What is the NCSC, UKCSC & CIISec?

What is the NCSC, UKCSC & CIISec?

During Cyber Security Awareness month, we will be exploring some cyber related terms you may have heard of but may not fully understand. We hope to raise awareness and ultimately work to improve UK cyber security resilience. In this article, we will explore professional bodies and organisations working to keep the UK safe.

NCSC

Four letters that you may well have seen mentioned, and often cited in news articles when major organisations ‘get hacked,’ but what is the NCSC, and what does it have to do with Arcanum? The National Cyber Security Centre was established in 2016, and acts as the UK’s authority on cyber security, providing a unified source of advice, guidance, and support on cyber security matters.

Mission and Objectives

The NCSC’s primary mission is to make the UK the safest place to live and work online. The NCSC supports critical organisations in the UK, the wider public sector, industry, SMEs, as well as the general public. When incidents occur, the NCSC provide effective incident response to minimise harm to the UK, help with recovery, and learn lessons for the future.

The NCSC:

  • Understands cyber security, and distils this knowledge into practical guidance that is made available to all.
  • Responds to cyber security incidents to reduce the harm they cause to organisations and the wider UK.
  • Uses industry and academic expertise to nurture the UK’s cyber security capability.
  • Reduces risks to the UK by securing public and private sector networks.

The NCSC Assured Cyber Security Consultancy scheme sets the standards for the delivery of cyber security consultancy services. Companies who are assured by the NCSC have proven that the services they deliver meet the NCSC’s standard for high quality, tailored cyber security advice. Arcanum proud to be NCSC Assured for Risk Management and Audit & Review.

Arcanum is also assured by the NCSC to deliver CHECK penetration testing. CHECK penetration testing is conducted by staff who hold NCSC approved qualifications and have suitable experience. The tests are conducted using NCSC recognised methodology and reports are produced to a recognised standard.

Our CHECK Team Leader is one of six in Arcanum who hold the professional registration title of Chartered Cyber Security Professional by the UKCSC, but what is the UKCSC?

UKCSC

The UK Cyber Security Council is the recognised self-regulatory body for the cyber security profession in the UK. Its primary mission is to promote excellence, provide guidance on professional development, and ensure the UK maintains a skilled and resilient cyber security workforce to combat emerging threats effectively.

One of our consultants, Amberley, was the first in the UK to receive the professional title of Associate level practitioner. She is one of 13 in Arcanum who hold professional registration titles, spanning Associate, Principal and Chartered, with others in the company working to achieve theirs. Arcanum currently has more UKCSC registered professionals than any other organisation. Kat, one of our senior penetration testers is on the UKCSC board of trustees, bringing new, innovative ideas, providing alternative insights, and a moderating voice where needed, to ensure that all ideas are heard and discussed equally and openly.

The professionalisation of the cyber security industry is something Lawrie, our co-founder, is particularly passionate about. Lawrie was selected to be on the board of directors for CIISec, but what is it?

CIISec

The Chartered Institute of Information Security was the first cyber and information security institution to be granted Royal Charter status, and is dedicated to continuously raising standards in the profession. It provides a universally accepted focal point for the cyber and information security profession. It is an independent not-for-profit body governed by its 35,000 plus members from across every career stage. The CIISec Board as a whole provide governance, oversight and direction. In addition to representation on the board, Arcanum is a corporate member of the CIISec and our cyber security consultants hold membership levels spanning Associate to Fellow, as held by our co-founders Jane & Lawrie.

The CIISec skills, knowledge, and roles frameworks provide a thorough means to assess and develop those working the cyber security industry. The self-assessment tool provides organisations a straightforward way to incorporate the frameworks as part of their employee professional development plans.

Summary

The NCSC, UKCSC, and CIISec each play pivotal roles in shaping the cyber security landscape in the UK. The NCSC acts as the national authority on cyber security, offering advice, incident response, and research support. The UKCSC serves as the regulatory body for the cyber security profession, focusing on standards, ethics, and professional development. Meanwhile, CIISec provides a platform for professional recognition, networking, and continuous learning within the information security sector. Together, these organisations contribute to a safer, more secure digital environment, ensuring that the UK is well-equipped to face current and future cyber threats.

Arcanum is proud to be an active part of all three organisations, continually working to improve cyber security in the UK. Four of our UKCSC Chartered consultants are Assessors for the Chartership scheme and a fifth sits on the Technical Advisory Panel. , regularly conducting interviews for the UKCSC and providing mentorship to our own consultants. With our Chartered, Head Consultants providing oversight, all of our client work meets the NCSC criteria for delivery and the aligned with the quality, professionalism and adherence to codes of conduct required by the UKCSC and CIISec.

Get in touch to find out how we can use our expertise to help secure your business.

contact@arcanum-cyber.com