Addressing Cyber Fundamentals

1) How do we move from inconsistent security/privacy protection control approaches to solid fundamentals that address most basic risks faced by agencies?

