Skip to main content
Annual Review

NCSC Annual Review 2025

Looking back at the National Cyber Security Centre's ninth year and its key developments and highlights, between 1 September 2024 and 31 August 2025.

Page 30 of 32

NCSC Engineering: practicing what we preach

The NCSC doesn’t just advise others on how to build secure systems. We design, develop and support our own systems too.

In line with the NCSC’s own guidance, we continuously evolve our business-critical and research platforms to ensure they remain secure, resilient, and fit for purpose. We apply the same principles we advocate to others, leading by example and embedding security into every stage of our engineering life cycle.

For example, for our highly sensitive Crypt-Key mission, we adopt the NCSC’s Design guidelines for high assurance products.

For our ‘internet-facing’ research and business projects, we put theory into practice using the principles found across the 10 Steps to Cyber Security and use the Cyber Assessment Framework.


Published

Reviewed

Version

1.0