{
  "article": {
    "assignment_desk_version": "v2",
    "assignment_rank": 26,
    "canonical_story_id": "18a175896a779242",
    "canonical_url": "/news/story/hc_cffd8ee38afebbbaa4b87ff0/",
    "cluster_manifest_ids": [
      "1787606609034146424"
    ],
    "cluster_signature": "title:ferc approves new reliability standards for industrial network security monitoring",
    "cluster_stream_ids": [
      "17815325592192483"
    ],
    "collapsed_duplicate_domains": [],
    "computed_evidence_counts": {
      "claims": 8,
      "earliest_published": "2026-08-24T00:00:00+00:00",
      "latest_published": "2026-08-24T00:00:00+00:00",
      "manifests": 1,
      "sources": 1,
      "span_hours": 0.0
    },
    "cross_domain_evidence": false,
    "dedupe_reason": "canonical public story",
    "discovery": {
      "excluded_manifest_count": 0,
      "excluded_manifest_ids": [],
      "manifest_fetch_count": 40,
      "manifest_fetch_strategy": "seed_clusters_then_high_significance",
      "mcp_window": {
        "published_date_from": "2026-08-24",
        "published_date_to": "2026-08-25"
      },
      "preflight_count": 88,
      "read_cap": 40,
      "seed_manifest_fetches": [
        {
          "excluded": 0,
          "kept": 5,
          "label": "united-nations",
          "returned": 5,
          "source_channel": "united-nations",
          "stream_id": "17748465469420025"
        }
      ],
      "seed_preflights": [
        {
          "baseline_daily": 5.571428571428571,
          "count_24h": 7,
          "event_count": 0,
          "high_count": 4,
          "kind": "stream_cluster",
          "label": "united-nations",
          "mcp_count": 5,
          "score": 20.26,
          "source_channel": "united-nations",
          "spike_ratio": 1.26,
          "stream_id": "17748465469420025"
        }
      ],
      "strict_filter": "manifest timestamp within trailing 12h"
    },
    "edition_date": "2026-08-25",
    "edition_slot": "00",
    "evidence_manifest_ids": [
      "1787606609034146424"
    ],
    "evidence_stream_ids": [
      "17815325592192483"
    ],
    "excluded_manifest_ids": [],
    "featured_claims": [
      {
        "claim_id": "1787607443062539542",
        "claim_ref": "b300f390fbba84035cc335006ca5536d5f272142",
        "headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
        "manifest_id": "1787606609034146424",
        "source_channel": "Dragos - Blog Post",
        "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion",
        "text": "The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026."
      },
      {
        "claim_id": "1787607443095417846",
        "claim_ref": "66a447f5d0b6639f1318cbd75d5da543e3eb9735",
        "headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
        "manifest_id": "1787606609034146424",
        "source_channel": "Dragos - Blog Post",
        "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion",
        "text": "CIP-015-2 adds EACMS, PACS, and SCI asset categories to the INSM scope."
      },
      {
        "claim_id": "1787607443107859473",
        "claim_ref": "be2eda3bb64d86a78c69c0133c1a7de783c4de43",
        "headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
        "manifest_id": "1787606609034146424",
        "source_channel": "Dragos - Blog Post",
        "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion",
        "text": "Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed."
      }
    ],
    "home_domain": "society-law-government",
    "kind": "domain_digest",
    "lead_citations": [
      {
        "claim_id": "1787607443062539542",
        "kind": "claim",
        "manifest_id": "1787606609034146424"
      },
      {
        "claim_id": "1787607443095417846",
        "kind": "claim",
        "manifest_id": "1787606609034146424"
      }
    ],
    "meta_brief": {
      "corroborated_takeaways": 0,
      "facts": [
        {
          "disputed": false,
          "label": "CIP-015-1 Date",
          "readings": [
            {
              "manifest_id": "1787606609034146424",
              "value": "2028-10-01"
            }
          ],
          "sources": 1
        },
        {
          "disputed": false,
          "label": "CIP-015-2 Phase 1 Start",
          "readings": [
            {
              "manifest_id": "1787606609034146424",
              "value": "2029-10-01"
            }
          ],
          "sources": 1
        },
        {
          "disputed": false,
          "label": "CIP-015-2 Phase 2a Start",
          "readings": [
            {
              "manifest_id": "1787606609034146424",
              "value": "2030-10-01"
            }
          ],
          "sources": 1
        },
        {
          "disputed": false,
          "label": "CIP-015-2 Full Enforceability",
          "readings": [
            {
              "manifest_id": "1787606609034146424",
              "value": "2031-10-01"
            }
          ],
          "sources": 1
        },
        {
          "disputed": false,
          "label": "Environments with Monitoring",
          "readings": [
            {
              "manifest_id": "1787606609034146424",
              "value": "46"
            }
          ],
          "sources": 1
        }
      ],
      "manifest_count": 1,
      "open_questions": [
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "Specific technical remediation costs for utilities lacking current visibility."
