Introducing the Cyber Security Toolkit for Boards

Introducing the Cyber Security
Toolkit for Boards:
Helping board members get to
grips with cyber security
Helping to make the UK the safest place to live and work online
The NCSC:
Understands
 cyber security and distils this
knowledge into practical guidance that we
make available to all.
Responds
 to cyber security incidents to reduce
the harm they cause to organisations and the
wider UK.
Uses industry and academic expertise
to 
nurture
 the UK's cyber security capability.
Reduces
 risks to the UK by securing public and
private sector networks.
 
 
 
Cyber security as a board level responsibility
 
Nearly all organisations depend on digital technology to 
function
 
The potential 
cost
 of remedying a cyber incident can be significant
 
The risk of 
reputational damage
 
 
Cyber security is therefore 
essential
 and needs to be understood as an 
enabler.
 
The Cyber Security Toolkit for Boards: the basics
 
Guidance
 
to support board members 
get up to speed 
on a topic they may or may not be familiar with
 
Available online.
P
df can be downloaded for those who prefer a hard copy
 
Designed primarily for 
corporate
 
boards but relevant to any board in any sector
 
(e.g. school governors, charity trustees).
How the toolkit can help
Supporting board members in
asking the right questions
 to gain
assurance on cyber security
Enabling board members to ‘get
just a little bit technical’
Encouraging crucial conversations
to take place between the board
and its key staff
What the toolkit 
isn’t
A checklist
A ‘how to’ guide
 
A manual telling you how to
achieve a one-off task
Toolkit structure
Introduction to cyber security
 
Nine core modules
 
Cyber Security Regulation in the UK
Toolkit modules
The questions
Each module concludes with questions
 
Designed to 
help evaluate your organisations performance
and 
help prompt discussion at board level
 
The questions don’t always have easy answers
Sample questions on ‘planning response to incidents’
Does your organisation have an incident response plan in place and do you regularly
exercise it?
Does every board member understand what's required during an incident?
Are cyber incidents considered in the design of your Disaster Recovery (DR) and Business Continuity Plans
(BCP)?
As an organisation, do we know where we can go for help in an incident?
How is the toolkit being used so far?
 
As the basis for a ‘deep dive’ into two modules at a board away day
 
Providing a starting point to enable board members to ask key staff reporting to the board questions on
cyber security
Particular modules
 l
ooked at in detail at a sector-specific
 
governance
 session:
Representatives from different organisations sharing their experiences and approach in a closed environment
Internal auditors using some of the questions as part of their audits
The Cyber Security Toolkit for
Boards:
Helping board members get to
grips with cyber security.
https://www.ncsc.gov.uk/board-toolkit
Slide Note
Embed
Share

Introducing the Cyber Security Toolkit for Boards, designed to help board members understand and navigate the world of cyber security. This toolkit provides practical guidance and resources to support board-level decision making. Available online for easy access.

  • cyber security toolkit
  • board members
  • practical guidance
  • decision making
  • online resource

Uploaded on Dec 21, 2023 | 5 Views


Download Presentation

Please find below an Image/Link to download the presentation.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. Download presentation by click this link. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.

E N D

Presentation Transcript


  1. Introducing the Cyber Security Toolkit for Boards: Helping board members get to grips with cyber security https://www.ncsc.gov.uk/board-toolkit

  2. Helping to make the UK the safest place to live and work online The NCSC: The NCSC: Understands Understands cyber security and distils this knowledge into practical guidance that we make available to all. Responds Responds to cyber security incidents to reduce the harm they cause to organisations and the wider UK. Uses industry and academic expertise to nurture nurture the UK's cyber security capability. Reduces Reduces risks to the UK by securing public and private sector networks.

  3. Cyber security as a board level responsibility Nearly all organisations depend on digital technology to function function The potential cost cost of remedying a cyber incident can be significant The risk of reputational damage reputational damage Cyber security is therefore essential essential and needs to be understood as an enabler. enabler.

  4. The Cyber Security Toolkit for Boards: the basics Guidance to support board members get up to speed get up to speed on a topic they may or may not be familiar with Designed primarily for corporateboards but relevant to any board in any sector (e.g. school governors, charity trustees). Available online. Pdf can be downloaded for those who prefer a hard copy

  5. How the toolkit can help Enabling board members to get just a little bit technical Supporting board members in asking the right questions asking the right questions to gain assurance on cyber security Encouraging crucial conversations to take place between the board and its key staff

  6. What the toolkit isnt A how to guide A checklist A manual telling you how to achieve a one-off task

  7. Toolkit structure Introduction to cyber security Nine core modules Cyber Security Regulation in the UK

  8. Toolkit modules

  9. The questions Each module concludes with questions Designed to help evaluate your organisations performance and help prompt discussion at board level The questions don t always have easy answers

  10. Sample questions on planning response to incidents Does your organisation have an incident response plan in place and do you regularly exercise it? Does every board member understand what's required during an incident? Are cyber incidents considered in the design of your Disaster Recovery (DR) and Business Continuity Plans (BCP)? As an organisation, do we know where we can go for help in an incident?

  11. How is the toolkit being used so far? As the basis for a deep dive into two modules at a board away day Providing a starting point to enable board members to ask key staff reporting to the board questions on cyber security Particular modules l looked at in detail at a sector-specific governance session: Representatives from different organisations sharing their experiences and approach in a closed environment session: Internal auditors using some of the questions as part of their audits

  12. The Cyber Security Toolkit for Boards: Helping board members get to grips with cyber security. https://www.ncsc.gov.uk/board-toolkit

More Related Content

giItT1WQy@!-/#giItT1WQy@!-/#giItT1WQy@!-/#giItT1WQy@!-/#giItT1WQy@!-/#giItT1WQy@!-/#giItT1WQy@!-/#