Cyber Diplomacy: Norms, Sovereignty, and the SCADA Supply-Chain Gap
Cyber diplomacy is an evolution of public diplomacy — sometimes called public diplomacy 2.0. It emerged as a direct response to the shift in international relations brought on by cyberspace, and can be defined as a framework for engagement: setting rules of the road, negotiating agreements, and gathering cyber threat intelligence from other countries to avoid friction in cyberspace, all while keeping a state's broader foreign policy agenda in view.
It is also an attempt to use diplomatic resources and functions to secure national interests concerning cyberspace. Generally, a national cyberspace or cybersecurity strategy is informed by the foreign policy agenda, and the field spans cybersecurity, cybercrime, confidence-building, internet freedom, and internet governance.
Cyber Diplomacy in Today's World
Awareness of cyber diplomacy is growing worldwide, and with it a proliferation of cybersecurity policies, strategies, and alliances — each built with different objectives. The Tallinn Manual and the NATO countries advocate a partnership model built on the liberalization of cyberspace, while countries aligned with the Shanghai Cooperation Organisation advocate instead for "National Cyber Sovereignty." Although most countries lean toward the liberalized cybersecurity and diplomacy ideology, development in the SCADA and critical-infrastructure domain lags well behind.
Trade wars shaped by national ICT regulations are also being fought in international forums such as the WTO, WCO, and WIPO — and these directly affect cybersecurity procurement decisions at the national level. Yet this understanding is rarely extended to the domain of critical infrastructure. That gap in current cyberdiplomacy practice — and the fact that many cooperation frameworks remain a barrier to resilient national security and trade in the ICT supply chain — is precisely why evolved research into Supply Chain Cybersecurity is needed: study and analysis that can deduce a strategic action plan for security maintenance at every level.
How Is It Different From E-Diplomacy or Digital Diplomacy?
Cyber-diplomacy is often mistaken for e-diplomacy or digital diplomacy, but the concepts differ. Cyber-diplomacy is about managing foreign policy in the cyber age — diplomacy, conflict resolution, agreements, and cyberspace policy. Digital or e-diplomacy, by contrast, is the study of how ICT tools and methods are used to conduct diplomacy and foreign affairs — reflecting the impact of new technology on diplomacy's objectives, tools, and structure, rather than on cyberspace itself as the subject.
SCADA Risk Management
Risk management for SCADA and industrial control systems mirrors the shape of broader security policy: a handful of standards and best practices are widely acknowledged for their merit and put to use, even though most were written with Information Security — not operational technology — in mind. Three publications anchor the field:
• OCTAVE, by the Industrial Control Systems Cyber Emergency Response Team (ICS-CERT), focused on reviewing threats and vulnerabilities at an operational level.
• Publications by the European Union Agency for Network and Information Security (ENISA), covering methodologies and specific tools for risk management and assessment.
• NIST Special Publication 800-30, from the National Institute of Standards and Technology.
Export/Import of Encryption & Other Technologies
Globalization has produced what's known as "international production fragmentation" — a marked departure from the "Fordist" model exemplified by the American automobile industry, where economic activity was organized within a single firm in one place. Under fragmented production, components and capability are distributed across borders instead. The consequence for cybersecurity is not incidental: the lack of international standardization, combined with geopolitics, has measurably increased the cyber-threat exposure of the global ICT supply chain.
Cyber Diplomacy & Trade in the Context of SCADA
National cybersecurity laws and regional trade agreements impose real barriers to global trade in ICT and industrial-control technology. Understanding today's supply chain cybersecurity landscape — and the geopolitics behind it — means also understanding the role international organizations such as the World Trade Organisation (WTO), World Customs Organisation (WCO), and World Intellectual Property Organisation (WIPO) play in governing cybersecurity issues across the global supply chain, and where policy in practice still falls short of policy on paper.
Where This Leaves Practitioners
Cyber diplomacy sits at the intersection of foreign policy, international law, and increasingly, industrial risk management — which is exactly why we built a dedicated two-day Cyberdiplomacy Training program covering the UN norms process, the new UN Global Mechanism on Cybersecurity, international law debates including the Tallinn Manual, and the confidence-building measures that keep disputes from escalating. Explore the program on our Training page, or get in touch to bring it to your team or delegation.
.png)

Comments