A few issues back, I wrote about the US National Institute of Standards and Technology’s (NIST) Framework for Improving Critical Infrastructure Cybersecurity. In that article, I pointed out that the framework conflates information security and cybersecurity, which I believe should be differentiated.