Critical infrastructure is largely owned and operated by the private sector. But is security only the private sector’s responsibility? Does this mean that government has a lesser role? These are some of the important cybersecurity issues that nations are grappling with. At an organizational level, too, cybersecurity is not merely a technology issue, but a management issue. This is grounded in enterprise risk management, which calls for an understanding of the human, process, legal, network, and ICT security aspects.

It is obvious that multiple agencies are involved in securing ICT infrastructure. These include private operators for their respective pieces of the infrastructure. Their efforts need to be firmly coordinated through an integrated command-and-control entity, which should serve as a unifying structure that is accountable for cybersecurity.

