Skip to content
NGTEdu Logo

NGTEdu

A PRODUCT OF NGTECH.CO.IN

NGTEdu Logo

NGTEdu

  • Home
  • Cyber Attacks
  • Malware
  • Vulnerabilities
  • Data Breach
  • Home
  • Data Breach
  • 5 Things to know about the UK’s National Cyber Security Centre (NCSC)
  • Critical Vulnerability
  • Data Breach

5 Things to know about the UK’s National Cyber Security Centre (NCSC)

4 years ago Tripwire Guest Authors
5 Things to know about the UK’s National Cyber Security Centre (NCSC)

#1 The history of the National Cyber Security Centre

The UK’s first cybersecurity strategy was launched in 2009 and outlined that whatever the shape of the cybersecurity mission, it made no sense to silo it away from other aspects of national security. To be effective, it had to be able to take advantage of high-grade intelligence and other security capabilities. The strategy outlined how the country needed to invest more in getting the public and private partnership really working. It confirmed the need to set even clearer lines of accountability when cyber incidents happened.

In 2015, the UK government took that learning and turned it into a five-year National Cyber Security Strategy. It brought new thinking to the management of cyber incidents, led to the creation of the Active Cyber Defence programme, and set the conditions for a different partnership with the private sector. Of course, much of this was given a new home in the National Cyber Security Centre (NCSC), which itself, was to be part of the Government Communications Headquarters (GCHQ).

In October 2016, the UK’s Communications Electronic Security Group (CESG), which was the government’s National Technical Authority for Information Assurance, and part of GCHQ, was merged with elements of the Centre for Protection of National Infrastructure (CPNI) into one single entity called the National Cyber Security Centre (NCSC).

#2 What does the NCSC do?

The NCSC is in essence the public front end for GCHQ and provides a single point of contact for small and medium enterprises (SMEs), larger organisations, government agencies, the general public and government departments. It works collaboratively with other law enforcement, defence, the UK’s intelligence and security agencies and international partners to support the most critical organisations in the UK as well as the wider public sector, industry, and of course the public.

When incidents do occur, the NCSC provides incident response guidance to minimise harm, and help with recovery, as well as learn lessons for the future. Where threats are developing, the NCSC provides advice and guidelines as to how to mitigate many of those anticipated risks.

#3 The NCSC’s location and approach

The philosophy for how the NCSC operates when it was set up was given by the then minister in the UK Government responsible for the Cabinet Office, Ben Gummer. In his opening address he said: “London leads the world in so many ways already, it is only right that we establish the country’s first Cyber Security Centre in the heart of the capital as Britain continues to lead in tackling this global issue. Whilst retaining access to the world leading capabilities, partnerships and people of the intelligence community, this new centre will have an ‘open-door’ policy which will make it easier for businesses of all sizes to get the best support available for cyber issue.” The NCSC is based in Victoria in London.

#4 What is the NCSC concentrating on now?

Much has developed since 2016, and the UK Government has launched its 2022- 2030 Cyber Security Strategy “Building a cyber resilient public sector”, where the focus is firmly on the Public sector. According to The Honourable Steve Barclay MP, the Chancellor of the Duchy of Lancaster and Minister for the Cabinet Office, “Government organisations are routinely and relentlessly targeted: of the 777 incidents managed by the National Cyber Security Centre between September 2020 and August 2021, around 40% were aimed at the public sector. This upward trend shows no signs of abating.”

The work of the NCSC is big business. £37.8 million of funding is being invested to tackle the cybersecurity challenges facing local councils to protect vital services and data, alongside targeted investment in the most critical government departments, with £2.6 billion being invested in cyber and legacy IT. The cry for how this will be done, is by building greater cyber resilience across all government organisations and working together to ‘defend as one’ – exerting a defensive force greater than the sum of our parts.

In addition to the roles it has been filling since its launch, the NCSC’s part in this is producing and rolling out Active Cyber Defence products and provided trusted, specialist services, such as the Cyber Gap Analysis assessments and reports, as well as access to expert cyber consultancy.

#5 Where do I find out more?

The best thing about the NCSC is all of its advice is readily accessible, targeted for different industries, and is free on the NCSC website. There is also an online incident reporting page which is monitored 24/7, and advice is usually provided very quickly. The page also helps users understand what else they may need to do to meet data protection regulations, such as GDPR. Finally and one of the most useful pages for all security professionals is the one that contains the weekly threat reports.


About the Author: Philip Ingram MBE is a former colonel in British military intelligence and is now a journalist and international commentator on all matters security and cyber.

Editor’s Note: The opinions expressed in this guest author article are solely those of the contributor, and do not necessarily reflect those of Tripwire, Inc.

The post ” 5 Things to know about the UK’s National Cyber Security Centre (NCSC)” appeared first on TripWire

Source:TripWire – Tripwire Guest Authors

Tags: Compliance, Critical Severity, Finance, Goverment, High Severity, Medium Severity, TripWire

Continue Reading

Previous Sysrv-K Botnet Targets Windows, Linux
Next Russian Conti Ransomware Gang Threatens to Overthrow New Costa Rican Government

More Stories

  • Cyber Attacks
  • Data Breach

$13.74M Hack Shuts Down Sanctioned Grinex Exchange After Intelligence Claims

2 hours ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Vulnerabilities

Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code Execution

2 days ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware

UAC-0247 Targets Ukrainian Clinics and Government in Data-Theft Malware Campaign

2 days ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Cyber Attacks
  • Vulnerabilities

Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover

3 days ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Vulnerabilities

April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and More

3 days ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Cyber Attacks
  • Vulnerabilities

Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New Vulnerabilities

3 days ago [email protected] (The Hacker News)

Recent Posts

  • $13.74M Hack Shuts Down Sanctioned Grinex Exchange After Intelligence Claims
  • Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS Botnet
  • Three Microsoft Defender Zero-Days Actively Exploited; Two Still Unpatched
  • Google Blocks 8.3B Policy-Violating Ads in 2025, Launches Android 17 Privacy Overhaul
  • NIST Limits CVE Enrichment After 263% Surge in Vulnerability Submissions

Tags

Android APT Bug CERT Cloud Compliance Coronavirus COVID-19 Critical Severity Encryption Exploit Facebook Finance Google Google Chrome Goverment Hacker Hacker News High Severity Instagram iPhone Java Linux Low Severity Malware Medium Severity Microsoft Moderate Severity Mozzila Firefox Oracle Patch Tuesday Phishing Privacy QuickHeal Ransomware RAT Sim The Hacker News Threatpost TikTok TripWire VMWARE Vulnerability Whatsapp Zoom
Copyright © 2020 All rights reserved | NGTEdu.com
This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Read More here.Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT