Skip to content
NGTEdu Logo

NGTEdu

A PRODUCT OF NGTECH.CO.IN

NGTEdu Logo

NGTEdu

  • Home
  • Cyber Attacks
  • Malware
  • Vulnerabilities
  • Data Breach
  • Home
  • Data Breach
  • 5 Things to know about the UK’s National Cyber Security Centre (NCSC)
  • Critical Vulnerability
  • Data Breach

5 Things to know about the UK’s National Cyber Security Centre (NCSC)

4 years ago Tripwire Guest Authors
5 Things to know about the UK’s National Cyber Security Centre (NCSC)

#1 The history of the National Cyber Security Centre

The UK’s first cybersecurity strategy was launched in 2009 and outlined that whatever the shape of the cybersecurity mission, it made no sense to silo it away from other aspects of national security. To be effective, it had to be able to take advantage of high-grade intelligence and other security capabilities. The strategy outlined how the country needed to invest more in getting the public and private partnership really working. It confirmed the need to set even clearer lines of accountability when cyber incidents happened.

In 2015, the UK government took that learning and turned it into a five-year National Cyber Security Strategy. It brought new thinking to the management of cyber incidents, led to the creation of the Active Cyber Defence programme, and set the conditions for a different partnership with the private sector. Of course, much of this was given a new home in the National Cyber Security Centre (NCSC), which itself, was to be part of the Government Communications Headquarters (GCHQ).

In October 2016, the UK’s Communications Electronic Security Group (CESG), which was the government’s National Technical Authority for Information Assurance, and part of GCHQ, was merged with elements of the Centre for Protection of National Infrastructure (CPNI) into one single entity called the National Cyber Security Centre (NCSC).

#2 What does the NCSC do?

The NCSC is in essence the public front end for GCHQ and provides a single point of contact for small and medium enterprises (SMEs), larger organisations, government agencies, the general public and government departments. It works collaboratively with other law enforcement, defence, the UK’s intelligence and security agencies and international partners to support the most critical organisations in the UK as well as the wider public sector, industry, and of course the public.

When incidents do occur, the NCSC provides incident response guidance to minimise harm, and help with recovery, as well as learn lessons for the future. Where threats are developing, the NCSC provides advice and guidelines as to how to mitigate many of those anticipated risks.

#3 The NCSC’s location and approach

The philosophy for how the NCSC operates when it was set up was given by the then minister in the UK Government responsible for the Cabinet Office, Ben Gummer. In his opening address he said: “London leads the world in so many ways already, it is only right that we establish the country’s first Cyber Security Centre in the heart of the capital as Britain continues to lead in tackling this global issue. Whilst retaining access to the world leading capabilities, partnerships and people of the intelligence community, this new centre will have an ‘open-door’ policy which will make it easier for businesses of all sizes to get the best support available for cyber issue.” The NCSC is based in Victoria in London.

#4 What is the NCSC concentrating on now?

Much has developed since 2016, and the UK Government has launched its 2022- 2030 Cyber Security Strategy “Building a cyber resilient public sector”, where the focus is firmly on the Public sector. According to The Honourable Steve Barclay MP, the Chancellor of the Duchy of Lancaster and Minister for the Cabinet Office, “Government organisations are routinely and relentlessly targeted: of the 777 incidents managed by the National Cyber Security Centre between September 2020 and August 2021, around 40% were aimed at the public sector. This upward trend shows no signs of abating.”

The work of the NCSC is big business. £37.8 million of funding is being invested to tackle the cybersecurity challenges facing local councils to protect vital services and data, alongside targeted investment in the most critical government departments, with £2.6 billion being invested in cyber and legacy IT. The cry for how this will be done, is by building greater cyber resilience across all government organisations and working together to ‘defend as one’ – exerting a defensive force greater than the sum of our parts.

In addition to the roles it has been filling since its launch, the NCSC’s part in this is producing and rolling out Active Cyber Defence products and provided trusted, specialist services, such as the Cyber Gap Analysis assessments and reports, as well as access to expert cyber consultancy.

#5 Where do I find out more?

The best thing about the NCSC is all of its advice is readily accessible, targeted for different industries, and is free on the NCSC website. There is also an online incident reporting page which is monitored 24/7, and advice is usually provided very quickly. The page also helps users understand what else they may need to do to meet data protection regulations, such as GDPR. Finally and one of the most useful pages for all security professionals is the one that contains the weekly threat reports.


About the Author: Philip Ingram MBE is a former colonel in British military intelligence and is now a journalist and international commentator on all matters security and cyber.

Editor’s Note: The opinions expressed in this guest author article are solely those of the contributor, and do not necessarily reflect those of Tripwire, Inc.

The post ” 5 Things to know about the UK’s National Cyber Security Centre (NCSC)” appeared first on TripWire

Source:TripWire – Tripwire Guest Authors

Tags: Compliance, Critical Severity, Finance, Goverment, High Severity, Medium Severity, TripWire

Continue Reading

Previous Sysrv-K Botnet Targets Windows, Linux
Next Russian Conti Ransomware Gang Threatens to Overthrow New Costa Rican Government

More Stories

  • Data Breach

[Webinar] The Smarter SOC Blueprint: Learn What to Build, Buy, and Automate

4 hours ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Cyber Attacks
  • Data Breach
  • Vulnerabilities

Hackers Exploit Metro4Shell RCE Flaw in React Native CLI npm Package

4 hours ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Data Breach

When Cloud Outages Ripple Across the Internet

7 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

APT28 Uses Microsoft Office CVE-2026-21509 in Espionage-Focused Malware Attacks

9 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach

Mozilla Adds One-Click Option to Disable Generative AI Features in Firefox

12 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Notepad++ Hosting Breach Attributed to China-Linked Lotus Blossom Hacking Group

13 hours ago [email protected] (The Hacker News)

Recent Posts

  • [Webinar] The Smarter SOC Blueprint: Learn What to Build, Buy, and Automate
  • Hackers Exploit Metro4Shell RCE Flaw in React Native CLI npm Package
  • When Cloud Outages Ripple Across the Internet
  • APT28 Uses Microsoft Office CVE-2026-21509 in Espionage-Focused Malware Attacks
  • Mozilla Adds One-Click Option to Disable Generative AI Features in Firefox

Tags

Android APT Bug CERT Cloud Compliance Coronavirus COVID-19 Critical Severity Encryption Exploit Facebook Finance Google Google Chrome Goverment Hacker Hacker News High Severity Instagram iPhone Java Linux Low Severity Malware Medium Severity Microsoft Moderate Severity Mozzila Firefox Oracle Patch Tuesday Phishing Privacy QuickHeal Ransomware RAT Sim The Hacker News Threatpost TikTok TripWire VMWARE Vulnerability Whatsapp Zoom
Copyright © 2020 All rights reserved | NGTEdu.com
This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Read More here.Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT