All News

"A graphic announcing 'October is Cyber Security Awareness Month,' with text explaining the importance of creating a cyber emergency contact list in preparation for a cyber attack. It also includes a 'Cyber tip' to assess passwords, turn on MFA, and review critical accounts, especially email. A shield icon with a checkmark and a lightbulb icon are visible."

October 18. Regular Updates: Patching Against Threats

In the fast-evolving world of cybersecurity, software, operating systems, and applications are constantly being refined, improved, and, crucially, secured. Regular updates, also known as patching, are not merely about gaining new features or improving performance; they are an absolutely critical cybersecurity practice. Neglecting updates is like leaving your digital doors wide open after a burglar has already identified the weak spots.

Read more …

"A graphic announcing 'October is Cyber Security Awareness Month,' with text explaining the importance of creating a cyber emergency contact list in preparation for a cyber attack. It also includes a 'Cyber tip' to assess passwords, turn on MFA, and review critical accounts, especially email. A shield icon with a checkmark and a lightbulb icon are visible."

October 17. Access Control: Managing User Privileges

In cybersecurity, access control for users is about ensuring that only authorised individuals can access specific systems, applications, and data, and only to the extent necessary for their role. This principle is often referred to as the "principle of least privilege"  – granting users the bare minimum permissions required to perform their job functions, and nothing more.

Read more …

"A graphic announcing 'October is Cyber Security Awareness Month,' with text explaining the importance of creating a cyber emergency contact list in preparation for a cyber attack. It also includes a 'Cyber tip' to assess passwords, turn on MFA, and review critical accounts, especially email. A shield icon with a checkmark and a lightbulb icon are visible."

October 11. Policies and Procedures: Cyber Blueprint

Cyber security has many levels; policies and procedures are about establishing clear rules, guidelines and processes that govern how information is handled within an organisation.  Well-defined policies and procedures serve as the blueprint for your cyber security program, ensuring consistent practices, reducing human error and providing a framework for accountability.

Read more …

"A graphic announcing 'October is Cyber Security Awareness Month,' with text explaining the importance of creating a cyber emergency contact list in preparation for a cyber attack. It also includes a 'Cyber tip' to assess passwords, turn on MFA, and review critical accounts, especially email. A shield icon with a checkmark and a lightbulb icon are visible."

October 10. Understanding Your Cyber Posture

Before you can effectively improve your cyber security, you must first understand where you are - Understand Your Cyber Posture. It involves a thorough evaluation of your existing security measures, identifying vulnerabilities, and understanding the risks you face.  You can't protect what you don't know you have or what weaknesses you might have hidden

Read more …

"A graphic announcing 'October is Cyber Security Awareness Month,' with text explaining the importance of creating a cyber emergency contact list in preparation for a cyber attack. It also includes a 'Cyber tip' to assess passwords, turn on MFA, and review critical accounts, especially email. A shield icon with a checkmark and a lightbulb icon are visible."

October 8. How Can Your Organisation Prevent Ransomware Attacks?

Preventing ransomware attacks requires a multi-layered approach.  Regular backups are crucial - ensure they are isolated and tested. Employee training is paramount; staff must be able to recognise a phishing attempt.  All software and systems should be updated to patch vulnerabilities.  Strong access controls and MFA for all accounts will prevent up to 89% of data beaches.

Read more …

  1. October 7: Under Attack: The Reality of Ransomware
  2. October 6: Cyber Action Plan and A Roadmap to Resilience
  3. October 5: Cyber Responsibilities - We're All in This Together
  4. October 4: When a Cyber Attack Hits
  5. October 3: Data Security, the Core of Protection
  6. October 2: Privacy Protection & Safeguarding Personal Data
  7. October 1: Welcome to Cyber Security Awareness Month!
  8. Nursery Cyber attack
  9. The NCSC Cyber Assessment Framework
  10. Fraud awareness from the DfE
  11. The Classroom's Dark Side: Cyber crime from the Classroom
  12. KCSIE 2025: Data Protection, AI, and Cyber Security
  13. New e-learning for 2025
  14. The Latest Cyber Threat: The "Murky Panda"
  15. Building a Secure School: Using the ICO Accountability Framework to Meet DfE Digital Standards
  16. Digital Safeguarding: DfE announces statutory DfE Digital Standards
  17. Compliance Reporting from the Knowledge Bank
  18. Social engineering + impersonation = Fraud ≡ cyber deception
  19. Data Breaches 2025 Report Highlights
  20. School cyber attack: Framlingham College, Suffolk
  21. Getting caught in the Scattered Spider web
  22. A Wake-Up Call for Cyber Vigilance - Danger in the Threat Landscape for Everyone
  23. World Password Day
  24. Social Media and Marketing Guidelines and Training
  25. New Governor Resources
  26. Apple removes its highest level data security tool from UK customers
  27. Safer Internet Day, Cyber Security & Data Protection
  28. The Cyber Resilience Championship
  29. The Multiple Dimensions of Supplier Due Diligence
  30. Blacon High School Cyber Attack
  31. The role of Passkeys in Cyber Resilience and Cyber Security
  32. What the proposed Government legislative proposal around cyber crime means
  33. Effectively communicating during a cyber incident
  34. Safeguarding Identity in Microsoft 365: Protecting the UK Education Sector Against Cyber Threats
  35. Cyber Security Best Practice Area
  36. DfE Digital Standards for Schools and Colleges Tracker
  37. New Policies, Documents, Letters and Posters page
  38. Schools and Trusts Best Practice Area
  39. The DPE Retention Schedule
  40. Making the Rounds Update (now includes reporting)
  41. How does the recent global IT outage affect me?
  42. King's speech introduces new bills in relation to cyber security, smart data and digital information
  43. Out of date technology
  44. What's a Cyber Incident and what should we do?
  45. Cyber attack on a school during half term
  46. Free short cyber training for staff
  47. The rise of cyber attacks in schools are causing pupils to miss classes
  48. ICO: Learning from the mistakes of others report
  49. Children's mental health data leaked after a cyber attack
  50. Cyber attack on a Trust; the aftermath
  51. Social Media Best Practice Area
  52. Lettings Best Practice Area
  53. MFA Bombing - What is it?
  54. Product Focus on Checklists : Initial Trust Plan
  55. Product Focus on Checklists : Information and Cyber Security
  56. Product Focus on Checklists : End of Term Checklist
  57. Product Focus on Checklists : Social Media
  58. Cyber Incident Review: The Benefits
  59. Product Focus on Checklists : Lettings
  60. Product Focus on Checklists : Record of Processing
  61. Why Data Should Stay Put: Benefits of Keeping Data in Its Original System
  62. Product Focus on Checklists : Data Retention and Destruction
  63. Product Focus on Checklists : Data Migration
  64. Product Focus on Checklists : Biometrics
  65. Product Focus on Checklists : Supplier Due Diligence
  66. Free Cyber help, advice and training with the Cyber Resilience Centres
  67. The Perils of Paper: The Printing Vulnerability
  68. Product Focus on Checklists : FOI
  69. Product Focus on Checklists : Governors and Data
  70. Product Focus on Checklists : DPIA
  71. Product Focus on Checklists : Site Moves
  72. Product Focus on Checklists : Data Breaches
  73. Product Focus on Checklists : Subject Access Requests
  74. Cyber attack on a University
  75. Product Focus on Checklists : Bring your own device
  76. Product Focus on Checklists : Working out of school/offsite
  77. Cyber Attack on a School
  78. Product Focus on Checklists : Redaction
  79. Product Focus on Checklists : CCTV
  80. Product Focus on Checklists : Clear desk
  81. Product Focus on Checklists : Commitment to compliance
  82. Product Focus on Checklists : Photos and video
  83. Product Focus on Checklists : Passwords
  84. Product Focus on Checklists : Information Classification
  85. Kent Councils Data Breach
  86. Free cyber training for staff
  87. DfE Digital Standards Update
  88. Where is your data stored?
  89. Phishing attacks targeting schools - alert from City of London Police
  90. The ICO reprimands a Multi Academy Trust
  91. CISA and UK NCSC Announce Joint Guidelines for Secure AI System Development
  92. Trust Initial Plan Checklist Update
  93. Update on Advisory for Rhysida Ransomware
  94. Records Management Best Practice Update
  95. The Crime in a Cyber Attack and a Data Breach
  96. NCSC Annual Review is published for 2023
  97. Learning from Data Breaches
  98. Windows 11 security ineffective against attacks on old devices
  99. Trust Initial Plan for Data Protection Compliance (for Multi Academy Trusts)
  100. International Counter Ransomware Initiative 2023 Joint Statement
  101. Google for Education Resources: Helping IT Admins meet DfE digital and technology standards
  102. Top Ten Cyber Security Misconfigurations
  103. ICO Reprimand: company suffered a ransomware attack
  104. The UK Online Safety Bill becomes an Act (Law)
  105. The importance of software updates (PaperCut vulnerability and Rhysida ransomware)
  106. Ransomware, extortion and the cyber crime ecosystem
  107. Cyber Resource: The Cyber Resilience Centre Group
  108. Email and Security: ICO recent guidance
  109. Help after a Cyber Attack/Incident
  110. What to do in the event of a Cyber Attack
  111. How KCSIE is linked to Cyber Strategy
  112. Cyber Crime: AI Generated Phishing Attacks
  113. Cyber Attack: Exam Boards
  114. VICE SOCIETY - Ransomware attacks on schools
  115. Using Tags if you are a group of organisations in the DPE Knowledge Bank
  116. Where's Harry the Hacker?
  117. Be Cyber Aware: USB Sticks
  118. Cyber Insurance in the Public Sector
  119. Types of Cyber Attacks: DDos Attack (Microsoft DDoS Attack in June)
  120. Cyber Attack: Leytonstone School
  121. Be Cyber Aware: Firewalls
  122. Be Cyber Aware: Cyber attacks and transparency. A no blame culture
  123. Cyber Attack: Dorchester School
  124. Knowledge Bank Role Types: Admin, Staff and Trustee
  125. Types of Cyber Attacks: Password Attacks
  126. Be Cyber Aware: Why regular software updates are important
  127. Cyber Attack: Wiltshire School
  128. Keeping your IT systems safe and secure
  129. Why we recommend using PIN codes on printers
  130. Types of Cyber Attacks: DDoS Attacks
  131. Types of Cyber Attacks: Phishing
  132. Redaction Guidelines Updated
  133. Types of Cyber Attacks: The Insider Threat
  134. Why your data is profitable to cyber criminals
  135. Using WhatsApp in Schools
  136. Knowledge Bank Updates
  137. Types of malware and how they are linked to data protection
  138. A guide to multi-factor authentication
  139. Windows Server 2012 & 2012 R2 Retirement
  140. How to contact us for support, subject access requests, data breaches and FOI's
  141. How a school fought back after a cyberattack
  142. Types of Cyber Attacks - Credential Stuffing
  143. January Cyber update - How Can Schools Help Prevent Cyber Attacks?
  144. Assigning courses to staff using to-dos
  145. The Education sector now at highest risk of cyber attacks
  146. Cyber Attacks
  147. Best Practice for Managing Photos and Video
  148. Compliance Manager released
  149. Emails – good practice and minimising the risk of a data breach

Search