        },
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "Potential for further scope expansion beyond EACMS, PACS, and SCI."
        }
      ],
      "quotes": [
        {
          "context": "Explains why the scope of INSM must expand to include IT/OT boundary assets.",
          "manifest_id": "1787606609034146424",
          "text": "the threat to operational technology does not always arrive through the control system network directly."
        },
        {
          "context": "Highlights the significant visibility gap currently present in the electric utility sector.",
          "manifest_id": "1787606609034146424",
          "text": "the monitoring baseline these standards mandate is exactly what most organizations do not yet have."
        }
      ],
      "source_tldrs": [
        {
          "manifest_id": "1787606609034146424",
          "text": "FERC approved NERC CIP-015-2, expanding INSM requirements to EACMS, PACS, and SCI assets, with phased enforcement beginning October 2029."
        }
      ],
      "stakes": [
        {
          "manifest_id": "1787606609034146424",
          "text": "Utilities face a significant compliance gap, as over 50% currently lack the visibility required by the new standard. Early planning is critical to avoid costly architectural rework."
        }
      ],
      "takeaways": [
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "CIP-015-2 expands INSM requirements to include EACMS, PACS, and SCI, moving beyond traditional BES Cyber Systems."
        },
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "The expansion is a direct response to threat groups like SYLVANITE, which exploit IT-side access to reach OT environments."
        },
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "Dragos assessments indicate that over 50% of utility environments currently lack the network visibility required for compliance."
        },
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "Inventory all EACMS, PACS, and SCI assets immediately to prepare for the 2029 compliance deadline."
        },
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "Engage IT stakeholders early, as these assets often reside in IT-managed environments outside traditional OT control."
        },
        {
          "manifest_ids": [
            "1787606609034146424"
          ],
          "sources": 1,
          "text": "Design monitoring architecture to support flexible deployment across both OT and IT-managed environments to avoid costly rework."
        }
      ]
    },
    "newsworthiness_score": {
      "audience_fit": 0.55,
      "breadth": 0.345833,
      "domain_priority": 0.96,
      "materiality": 0.9,
      "novelty": 1.0,
      "source_strength": 0.75,
      "total": 0.75525
    },
    "paragraphs": [],
    "phase": "curated_synthesis",
    "primary_home_domain": "society-law-government",
    "prompt_version": "news_editorial_v2",
    "schema_version": 1,
    "secondary_home_domains": [],
    "seed_candidates": [
      {
        "baseline_daily": 0.14285714285714285,
        "count_24h": 44,
        "event_count": 0,
        "high_count": 1,
        "kind": "stream_cluster",
        "label": "national-bank-of-tajikistan-news",
        "score": 57.0,
        "source_channel": null,
        "spike_ratio": 308.0,
        "stream_id": null
      },
      {
        "baseline_daily": 0.14285714285714285,
        "count_24h": 44,
        "event_count": 0,
        "high_count": 1,
        "kind": "stream_cluster",
        "label": "national-bank-of-tajikistan",
        "score": 57.0,
        "source_channel": null,
        "spike_ratio": 308.0,
        "stream_id": null
      },
      {
        "baseline_daily": 0.07142857142857142,
        "count_24h": 5,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "central-bank-of-kenya",
        "score": 21.0,
        "source_channel": null,
        "spike_ratio": 50.0,
        "stream_id": null
      },
      {
        "baseline_daily": 5.571428571428571,
        "count_24h": 7,
        "event_count": 0,
        "high_count": 4,
        "kind": "stream_cluster",
        "label": "united-nations",
        "score": 20.26,
        "source_channel": "united-nations",
        "spike_ratio": 1.26,
        "stream_id": "17748465469420025"
      },
      {
        "baseline_daily": 4.285714285714286,
        "count_24h": 5,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "us-department-of-war",
        "score": 12.17,
        "source_channel": "us-department-of-war",
        "spike_ratio": 1.17,
        "stream_id": "17779934635207252"
      },
      {
        "baseline_daily": 2.7857142857142856,
