K05 assurance architecture

United States — NRC Part 50/52 security path

Direct answer

LICENSE- AND FACILITY-SPECIFIC

Evidence boundary. These records describe architecture, control relationships, test requirements, and legal-source status. They do not certify a facility, authorize a mission, prove deployment, or replace current facility-specific engineering and legal review.

Authority state

LICENSE- AND FACILITY-SPECIFIC

Issue matrix

United States — NRC Part 50/52 security path authority boundaries
IssueStatusBoundary
Cybersecurity10 CFR 73.54 PATHApplies to covered systems and support systems within the licensee program and current license basis.
Physical protection10 CFR 73.55 PATHRequirements, DBT assumptions, security plan and response force are facility-specific and safeguards-sensitive.
Datacenter integrationREQUIRES BOUNDARY AND LICENSE REVIEWCo-location or behind-the-meter supply does not erase nuclear security boundaries.
Public disclosureLIMITED BY SAFEGUARDS AND SECURITY INFORMATION RULESPublic strategy must omit sensitive target sets, response tactics, vulnerabilities and detailed layouts.

Qualification

Not legal advice; The current license, orders, exemptions and NRC-approved program control.

Sources: 10 CFR 73.54 — Protection of Digital Computer and Communication Systems and Networks · 10 CFR 73.55 — Requirements for Physical Protection of Licensed Activities in Nuclear Power Reactors Against Radiological Sabotage

Machine-readable matrix