Close Menu
Edu Expertise Hub
    Facebook X (Twitter) Instagram
    Monday, July 7
    • About us
    • Contact
    • Submit Coupon
    Facebook X (Twitter) Instagram YouTube
    Edu Expertise Hub
    • Home
    • Udemy Coupons
    • Best Online Courses and Software Tools
      • Business & Investment
      • Computers & Internet
      • eBusiness and eMarketing
    • Reviews
    • Jobs
    • Latest News
    • Blog
    • Videos
    Edu Expertise Hub
    Home » Latest News » NAO: UK government cyber resilience weak in face of mounting threats
    Latest News

    NAO: UK government cyber resilience weak in face of mounting threats

    TeamBy TeamJanuary 29, 2025No Comments5 Mins Read1 Views
    Facebook Twitter Pinterest LinkedIn Telegram Tumblr Email
    Sir Alan Bates has ‘serious concerns’ over Post Office scandal compensation budget
    Share
    Facebook Twitter LinkedIn Pinterest Email


    The National Audit Office (NAO) has found the UK government’s cyber resilience to be significantly behind where it needs to be, in the face of mounting and more dangerous threats.

    In its Government cyber resilience report, the public spending watchdog warned that the cyber threat to the UK government is “severe and advancing quickly”. It found that 58 critical government IT systems, assessed in 2024, had significant gaps in cyber resilience, and the government does not know how vulnerable at least 228 “legacy” IT systems are to cyber attack.

    The report does not cover the cyber resilience of local government, the NHS, or the nation as a whole. Fieldwork for the report was conducted between May and October 2024, with NAO staff interviewing officials from the Cabinet Office about efforts to support government departments in the implementation of the Government Cyber Security Strategy: 2022-2030.

    The strategy included a target for key government organisations to be “significantly hardened to cyber attack by 2025”, but the government has not improved its cyber resilience fast enough to meet this aim, said the NAO.

    The NAO also interviewed officials from the National Cyber Security Centre (NCSC) and the Central Digital and Data Office (CDDO), along with cyber security civil servants from government departments and the British Library.

    The biggest risk to making the UK government resilient to cyber attack is a yawning skills gap, according to the report. It found one in three cyber security roles in government were vacant or filled by temporary – and more expensive – staff in 2023-24, while more than half of cyber roles in several departments were vacant, and 70% of specialist security architects were staff on temporary contracts.

    The NAO said departments reported that salaries and civil service recruitment processes are barriers to hiring and keeping people with cyber skills.

    Other concerns include a lack of coordination within government, which is jeopardising effective cyber defence. The NAO found that the respective roles of departments and central organisations, such as the NCSC, are “insufficiently understood”, and nor have departmental leaders “consistently recognised the relevance of cyber risk to their strategic goals”.

    The government must act now, urged the report’s authors.

    Gareth Davies, head of the NAO, said: “The risk of cyber attack is severe, and attacks on key public services are likely to happen regularly, yet government’s work to address this has been slow.

    “To avoid serious incidents, build resilience and protect the value for money of its operations, government must catch up with the acute cyber threat it faces.

    To avoid serious incidents, build resilience and protect the value for money of its operations, government must catch up with the acute cyber threat it faces
    Gareth Davies, National Audit Office

    “The government will continue to find it difficult to catch up until it successfully addresses the long-standing shortage of cyber skills, strengthens accountability for cyber risk, and better manages the risks posed by legacy IT.”

    Cyber resilience gaps

    The NAO evaluated whether government is keeping pace with the rapidly evolving cyber threat it faces from hostile actors. It found that it is not.

    It spotted that the government’s cyber assurance scheme, GovAssure, which had independently assessed 58 critical departmental IT systems by August 2024, found significant gaps in cyber resilience, with multiple fundamental system controls at low levels of maturity across departments. GovAssure assesses the critical systems of government organisations. It was set up in April 2023.

    According to the NAO report, government departments were using at least 228 legacy IT systems as of March 2024, and the government does not know how vulnerable these systems are to cyber attack.

    The report noted that in April 2024, the Cabinet Office Government Security Group (GSG) reported to ministers that some departments had significantly reduced their cyber security improvement programmes to fund other priorities. This was due to “cuts to programme funding, lack of access to cyber skills, challenges with delivery partners, and delays in departmental and cross-government approvals”.

    As examples of how damaging cyber attacks can be, the NAO cited the instance, in June 2024, of an attack on a supplier of pathology services to the NHS in south-east London, which led to two NHS foundation trusts postponing 10,152 acute outpatient appointments and 1,710 elective procedures. It also cited the British Library ransomware attack in October 2023, which has already cost £600,000 to rebuild its services. The library expects to spend many times more as it continues to recover.

    The report also gave other examples of attacks on the Ministry of Defence and Parliament. In May 2024, the MoD’s payroll contractor’s network was compromised by an attacker – a network that held armed forces staff members’ data. Further back in time, in 2021, a Chinese state-affiliated attacker was, said the report, highly likely responsible for a cyber campaign against the parliamentary email accounts of members across both Houses of Parliament.

    The report stated that in March 2024, departments did not have fully funded plans to remediate around half of government’s legacy IT assets – 53%, or 120 out of 228.

    The NAO recommends the government develops, shares and starts using a cross-government implementation plan for the Government Cyber Security Strategy within the next six months. It also suggests the whole of government needs to operate differently.