        "count_24h": 4,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "hawaii-state-executive",
        "score": 11.44,
        "source_channel": "hawaii-state-executive",
        "spike_ratio": 1.44,
        "stream_id": "17807223850356416"
      },
      {
        "baseline_daily": 0.14285714285714285,
        "count_24h": 1,
        "event_count": 0,
        "high_count": 1,
        "kind": "stream_cluster",
        "label": "dragos",
        "score": 11.0,
        "source_channel": null,
        "spike_ratio": 7.0,
        "stream_id": null
      },
      {
        "baseline_daily": 1.8571428571428572,
        "count_24h": 3,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "rand",
        "score": 10.62,
        "source_channel": "rand",
        "spike_ratio": 1.62,
        "stream_id": "17732945057965260"
      },
      {
        "baseline_daily": 2.0,
        "count_24h": 3,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "white-house",
        "score": 10.5,
        "source_channel": "white-house",
        "spike_ratio": 1.5,
        "stream_id": "17780896674919492"
      },
      {
        "baseline_daily": 1.1428571428571428,
        "count_24h": 2,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "virginia-state-executive",
        "score": 9.75,
        "source_channel": "virginia-state-executive",
        "spike_ratio": 1.75,
        "stream_id": "17807223899506817"
      },
      {
        "baseline_daily": 1.2857142857142858,
        "count_24h": 2,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "indiana-state-executive",
        "score": 9.56,
        "source_channel": "indiana-state-executive",
        "spike_ratio": 1.56,
        "stream_id": "17807223853997492"
      },
      {
        "baseline_daily": 1.2857142857142858,
        "count_24h": 2,
        "event_count": 0,
        "high_count": 2,
        "kind": "stream_cluster",
        "label": "state-legislature-in-governor-newsroom",
        "score": 9.56,
        "source_channel": null,
        "spike_ratio": 1.56,
        "stream_id": null
      }
    ],
    "slug": "00-26-ferc-approves-nerc-cip-015-2",
    "source_manifests": [
      {
        "brief": {
          "actionable_takeaways": [
            "Inventory all EACMS, PACS, and SCI assets immediately to prepare for the 2029 compliance deadline.",
            "Engage IT stakeholders early, as these assets often reside in IT-managed environments outside traditional OT control.",
            "Design monitoring architecture to support flexible deployment across both OT and IT-managed environments to avoid costly rework."
          ],
          "facts": [
            {
              "label": "CIP-015-1 Date",
              "value": "2028-10-01"
            },
            {
              "label": "CIP-015-2 Phase 1 Start",
              "value": "2029-10-01"
            },
            {
              "label": "CIP-015-2 Phase 2a Start",
              "value": "2030-10-01"
            },
            {
              "label": "CIP-015-2 Full Enforceability",
              "value": "2031-10-01"
            },
            {
              "label": "Environments with Monitoring",
              "value": "46"
            }
          ],
          "key_insights": [
            "CIP-015-2 expands INSM requirements to include EACMS, PACS, and SCI, moving beyond traditional BES Cyber Systems.",
            "The expansion is a direct response to threat groups like SYLVANITE, which exploit IT-side access to reach OT environments.",
            "Dragos assessments indicate that over 50% of utility environments currently lack the network visibility required for compliance."
          ],
          "notable_quotes": [
            {
              "context": "Explains why the scope of INSM must expand to include IT/OT boundary assets.",
              "text": "the threat to operational technology does not always arrive through the control system network directly."
            },
            {
              "context": "Highlights the significant visibility gap currently present in the electric utility sector.",
              "text": "the monitoring baseline these standards mandate is exactly what most organizations do not yet have."
            }
          ],
          "tldr": "FERC approved NERC CIP-015-2, expanding INSM requirements to EACMS, PACS, and SCI assets, with phased enforcement beginning October 2029.",
          "unresolved": [
            "Specific technical remediation costs for utilities lacking current visibility.",
            "Potential for further scope expansion beyond EACMS, PACS, and SCI."
