United States, Canada (bulk electric system)

NERC CIP compliance evidence that FERC auditors find organized and complete

NERC Critical Infrastructure Protection (CIP) Standards

Physical security records, cyber system access logs, and vulnerability management evidence — generated continuously from utility operations so FERC audits are not multi-week scrambles.

FERC (Federal Energy Regulatory Commission), NERC, Regional EntitiesUnited States, Canada (bulk electric system)

30-day free trial · Private deployment included · Cancel anytime

About NERC CIP

NERC CIP standards establish requirements for securing the bulk electric system, covering physical security, cyber security, incident reporting, and supply chain risk management.

Top audit finding

"Physical access reviews not performed at required frequency with documented evidence of review"

Most common NERC CIP non-conformance finding

Requirement mapping

NERC CIP requirements — and how Certexi addresses them

Framework requirements

  • 1BES Cyber System identification and classification
  • 2Physical security plans with access records for Electronic Security Perimeters
  • 3Electronic access management with authorization and access logs
  • 4Security awareness and training with completion records
  • 5Incident identification, classification, and reporting
  • 6Physical security event logging and review

Certexi approach

  • Physical access records: PACS event logs correlated with authorized personnel lists
  • Electronic access management records: provisioning, review, and deprovisioning workflows
  • Security training matrix: CIP required training by role with completion evidence
  • Incident management: classification against CIP reportability thresholds with notification records
  • FERC audit bundle: organized by CIP standard and requirement with evidence linkage

Industry relevance

Sectors where NERC CIP compliance applies

Core capabilities

Use cases central to NERC CIP compliance

PRECIOS

Alineado al Valor Operativo, No al Número de Usuarios

El precio depende del alcance del despliegue, no del número de usuarios. Tus datos. Tu infraestructura. Tus reglas.

Todos los planes incluyen despliegue privado. Tu información permanece en tu infraestructura.

ISO 27001 Aligned
Private Deployment
Unlimited Users

Piloto

Valida antes de comprometerte

Personalizado

5 lugares por trimestre

  • Despliegue completo de plataforma
  • Soporte de configuración
  • Capacitación e incorporación
  • Acceso directo al equipo de producto
  • Iteración basada en retroalimentación
  • Período de evaluación de 8 semanas

Estándar

Operaciones de una ubicación

Desde $2,500

por mes, facturado anualmente

  • Todas las capacidades centrales
  • Biblioteca de plantillas estándar
  • Despliegue privado incluido
  • Soporte por email (respuesta 24h)
  • Actualizaciones trimestrales
  • Usuarios ilimitados

Enterprise

Multi-ubicación, alto cumplimiento

Personalizado

Basado en alcance del despliegue

  • Todo lo de Estándar
  • Desarrollo de plantillas personalizadas
  • Ingeniero de soporte dedicado
  • Garantías SLA
  • Integraciones avanzadas
  • Opción de despliegue air-gapped

Despliegue Privado Incluido en Todos los Planes

Cada plan incluye despliegue completo en tu infraestructura — Nextcloud, servidores Linux, Docker, Kubernetes o entornos air-gapped. Tu información nunca sale de tu control.

NERC CIP compliance evidence maintained continuously, not assembled before FERC audits.

30-day free trial. Private deployment on your infrastructure.

Start Free Trial