In February 2014, NIST released version 1.0 of the Framework for Improving Critical Infrastructure Cyber-security. The frameworks is intended to be a "voluntary" set of standards that can help small and medium sized businesses develop an information security program. (Part of the problem, of course, is that we don't need another framework - but a [...]