          ],
          "why_it_matters": "Utilities face a significant compliance gap, as over 50% currently lack the visibility required by the new standard. Early planning is critical to avoid costly architectural rework."
        },
        "claim_count": 8,
        "claims": [
          {
            "claim_id": "1787607443062539542",
            "claim_ref": "b300f390fbba84035cc335006ca5536d5f272142",
            "snapshot": "{\"claim_id\":\"1787607443062539542\",\"claim_text\":\"The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026.\",\"claim_type\":\"event\",\"confidence\":\"stated\",\"entities\":[{\"name\":\"Federal Energy Regulatory Commission\",\"role\":\"subject\",\"tag_id\":\"17724044529238508\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":true,\"key_point_index\":0,\"quote\":null,\"signal\":\"Track regulatory approval dates for compliance planning.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026."
          },
          {
            "claim_id": "1787607443095417846",
            "claim_ref": "66a447f5d0b6639f1318cbd75d5da543e3eb9735",
            "snapshot": "{\"claim_id\":\"1787607443095417846\",\"claim_text\":\"CIP-015-2 adds EACMS, PACS, and SCI asset categories to the INSM scope.\",\"claim_type\":\"statement\",\"confidence\":\"stated\",\"entities\":[{\"name\":\"North American Electric Reliability Corporation\",\"role\":\"subject\",\"tag_id\":\"17728294826242611\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":true,\"key_point_index\":0,\"quote\":null,\"signal\":\"Monitor asset inventory requirements for compliance.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "CIP-015-2 adds EACMS, PACS, and SCI asset categories to the INSM scope."
          },
          {
            "claim_id": "1787607443107859473",
            "claim_ref": "be2eda3bb64d86a78c69c0133c1a7de783c4de43",
            "snapshot": "{\"claim_id\":\"1787607443107859473\",\"claim_text\":\"Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed.\",\"claim_type\":\"data\",\"confidence\":\"measured\",\"entities\":[{\"name\":\"Dragos\",\"role\":\"source_org\",\"tag_id\":\"17730962073586661\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":true,\"key_point_index\":2,\"quote\":null,\"signal\":\"Benchmark current utility visibility against industry standards.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed."
          },
          {
            "claim_id": "1787607443130199180",
            "claim_ref": "8e428df1d0f3c7b3bf099d8da490fe43201245b8",
            "snapshot": "{\"claim_id\":\"1787607443130199180\",\"claim_text\":\"CIP-015-2 Phase 1 takes effect on October 1, 2029, at which point CIP-015-1 is retired.\",\"claim_type\":\"event\",\"confidence\":\"stated\",\"entities\":[{\"name\":\"North American Electric Reliability Corporation\",\"role\":\"subject\",\"tag_id\":\"17728294826242611\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":true,\"key_point_index\":3,\"quote\":null,\"signal\":\"Track regulatory transition dates for compliance roadmaps.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "CIP-015-2 Phase 1 takes effect on October 1, 2029, at which point CIP-015-1 is retired."
          },
          {
            "claim_id": "1787607443166110261",
            "claim_ref": "c59afa0606b5ec288b52d37513535cc7265155d6",
            "snapshot": "{\"claim_id\":\"1787607443166110261\",\"claim_text\":\"Adversary threat groups are moving beyond pre-positioning into active reconnaissance of control loops.\",\"claim_type\":\"analysis\",\"confidence\":\"inferred\",\"entities\":[{\"name\":\"Dragos\",\"role\":\"source_org\",\"tag_id\":\"17730962073586661\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":true,\"key_point_index\":1,\"quote\":null,\"signal\":\"Update threat models for critical infrastructure.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "Adversary threat groups are moving beyond pre-positioning into active reconnaissance of control loops."
          },
          {
            "claim_id": "1787607443088074967",
            "claim_ref": "dc5683ff6e0ae5a065605fdfb7cbbd3171f6c850",
            "snapshot": "{\"claim_id\":\"1787607443088074967\",\"claim_text\":\"NERC CIP-015-2 expands internal network security monitoring (INSM) requirements to High and Medium Impact BES Cyber Systems with External Routable Connectivity.\",\"claim_type\":\"statement\",\"confidence\":\"stated\",\"entities\":[{\"name\":\"North American Electric Reliability Corporation\",\"role\":\"subject\",\"tag_id\":\"17728294826242611\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":false,\"key_point_index\":null,\"quote\":null,\"signal\":\"Update compliance scope definitions for grid security.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "NERC CIP-015-2 expands internal network security monitoring (INSM) requirements to High and Medium Impact BES Cyber Systems with External Routable Connectivity."
