{"abstract":"The U.S. Nuclear Regulatory Commission (NRC) is adopting new cyber security regulations that govern nuclear power reactor licensees. This final rule codifies certain reporting activities associated with cyber security events contained in security advisories issued by the NRC. This rule establishes new cyber security event notification requirements that contribute to the NRC's analysis of the reliability and effectiveness of licensees' cyber security programs and plays an important role in the continuing effort to provide high assurance that digital computer and communication systems and networks are adequately protected against cyber attacks, up to and including the design basis threat.","action":"Final rule.","agencies":[{"raw_name":"NUCLEAR REGULATORY COMMISSION","name":"Nuclear Regulatory Commission","id":383,"url":"https://www.federalregister.gov/agencies/nuclear-regulatory-commission","json_url":"https://www.federalregister.gov/api/v1/agencies/383","parent_id":null,"slug":"nuclear-regulatory-commission"}],"body_html_url":"https://www.federalregister.gov/documents/full_text/html/2015/11/02/2015-27855.html","cfr_references":[{"chapter":null,"citation_url":null,"part":73,"title":10}],"citation":"80 FR 67264","comment_url":null,"comments_close_on":null,"correction_of":null,"corrections":[],"dates":"Effective Date: This final rule is effective December 2, 2015. Compliance Date: Compliance with this final rule is required by May 2, 2016, for those licensed to operate under parts 50 and 52 of Title 10 of the Code of Federal Regulations (10 CFR) and subject to Sec. 73.54.","disposition_notes":null,"docket_ids":["NRC-2014-0036"],"dockets":[],"document_number":"2015-27855","effective_on":"2015-12-02","end_page":67277,"executive_order_notes":null,"executive_order_number":null,"full_text_xml_url":"https://www.federalregister.gov/documents/full_text/xml/2015/11/02/2015-27855.xml","html_url":"https://www.federalregister.gov/documents/2015/11/02/2015-27855/cyber-security-event-notifications","images":{},"images_metadata":{},"json_url":"https://www.federalregister.gov/api/v1/documents/2015-27855?publication_date=2015-11-02","mods_url":"https://www.govinfo.gov/metadata/granule/FR-2015-11-02/2015-27855/mods.xml","not_received_for_publication":null,"page_length":14,"page_views":{"count":1470,"last_updated":"2026-08-24 16:15:16 -0400"},"pdf_url":"https://www.govinfo.gov/content/pkg/FR-2015-11-02/pdf/2015-27855.pdf","presidential_document_number":null,"proclamation_number":null,"public_inspection_pdf_url":"https://public-inspection.federalregister.gov/2015-27855.pdf?1446209212","publication_date":"2015-11-02","raw_text_url":"https://www.federalregister.gov/documents/full_text/text/2015/11/02/2015-27855.txt","regulation_id_number_info":{"3150-AJ37":{"issue":"201504","html_url":"https://www.federalregister.gov/regulations/3150-AJ37/part-73-cyber-security-event-notifications-nrc-2014-0036-","title":"Part 73 Cyber Security Event Notifications [NRC-2014-0036]","xml_url":"http://www.reginfo.gov/public/do/eAgendaViewRule?pubId=201504&RIN=3150-AJ37&operation=OPERATION_EXPORT_XML","priority_category":"Substantive, Nonsignificant"}},"regulation_id_numbers":["3150-AJ37"],"regulations_dot_gov_info":{"supporting_documents":[{"title":"NRC Commission Voting Sheets on SECY-14-0129:  Final Rule:  Cyber Security Event Notifications (10 CFR Part 73)","document_id":"NRC-2014-0036-0027"},{"title":"Slides for Regulatory Guidance 5.83 Public Meeting on 2/11/2015","document_id":"NRC-2014-0036-0026"},{"title":"SECY-14-0129:  Supplemental Information - Rulemaking:  Final Rule:  Cyber Security Event Notification (CSEN) Final Rule OMB Statement","document_id":"NRC-2014-0036-0025"},{"title":"Notice of Forthcoming Public Meeting on 7/31/2014 to Discuss the Implementation Dates of the Draft Cyber Security Event Notification Final Rule","document_id":"NRC-2014-0036-0024"},{"title":"SECY-14-0129:  Supplemental Information - Rulemaking:  Final Rule:  Cyber Security Event Notification (CSEN) Congressional Letters","document_id":"NRC-2014-0036-0023"},{"title":"Supporting Statement for \"Cyber Security Event Notifications\" Final Rule","document_id":"NRC-2014-0036-0022"},{"title":"SRM-M150609A:  Affirmation Session - SECY-14-0129:  Final Rule - Cyber Security Event Notifications (10 CFR Part 73) (RIN 3150-AJ37) and SECY-15-0070:  Motions to Reopen and Proposed New Contentions Regarding Continued Storage (Multiple Dockets)","document_id":"NRC-2014-0036-0021"},{"title":"SECY-14-0129:  Enclosure 4 - Regulatory Analysis for Final Rule on Cyber Security Event Notifications (10 CFR Part 73)","document_id":"NRC-2014-0036-0020"},{"title":"SECY-14-0129:  Enclosure 2 - Federal Register Notice for Final Rule:  Cyber Security Event Notification (Draft)","document_id":"NRC-2014-0036-0019"},{"title":"SECY-14-0129:  Enclosure 1 - History of Cyber Security Event Notification Rulemaking Activities","document_id":"NRC-2014-0036-0018"}],"regulatory_plan":{"html_url":"https://www.federalregister.gov/regulations/3150-AJ37/part-73-cyber-security-event-notifications-nrc-2014-0036-","title":"Part 73 Cyber Security Event Notifications [NRC-2014-0036]"},"comments_url":"https://www.regulations.gov/docketBrowser?rpp=50&so=DESC&sb=postedDate&po=0&dct=PS&D=NRC-2014-0036","supporting_documents_count":null,"docket_id":"NRC-2014-0036","regulation_id_number":"3150-AJ37","title":"Cyber Security Event Notifications","checked_regulationsdotgov_at":"2015-11-22T06:00:13Z"},"regulations_dot_gov_url":null,"significant":false,"signing_date":null,"start_page":67264,"subtype":null,"title":"Cyber Security Event Notifications","toc_doc":"Cyber Security Event Notifications","toc_subject":null,"topics":["Exports","Hazardous materials transportation","Imports","Incorporation by reference","Nuclear energy","Nuclear materials","Nuclear power plants and reactors","Penalties","Reporting and recordkeeping requirements","Security measures"],"type":"Rule","volume":80}