Skip to main content
Guidance

Cyber Security Toolkit for Boards

Resources to help Boards implement the actions outlined in the Cyber Governance Code of Practice.

Page 10 of 27

Embedding cyber security into your organisation

Cyber security is a team sport: empower everyone



WaterAid’s Cyber security and Vendor Manager, Mark, explained how the NCSC’s board toolkit has been useful for their organisation and stated, ‘Our board of directors is made up of CEO’s from other organisations and the board toolkit has been key in driving the cyber strategy and engaging other parts of the organisation. Following the board toolkit proved to be a real enabler for us in receiving support from key stakeholders and has really strengthened our thinking.’

Natasha, their senior internal auditor, added, ‘Yes, as very much a non-IT person I found it an incredibly helpful framework for designing a high-level internal audit review of our cyber security arrangements. I used the toolkit’s questions for board members and management as the basis of the audit working paper. Going through these questions with a member of our board and colleagues from IT and other teams helped me develop a better understanding of where our cyber security is strong and where there might be risks which we had not previously considered. The audit delivered a number of recommendations which management is now actioning to make improvements.’


Published

Reviewed

Version

3.0