          },
          {
            "claim_id": "1787607443123737847",
            "claim_ref": "cb695a698eba8b1b1ef95394ab318a4e1cc85399",
            "snapshot": "{\"claim_id\":\"1787607443123737847\",\"claim_text\":\"CIP-015-1 becomes enforceable on October 1, 2028.\",\"claim_type\":\"event\",\"confidence\":\"stated\",\"entities\":[{\"name\":\"North American Electric Reliability Corporation\",\"role\":\"subject\",\"tag_id\":\"17728294826242611\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":false,\"key_point_index\":null,\"quote\":null,\"signal\":\"Track regulatory deadlines for compliance roadmaps.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "CIP-015-1 becomes enforceable on October 1, 2028."
          },
          {
            "claim_id": "1787607443146876807",
            "claim_ref": "7171362cf6a91df330b81d69e487d803321ffccd",
            "snapshot": "{\"claim_id\":\"1787607443146876807\",\"claim_text\":\"CIP-015-2 Phase 2a becomes enforceable on October 1, 2030.\",\"claim_type\":\"event\",\"confidence\":\"stated\",\"entities\":[{\"name\":\"North American Electric Reliability Corporation\",\"role\":\"subject\",\"tag_id\":\"17728294826242611\",\"type\":\"organization\"}],\"evidence\":\"paraphrase\",\"featured\":false,\"key_point_index\":null,\"quote\":null,\"signal\":\"Track regulatory transition dates for compliance roadmaps.\",\"source_urls\":[],\"supporting_quotes\":[]}",
            "text": "CIP-015-2 Phase 2a becomes enforceable on October 1, 2030."
          }
        ],
        "entities": [],
        "headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
        "home_domain": null,
        "manifest_id": "1787606609034146424",
        "published_at": "2026-08-24",
        "significance": "high",
        "source_channel": "Dragos - Blog Post",
        "source_name": "dragos-blog",
        "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion",
        "stream_id": null,
        "stream_ids": [
          "17815325592192483"
        ],
        "summary": "FERC has officially approved NERC CIP-015-2, a regulatory update that significantly expands the scope of internal network security monitoring (INSM) for the electric sector. The standard now includes EACMS, PACS, and SCI asset categories, reflecting a shift in adversary behavior toward reconnaissance at the IT/OT intersection. Utilities must begin inventorying these assets and planning for phased compliance, which begins in October 2029.",
        "tags": [
          "Cybersecurity",
          "Dragos",
          "Federal Energy Regulatory Commission",
          "North American Electric Reliability Corporation"
        ]
      }
    ],
    "stories_per_domain": 24,
    "story_attempt": 1,
    "story_slot": 26,
    "story_units": [
      {
        "paragraphs": [
          {
            "citations": [
              {
                "claim_id": "1787607443062539542",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              },
              {
                "claim_id": "1787607443088074967",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              }
            ],
            "text": "The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026. This regulatory update expands internal network security monitoring requirements to High and Medium Impact BES Cyber Systems with External Routable Connectivity, forcing utilities to secure assets that sit at the intersection of IT and operational technology."
          },
          {
            "citations": [
              {
                "claim_id": "1787607443095417846",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              },
              {
                "claim_id": "1787607443166110261",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              }
            ],
            "text": "The updated standard adds EACMS, PACS, and SCI asset categories to the monitoring scope. This expansion targets a vulnerability, as adversary threat groups are moving beyond pre-positioning into active reconnaissance of control loops."
          },
          {
            "citations": [
              {
                "claim_id": "1787607443107859473",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              }
            ],
            "text": "Most utilities are not prepared for the change. Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed."
          },
          {
            "citations": [
              {
                "claim_id": "1787607443123737847",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              },
              {
                "claim_id": "1787607443130199180",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              },
              {
                "claim_id": "1787607443146876807",
                "kind": "claim",
                "manifest_id": "1787606609034146424"
              }
            ],
            "text": "The transition follows a strict regulatory timeline. While CIP-015-1 becomes enforceable on October 1, 2028, CIP-015-2 Phase 1 takes effect on October 1, 2029, at which point CIP-015-1 is retired. Phase 2a of the new standard becomes enforceable on October 1, 2030."
