National Security Memo requires NIST, CISA to create cybersecurity standards for critical infrastructure. Compliance with standards will be voluntary – at least initially, compliance is voluntary. The White House is open to considering making standards compliance mandatory for the private sector. Cybersecurity and Infrastructure Security Agency and the National Institute of Standards and Technology will develop the standards. The move comes after a series of ransomware and other attacks have targeted companies that have oversight over critical infrastructure, including Colonial Pipeline Co. and meat processor JBS.”]

