Security plan for critical infrastructure protection
Article 26
1. Each TSO shall specify, taking into account Article 5 of Council Directive 2008/114/EC ( 10 ) , a confidential security plan containing a risk assessment of assets owned or operated by the TSO, covering major physical or cyber threat scenarios determined by the Member State. 2. The security plan shall consider potential impacts to the European interconnected transmission systems, and include organizational and physical measures aiming at mitigating the identified risks. 3. Each TSO shall regularly review the security plan to address changes of threat scenarios and reflect the evolution of the transmission system.