          }
        ],
        "single_source": true,
        "title": "Expanded Monitoring Requirements"
      }
    ],
    "summary": "The Federal Energy Regulatory Commission has approved Reliability Standard CIP-015-2, which expands internal network security monitoring requirements to include EACMS, PACS, and SCI asset categories.",
    "supply": {
      "briefs": 178,
      "manifests": 182,
      "mcp_servable": 83,
      "signals": 178
    },
    "supporting_evidence": [],
    "supporting_home_domains": [],
    "supporting_manifest_ids": [],
    "supporting_stream_ids": [],
    "tail": [],
    "title": "FERC Approves New Reliability Standards for Industrial Network Security Monitoring",
    "window": {
      "hours": 12,
      "since": "2026-08-24T12:30:01.612696+00:00",
      "until": "2026-08-25T00:30:01.612696+00:00"
    }
  },
  "canonical_story_id": "18a175896a779242",
  "citation_ledger": {
    "assignment": {
      "assignment_desk_version": "v2",
      "assignment_rank": 26,
      "canonical_story_id": "hc_cffd8ee38afebbbaa4b87ff0",
      "canonical_url": "/news/story/hc_cffd8ee38afebbbaa4b87ff0/",
      "cluster_manifest_ids": [
        "1787606609034146424"
      ],
      "cluster_signature": "hcsig_v1_79888419f99998a1c104bbe006349026783971fb90dce3d00201e130525373ca",
      "cluster_stream_ids": [
        "17815325592192483"
      ],
      "cross_domain_evidence": false,
      "dedupe_reason": "global prewrite assignment",
      "evidence_manifest_ids": [
        "1787606609034146424"
      ],
      "evidence_stream_ids": [
        "17815325592192483"
      ],
      "newsworthiness_score": {
        "audience_fit": 0.55,
        "breadth": 0.345833,
        "domain_priority": 0.96,
        "materiality": 0.9,
        "novelty": 1.0,
        "source_strength": 0.75,
        "total": 0.75525
      },
      "primary_home_domain": "society-law-government",
      "secondary_home_domains": [],
      "supporting_evidence": [],
      "supporting_home_domains": [],
      "supporting_manifest_ids": [],
      "supporting_stream_ids": []
    },
    "assignment_prefetch_billed_manifests": 25,
    "calls": [
      {
        "billed_manifests": 0,
        "called_at": "2026-08-25T00:34:07.476677+00:00",
        "elapsed_ms": 242.25,
        "manifest_ids": [],
        "mode": "count",
        "payload_bytes": 846932,
        "tool": "synorb-manifests"
      },
      {
        "billed_manifests": 0,
        "called_at": "2026-08-25T00:34:07.585308+00:00",
        "elapsed_ms": 106.82,
        "manifest_ids": [],
        "mode": "count",
        "payload_bytes": 149699,
        "tool": "synorb-manifests"
      },
      {
        "billed_manifests": 5,
        "called_at": "2026-08-25T00:34:07.806721+00:00",
        "elapsed_ms": 217.68,
        "manifest_ids": [
          "1787606575965394856",
          "1787606575965019532",
          "1787606575962837574",
          "1787606575962529643",
          "1787606575962275554"
        ],
        "mode": "default",
        "payload_bytes": 229585,
        "tool": "synorb-manifests"
      },
      {
        "billed_manifests": 20,
        "called_at": "2026-08-25T00:34:08.168692+00:00",
        "elapsed_ms": 337.99,
        "manifest_ids": [
          "1787615643559570943",
          "1787613494766149640",
          "1787613147292525353",
          "1787612285962161016",
          "1787610434714472730",
          "1787606849588723387",
          "1787606609034146424",
          "1787606575965019532",
          "1787606575962837574",
          "1787606575962529643",
          "1787606575962275554",
          "1787606432684066124",
          "1787606432670697684",
          "1787601664619475109",
          "1787599570824708074",
          "1787597293111797157",
          "1787596329859981834",
          "1787594552583621173",
          "1787592408119981203",
          "1787591833234304546",
          "1787591088475333974",
          "1787591088474630677",
          "1787587374463936604",
          "1787581487300730760"
        ],
        "mode": "default",
        "payload_bytes": 1078876,
        "tool": "synorb-manifests"
      }
    ],
    "distinct_manifest_ids": [
      "1787606609034146424"
    ],
    "edition_slot": "00",
    "excluded_manifest_ids": [],
    "prompt_version": "news_editorial_v2",
    "run_started_at": "2026-08-25T00:34:07.190260+00:00",
    "stories_per_domain": 24,
    "story_slot": 26,
    "strict_window": {
      "client_filtered": true,
      "published_date_from": "2026-08-24T12:30:01.612696+00:00",
      "published_date_to": "2026-08-25T00:30:01.612696+00:00"
    },
    "total_billed_manifests": 1,
