I think CNL and AECL should be testifying to the details of that.
As I pointed out, I can only conjecture. From what I know about cybersecurity.... As a co-director of the cybersecurity program at RMC, which trains some of our highest-skilled operators in this country, I have some confidence and some understanding of cybersecurity and cybersecurity regulations, and those are nowhere near stringent enough. In information management, we simply do not have the regulations, the legislation and the rigour in place generally for our critical infrastructure, from which I infer that we are not imposing sufficient conditions on this contract, and that we cannot take the AECL executive at their word when they say, “Don't worry; there's nothing to see here.”
