{
  "canonicalClaimUrl": "https://xn--mwe.com/questions/how-should-false-positives-be-managed-in-nuclear-ot/#clm-k04-q-089",
  "claimStatus": "PROJECT TECHNICAL PROPOSAL",
  "correctionStatus": "CURRENT K04 STRATEGIC RECORD",
  "id": "CLM-K04-Q-089",
  "lastReviewed": "2026-08-15",
  "machineRecordUrl": "https://xn--mwe.com/data/claims/clm-k04-q-089.json",
  "name": "How should false positives be managed in nuclear and other high-consequence OT?",
  "ownerAnchor": "clm-k04-q-089",
  "ownerId": "K04-Q-089",
  "ownerRoute": "/questions/how-should-false-positives-be-managed-in-nuclear-ot/",
  "ownerType": "question",
  "proposition": "The response design must compare the harm of acting with the harm of waiting, use independent corroboration, preserve safety systems, prefer reversible containment, simulate physical consequences, and automatically stop escalation when confidence or system state leaves the approved envelope.",
  "qualification": "The answer remains bounded by the owning topic, exact authority, safety, jurisdiction, evidence, and readiness state.",
  "releaseId": "K12-2026-08-16",
  "releaseVersion": "2.1.0",
  "researchCutoff": "2026-08-15",
  "scope": "Direct answer for How should false positives be managed in nuclear and other high-consequence OT?",
  "slug": "clm-k04-q-089",
  "sourceIds": [
    "SRC-INL-CCE",
    "SRC-NIST-800-82R3",
    "SRC-NRC-10CFR-73-54"
  ],
  "sourceSections": [
    {
      "section": "CCE methodology",
      "sourceId": "SRC-INL-CCE",
      "supportRelationship": "QUALIFIES OR SUPPORTS WITHIN STATED SCOPE",
      "supports": "CCE begins with the assumption that a skilled adversary can penetrate the network and uses a four-phase process to safeguard critical operations.",
      "url": "https://inl.gov/national-security/cce/"
    },
    {
      "section": "Critical function focus",
      "sourceId": "SRC-INL-CCE",
      "supportRelationship": "QUALIFIES OR SUPPORTS WITHIN STATED SCOPE",
      "supports": "CCE evaluates what must be safeguarded and applies engineering strategies to isolate and protect critical assets and functions.",
      "url": "https://inl.gov/feature-story/consequence-driven-cyber-informed-engineering-the-rise-of-a-national-security-pillar/"
    },
    {
      "section": "Abstract",
      "sourceId": "SRC-NIST-800-82R3",
      "supportRelationship": "QUALIFIES OR SUPPORTS WITHIN STATED SCOPE",
      "supports": "The guide addresses OT security, threats, vulnerabilities, topologies, and countermeasures while recognizing unique performance, reliability, and safety needs.",
      "url": "https://csrc.nist.gov/pubs/sp/800/82/r3/final"
    },
    {
      "section": "73.54(a)",
      "sourceId": "SRC-NRC-10CFR-73-54",
      "supportRelationship": "QUALIFIES OR SUPPORTS WITHIN STATED SCOPE",
      "supports": "Covered licensees must provide high assurance that specified digital systems and networks are protected against cyber attacks up to and including the design basis threat.",
      "url": "https://www.ecfr.gov/current/title-10/chapter-I/part-73/section-73.54"
    },
    {
      "section": "73.54(b)",
      "sourceId": "SRC-NRC-10CFR-73-54",
      "supportRelationship": "QUALIFIES OR SUPPORTS WITHIN STATED SCOPE",
      "supports": "The regulation requires asset analysis and an implemented and maintained cybersecurity program for protected assets.",
      "url": "https://www.ecfr.gov/current/title-10/chapter-I/part-73/section-73.54"
    }
  ],
  "type": "ClaimRecord"
}
