Skip to main content
Guidance

How to prepare for and plan your organisation's response to severe cyber threat: a guide for CNI

Act now to be ready to withstand and recover from severe cyber attacks.

Page 14 of 26

3.1 Undertake immediate tactical measures to reduce threat exposure

Activities undertaken to enhance your situational awareness, such as external attack surface management, will have helped identify vulnerabilities within your internet-facing assets. Ensure you disable any unnecessary services and enforce strict access controls.

Refer to the following NCSC guidance to identify and tackle areas of weakness in your organisation’s cyber defences:

NCSC guidanceHow it helps
NCSC vulnerability managementHelps you identify and remediate weaknesses quickly, reducing exposure to known exploits.
Device security guidanceEnsures your enterprise networks and devices are well configured to reduce the opportunities for an attacker to gain a foothold in your organisation.
Multi-factor authentication for your corporate online servicesAdds an extra layer of protection against credential compromise and account takeover.
Secure system administrationProtects administrative accounts and processes, reducing the risk of privileged access abuse.
Principles for secure privileged access workstations (PAWs)Provides a hardened environment for administrative tasks, preventing compromise of critical systems.
Demystifying zero trustHelps organisations understand where different security approaches can help in designing systems, such as zero trust being an approach, not a product that can 'fix' security.
Secure connectivity principles for Operational TechnologyFor OT systems. Principle 5 of the Secure connectivity principles for Operational Technology – Harden your OT boundary explains why and how to harden the boundary by using segmentation, secure connectivity patterns and layered security controls to reduce exposure and maintain resilience against evolving cyber threats. 

Published

Reviewed

Version

1.0