    Within the next year, the government should make and enact plans to fill cyber skills gaps in workforces, said the NAO.

    Of the technology trumpeted most by the current and previous government – artificial intelligence (AI) – the report said: “AI can improve government’s cyber security, but it can also help threat actors looking to interfere or undermine trust in our democratic system. The NCSC is collaborating with its partners to realise the benefits of AI and protect against the associated security risks.”

    This post is exclusively published on eduexpertisehub.com

    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Team

      Related Posts

      Fine-tuning to deliver business AI value

      July 7, 2025

      How Teachers Are Making Computer Science Click

      July 6, 2025

      The AI arms race begins at age 4

      July 6, 2025

      From the FBI to F&A: lessons learnt in safeguarding systems and data

      July 5, 2025

      Supreme Court Ruling Highlights Continued Power Struggle Over LGBTQ+ Books in Schools

      July 5, 2025

      10 (and counting…) Google goodies for your classroom

      July 4, 2025
      Courses and Software Tools

      Extreme Privacy: What It Takes to Disappear

      August 24, 202455 Views

      Modern C++ Programming Cookbook: Master Modern C++ with comprehensive solutions for C++23 and all previous standards

      September 18, 202427 Views

      Meebook E-Reader M7 | 6.8′ Eink Carta Screen | 300PPI Smart Light | Android 11 | Ouad Core Processor | Out Speaker | Support Google Play Store | 3GB+32GB Storage | Micro-SD Slot | Gray

      August 19, 202422 Views

      HR from the Outside In: Six Competencies for the Future of Human Resources

      May 20, 202517 Views

      Coders at Work: Reflections on the Craft of Programming

      April 19, 202516 Views
      Reviews

      Fine-tuning to deliver business AI value

      July 7, 2025

      Executive Diploma in Strategic Management | Udemy Coupons 2025

      July 7, 2025

      Systems Analyst 1-IT

      July 7, 2025

      How To Create & Sell Digital Products: Create profitable digital products for easy online sales (The Digital Mastery Series)

      July 7, 2025

      Sales Funnel Sabotage: Are These 10 Common Mistakes Holding Your Business Back? (The Internet Marketing Starter Pack Book 3)

      July 7, 2025
      Stay In Touch
      • Facebook
      • YouTube
      • TikTok
      • WhatsApp
      • Twitter
      • Instagram
      Latest News

      Fine-tuning to deliver business AI value

      July 7, 2025

      How Teachers Are Making Computer Science Click

      July 6, 2025

      The AI arms race begins at age 4

      July 6, 2025

      From the FBI to F&A: lessons learnt in safeguarding systems and data

      July 5, 2025

      Supreme Court Ruling Highlights Continued Power Struggle Over LGBTQ+ Books in Schools

      July 5, 2025
      Latest Videos

      What is Digital Marketing? Scope, Earnings & Who Can Start a Career in It Hammad’s Digital Hub

      July 5, 2025

      Just trend #gacha #memecreator #gachaclub #gcmeme #gachalife #trend #gachememe #edit #memes

      July 4, 2025

      Kenley Jansen notches his 1,000th career MLB strikeout | August 25, 2021 | Dodgers @ Padres

      July 3, 2025

      Top 5 Cyber Security Jobs in India || Cyber Security Career 2024

      July 2, 2025

      Navigate Your Marketing Career with Expert Mentorship | NIMS Academy Success Guide

      July 1, 2025
      Latest Jobs

      Systems Analyst 1-IT

      July 7, 2025

      Remote Customer Sales Representative

      July 6, 2025

      RN – Women & Infants

      July 6, 2025

      Delivery Specialist

      July 6, 2025

      Manager, Creative Daily Editorial

      July 6, 2025
      Legal
      • Home
      • Privacy Policy
      • Cookie Policy
      • Terms and Conditions
      • Disclaimer
      • Affiliate Disclosure
      • Amazon Affiliate Disclaimer
      Latest Udemy Coupons

      Mastering Maxon Cinema 4D 2024: Complete Tutorial Series | Udemy Coupons 2025

      August 22, 202435 Views

      Advanced Program in Human Resources Management | Udemy Coupons 2025

      April 5, 202531 Views

      Diploma in Aviation, Airlines, Air Transportation & Airports | Udemy Coupons 2025

      March 21, 202530 Views

      Python Development & Data Science: Variables and Data Types | Udemy Coupons 2025

      May 24, 202521 Views

      Time Management and Timeboxing in Business, Projects, Agile | Udemy Coupons 2025

      April 2, 202521 Views
      Blog

      3 Ways To Network Over Summer Vacation And Grow Your Career

      July 3, 2025

      Why Community Is Your Most Valuable Career Asset In 2025

      June 28, 2025

      What Employers Are Really Looking For In Job Interviews

      June 27, 2025

      The Best Way to End a Cover Letter (With 4 Winning Examples)

      June 26, 2025

      5 Job Interview Secrets To Beat The Competition

      June 25, 2025
      Facebook X (Twitter) Instagram Pinterest YouTube Dribbble
      © 2025 All rights reserved!

      Type above and press Enter to search. Press Esc to cancel.

      We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
      .
      SettingsAccept
      Privacy & Cookies Policy

      Privacy Overview

      This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
      Necessary
      Always Enabled
      Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
      Non-necessary
      Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
      SAVE & ACCEPT