Cyber security guidance for business
Guidance to help businesses and organisations improve online security and protect against cyber threats.
All organisations should take urgent action to protect themselves online
You can take some simple steps to protect your business against online security threats. Having good cyber security measures in place will help protect your cashflow, your customer data and your reputation.
A full range of guidance and support can be found on the . Some of the key pieces of advice are outlined below.
Donāt delay - take action to protect your business now.
Get the basics right
offers simple advice to help small businesses and citizens stay safe online.
offers sole traders & small businesses clear, bite-sized actions to protect your businessās money and reputation from cyber criminals.
is a new tool to quickly check and fix for vulnerabilities in your IT.
This newly updated online learning module helps you and your staff understand why cyber security is important and shows how to take practical steps to protect against fraud and cyber crime. Itās totally free, easy-to-use and takes less than 30 minutes to complete. .
helps small to medium sized organisations prepare their response to, and plan their recovery from, a cyber incident.
Prepare your organisation and staff for secure working from home and remote working.
Get a Cyber Essentials certificate
protects your business against the most common online threats. A Cyber Essentials certificate demonstrates to customers your business takes this issue seriously and also enables you to apply for government contracts. Organisations with a Cyber Essentials certificate are 92% less likely to make a claim on their cyber insurance.
can provide your business with government-approved cyber security advice and help you work towards a Cyber Essentials certificate. Small and medium sized businesses can currently get a free 30-minute cyber security session with a Cyber Advisor.
Get free online training for you and your staff
Cyber security training for businesses This page details a range of free e-learning courses to help businesses and staff protect themselves online.
is a free package from the National Cyber Security Centre to help boards and directors manage their digital risks.
This course developed with the Open University and FutureLearn offers a comprehensive introduction to cyber security and how to protect your digital life online. Anyone with an interest can take part. Study is around two hours per week over eight weeks.
Report cyber crime and online fraud
is the UKās new place to report fraud and cyber crime to the police. Visit the Report Fraud website to make a report, find out how to protect yourself and get help & support.
to the National Cyber Security Centre using this online reporting tool.
Where to report a cyber incident: if youāre not sure where to report a cyber incident, use this tool to find out.
Ask for help
- If you are a business, charity or organisation under a cyber attack, call 0300 123 2040 immediately.
are based around the country in nine regions to provide free and affordable, high-quality cyber resilience help and services to smaller organisations in their locality.
This directory lists UK cyber security companies by name, by services or by products so you can find the help you need.
can provide your business with government-approved cyber security advice and help you work towards a Cyber Essentials certificate. You can also .
helps larger organisations get the right cyber security consultancy services to protect their information and do business online safely.
Advice for larger businesses
The Cyber Governance Code of Practice shows boards and directors how to manage digital risks and protect their business from cyber attacks.
is a free package from the National Cyber Security Centre to help boards govern cyber risks with confidence.
is a new set of resources designed to encourage essential cyber security discussions between the Board and their technical experts. Board members donāt need to be technical experts, but they need to know enough about cyber security to be able to have a fluent conversation with their experts, and understand the right questions to ask.
shows larger businesses and organisations how to put a comprehensive cyber security risk management plan in place. This guidance is recommended by Government for all larger organisations operating online.
. Ransomware is the key current cyber threat facing facing businesses and organisations. Make sure youāre protected by using the .
Protect against ransomware in your supply chain. This guidance helps organisations build resilience into their supply chains, reducing the likelihood and impact of ransomware incidents.
provides cyber security guidance for organisations responsible for vitally important services and activities.
- sign up to free alerts from the NCSC to warn you if malicious cyber activity is targeting your organisationās IP address.
Get specialised cyber security guidance
: this guide from the NCSC sets out what organisations should think about when considering buying cyber insurance.
Software Security Code of Practice sets out the cyber security standards which software developers and vendors should follow.
AI Cyber Security Code of Practice sets out the measures AI developers should use to address the cyber security risks to artificial intelligence (AI) systems.
The offers a wide range of useful guides on all areas of cyber security including password guidance, Bring Your Own Device (BYOD) and network encryption, as well as advice on how to deal with issues such as phishing, social engineering, patch management, denial of service (DoS) attacks and cloud computing security.
Updates to this page
-
Added links to the new Report Fraud service.
-
Added link to the cyber insurance guide. Added details of the free 30 minutes with a Cyber Advisor. Updated the Cyber Essentials description.
-
added link to secure working from home guidance
-
Added link to new ransomware supply chain guidance. Added link to new, free 30 minute Cyber Advisor consultation. Added link to cyber reporting tool.
-
Added link to the new Cyber Action Toolkit for small businesses.
-
Added link to "24/7 live cyber reporting for businesses" and the NCSC Early Warning System.
-
Added links to the new Software Security Code of Practice and AI Cyber Security Code of Practice.
-
Added links to Stop! Think Fraud, the Cyber Advisor scheme, Cyber Resilience Centres, the new Cyber Governance Code of Practice and the new cyber governance training package for boards and directors.
-
added the new 'check your cyber security' tool
-
Updated links to various pieces of guidance; added guidance on ransomware; removed out of date guidance.
-
Added link to the updated NCSC guidance on ransomware. Updated other links.
-
Updated to include new guidance and training from the National Cyber Security Centre.
-
Added link to new NCSC Small Business Guide
-
First published.