National Cyber Security Centre
Government plans to safeguard the future security of UK Telecoms
- Also published by:
- Department for Digital, Culture, Media and Sport
New telecoms security legislation to be introduced and cyber security risks to be prioritised across the sector.
Digital Secretary Jeremy Wright yesterday set out plans to improve security standards and practices across the UK’s telecoms sector, including in new 5G and full fibre broadband networks. The proposals include new legislation to enforce stronger security requirements in the telecoms sector and protect the UK from threats.
The Telecoms Supply Chain Review outlines the Government’s ambition to create a sustainable and diverse telecoms supply chain - safeguarding the UK’s national security interests and building on our existing capabilities.
At the Supply Chain Review’s foundation will be a series of new telecoms security requirements. Overseen by Ofcom and Government, the telecoms operators will need to design and manage their networks to meet these new standards. They will also be subject to rigorous oversight as part of their procurement and contract management processes.
Operators will also need to work much more closely with suppliers to ensure that there is proper assurance testing for equipment, systems and software.
Digital Secretary Jeremy Wright yesterday said:
The UK telecoms sector must prioritise secure and safe networks for consumers and business. With the growth of our digital sector and transformative new services over 5G and full fibre broadband in the coming years, this is not something to compromise on. People expect the telecoms sector to be a beacon of safety and this review will make sure that safety and security is at the forefront of future networks.
In response to the Review’s findings, the Government will establish a new, robust security framework for the UK telecoms sector - marking a significant shift from the current model.
This new framework will ensure operators build and operate secure and resilient networks, and manage their supply chains accordingly. They will have to assess the risks posed by vendors to network security and resilience, and ensure they manage those risks appropriately.
The Review also identified a lack of diversity in the supply chain and recommends that regulations enforcing telecoms cyber security must be strengthened.
The Government will now develop legislation and look to provide Ofcom with stronger powers. Until then, the government will work with industry to develop new security requirements.
Ciaran Martin, National Cyber Security Centre (NCSC) CEO, yesterday said:
As the UK’s lead technical authority, we have worked closely with DCMS on this review, providing comprehensive analysis and cyber security advice. These new measures represent a tougher security regime for our telecoms infrastructure, and will lead to higher standards, much greater resilience and incentives for the sector to take cyber security seriously.
This is a significant overhaul of how we do telecoms security, helping to keep the UK the safest place to live and work online by ensuring that cyber security is embedded into future networks from inception.
High risk vendors
The review also looked at how to mitigate the risks from high risk vendors.
The Government continues to consider its position relating to high risk vendors. Following action by the US Department of Commerce and uncertainty around the implications for the telecoms market as a whole from the entity listing, the government is further considering its position relating to high risk vendors. Decisions in this area will be made in due course.
Latest News from
National Cyber Security Centre
Registration opens for CYBERUK 202027/02/2020 09:10:00
The UK Government’s flagship cyber security event CYBERUK 2020 has opened its doors for registration.
UK cyber entrepreneurs to meet world's experts in Silicon Valley25/02/2020 11:15:00
Seven companies from the NCSC's Cyber Accelerator programme to pitch to prospective clients at the IT security conference.
Foreign Secretary condemns Russia's GRU after NCSC assessment of Georgian cyber attacks21/02/2020 16:15:00
The UK, Georgia and international partners have today exposed the GRU’s responsibility for a number of significant cyber attacks against Georgia last year.
UK condemns Russia's GRU over Georgia cyber-attacks21/02/2020 11:17:00
Foreign Secretary Dominic Raab calls out Russian campaign of unacceptable cyber-attacks against Georgia.
NCSC supports Northern Ireland’s push to strengthen cyber security capabilities19/02/2020 12:05:00
The Northern Ireland Cyber Security Centre is open and will work closely with the NCSC going forward.
Girlguiding take on cyber security challenges19/02/2020 10:15:00
The NCSC partners with Girlguiding South West England, as part of the drive to increase female representation in cyber security.
Advisory: Trickbot17/02/2020 10:10:00
How organisations can protect their networks from the ‘Trickbot’ banking trojan.
Schoolgirls across the UK show their cyber skills12/02/2020 16:15:00
Hundreds demonstrated their cyber security know-how during the co-ordinated series of competitions across the UK.