
Smart Grid, Portland General Electric, http://www.portlandgeneral.com/our_company/energy_strategy/smart_grid/default.aspx
Srivastava, M: Green Energy Corp Introduces Smart Grid Open Source Community, http://smart-grid.tmcnet.com/topics/smart-grid/articles/134784-green-energy-corp-introduces-smart-grid-open-source.html
Stenbit, J.P.: Open Source Software (OSS) in the Department of Defense (DoD) (2003), http://oss-insti-tute.org/storage/documents/Resources/policy/2003_stenbit_memo.pdf
Turk, R.J.: Cyber Incidents Involving Control Systems, http://www.inl.gov/technicalpublications/Documents/3480144.pdf
Utilisec: Electric Utility Cyber Security, http://www.utilisec.com/
Walli, S., Gynn, D., Rotz, V.: The Growth of Open Source Software in Organization (2005), http://dirkriehle.com/wp-content/uploads/2008/03/wp_optaros_oss_usage_in_organizations.pdf
Wennergren, D.M.: Clarifying Guidance Regarding Open Source Software (OSS) (2009), http://dodcio.defense.gov/Portals/0/Documents/FOSS/2009OSS.pdf
Wheeler, D.: Why Open Source Software/Free Software (OSS/FS, FOSS, or FLOSS)? Look at the Numbers! (2007), http://www.dwheeler.com/oss_fs_why.html
Ye, Y., Kishida, K.: Toward an understanding of the motivation of open source software developers. In: Proc. of the 25th International Conf. on Software Engineering, pp. 419–429 (2003)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2013 IFIP International Federation for Information Processing
About this paper
Cite this paper
Kuechler, V., Jensen, C., Bryant, D. (2013). Misconceptions and Barriers to Adoption of FOSS in the U.S. Energy Industry. In: Petrinja, E., Succi, G., El Ioini, N., Sillitti, A. (eds) Open Source Software: Quality Verification. OSS 2013. IFIP Advances in Information and Communication Technology, vol 404. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-38928-3_17
Download citation
DOI: https://doi.org/10.1007/978-3-642-38928-3_17
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-642-38927-6
Online ISBN: 978-3-642-38928-3
eBook Packages: Computer ScienceComputer Science (R0)