    "total_calls": 4,
    "total_payload_bytes": 2305092
  },
  "cluster_manifest_ids": [
    "1787606609034146424"
  ],
  "cluster_signature": "title:ferc approves new reliability standards for industrial network security monitoring",
  "corrections": [],
  "dedupe_reason": "canonical public story",
  "edition_date": "2026-08-25",
  "fact_claim_map": [
    {
      "claims": [
        {
          "claim_id": "1787607443062539542",
          "claim_ref": "b300f390fbba84035cc335006ca5536d5f272142",
          "claim_text": "The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 1,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        },
        {
          "claim_id": "1787607443088074967",
          "claim_ref": "dc5683ff6e0ae5a065605fdfb7cbbd3171f6c850",
          "claim_text": "NERC CIP-015-2 expands internal network security monitoring (INSM) requirements to High and Medium Impact BES Cyber Systems with External Routable Connectivity.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 2,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        }
      ],
      "paragraph": 1,
      "text": "The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026. This regulatory update expands internal network security monitoring requirements to High and Medium Impact BES Cyber Systems with External Routable Connectivity, forcing utilities to secure assets that sit at the intersection of IT and operational technology."
    },
    {
      "claims": [
        {
          "claim_id": "1787607443095417846",
          "claim_ref": "66a447f5d0b6639f1318cbd75d5da543e3eb9735",
          "claim_text": "CIP-015-2 adds EACMS, PACS, and SCI asset categories to the INSM scope.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 3,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        },
        {
          "claim_id": "1787607443166110261",
          "claim_ref": "c59afa0606b5ec288b52d37513535cc7265155d6",
          "claim_text": "Adversary threat groups are moving beyond pre-positioning into active reconnaissance of control loops.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 4,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        }
      ],
      "paragraph": 2,
      "text": "The updated standard adds EACMS, PACS, and SCI asset categories to the monitoring scope. This expansion targets a vulnerability, as adversary threat groups are moving beyond pre-positioning into active reconnaissance of control loops."
    },
    {
      "claims": [
        {
          "claim_id": "1787607443107859473",
          "claim_ref": "be2eda3bb64d86a78c69c0133c1a7de783c4de43",
          "claim_text": "Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 5,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        }
      ],
      "paragraph": 3,
      "text": "Most utilities are not prepared for the change. Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed."
    },
    {
      "claims": [
        {
          "claim_id": "1787607443123737847",
          "claim_ref": "cb695a698eba8b1b1ef95394ab318a4e1cc85399",
          "claim_text": "CIP-015-1 becomes enforceable on October 1, 2028.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 6,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        },
        {
          "claim_id": "1787607443130199180",
          "claim_ref": "8e428df1d0f3c7b3bf099d8da490fe43201245b8",
          "claim_text": "CIP-015-2 Phase 1 takes effect on October 1, 2029, at which point CIP-015-1 is retired.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 7,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        },
        {
          "claim_id": "1787607443146876807",
          "claim_ref": "7171362cf6a91df330b81d69e487d803321ffccd",
          "claim_text": "CIP-015-2 Phase 2a becomes enforceable on October 1, 2030.",
          "kind": "claim",
          "manifest_headline": "FERC Approves NERC CIP-015-2: What It Means for Your INSM Program",
          "manifest_id": "1787606609034146424",
          "mcp_url": "https://synorb.com/agents?manifest_id=1787606609034146424&utm_source=hangingcontext&utm_medium=news_citation&utm_campaign=hc_news_public",
          "number": 8,
          "source_name": "Dragos - Blog Post",
          "source_url": "https://www.dragos.com/blog/ferc-approves-nerc-cip-015-2-insm-expansion"
        }
      ],
      "paragraph": 4,
      "text": "The transition follows a strict regulatory timeline. While CIP-015-1 becomes enforceable on October 1, 2028, CIP-015-2 Phase 1 takes effect on October 1, 2029, at which point CIP-015-1 is retired. Phase 2a of the new standard becomes enforceable on October 1, 2030."
    }
  ],
  "gate_report": {
    "checked_at": "2026-08-25T00:30:01.612696+00:00",
    "deterministic_pass": true,
    "findings": [],
    "initial_findings": [
      {
        "code": "entailment_fail",
        "message": "LLM entailment judge found unsupported factual prose",
        "severity": "block"
      }
    ],
    "initial_status": "blocked",
    "judge": {
      "cost_usd": 0.003508,
      "model": "gemini-3.1-flash-lite",
      "sentences": [
        {
          "classification": "factual",
          "reason": "The cited claims confirm the approval of CIP-015-2 and the inclusion of the specified asset categories.",
          "sentence": "FERC Approves New Reliability Standards for Industrial Network Security Monitoring The Federal Energy Regulatory Commission has approved Reliability Standard CIP-015-2, which expands internal network security monitoring requirements to include EACMS, PACS, and SCI asset categories.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The sentence is directly supported by the cited claim.",
          "sentence": "The Federal Energy Regulatory Commission approved Reliability Standard CIP-015-2 by letter order on August 10, 2026.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The expansion to High and Medium Impact BES Cyber Systems is supported by the cited claims, and the description of the impact on utilities is a reasonable interpretation of the regulatory requirement.",
          "sentence": "This regulatory update expands internal network security monitoring requirements to High and Medium Impact BES Cyber Systems with External Routable Connectivity, forcing utilities to secure assets that sit at the intersection of IT and operational technology.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The sentence is directly supported by the cited claim.",
          "sentence": "The updated standard adds EACMS, PACS, and SCI asset categories to the monitoring scope.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The expansion is a fact, and the threat context is supported by the cited claim.",
          "sentence": "This expansion targets a vulnerability, as adversary threat groups are moving beyond pre-positioning into active reconnaissance of control loops.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The cited claim that only 46 percent of environments have adequate monitoring supports the conclusion that most are not prepared.",
          "sentence": "Most utilities are not prepared for the change.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The sentence is directly supported by the cited claim.",
          "sentence": "Dragos OT assessments found that only 46 percent of environments had adequate network monitoring deployed.",
          "verdict": "entailed"
        },
        {
          "classification": "framing",
          "reason": "This sentence frames the specific dates provided in the cited claims.",
          "sentence": "The transition follows a strict regulatory timeline.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The sentence is directly supported by the cited claims.",
          "sentence": "While CIP-015-1 becomes enforceable on October 1, 2028, CIP-015-2 Phase 1 takes effect on October 1, 2029, at which point CIP-015-1 is retired.",
          "verdict": "entailed"
        },
        {
          "classification": "factual",
          "reason": "The sentence is directly supported by the cited claim.",
          "sentence": "Phase 2a of the new standard becomes enforceable on October 1, 2030.",
          "verdict": "entailed"
        }
      ],
      "status": "pass",
      "tokens_in": 1191,
      "tokens_out": 814
    },
    "metrics": {
      "cited_manifests": 1,
      "claims_available": 8,
      "lead_checked": true,
      "paragraphs_checked": 4
    },
    "rewrite_attempted": true,
    "status": "passed",
    "version": "news_pr_d_v2"
  },
  "home_domain": "society-law-government",
  "lastmod": "2026-08-25",
  "primary_home_domain": "society-law-government",
  "schema_version": 1,
  "secondary_home_domains": [],
  "status": "draft",
  "summary": "The Federal Energy Regulatory Commission has approved Reliability Standard CIP-015-2, which expands internal network security monitoring requirements to include EACMS, PACS, and SCI asset categories.",
  "suppressed_duplicate_of": null,
  "title": "FERC Approves New Reliability Standards for Industrial Network Security Monitoring",
  "url": "https://hangingcontext.com/news/society-law-government/2026-08-25-00-26-ferc-approves-nerc-cip-015-2/"
}
