to add a new content
Resource
NCSP Secure By Design (SbD) Guideline V1.1

This document provides detailed guidance to support the National Community Security Policy (NCSP) system development (Secure by Design SbD) standard. Secure by Design as a methodology has been selected to ensure that a repeatable, structured, and consistent approach to the secure delivery of solutions across policing is achieved, as well as ensuring that risks are managed within risk appetite. 

Published 01/01/2025
Authoring body: Police Digital Service (PDS)
Guidance
Resource
System Development – Secure by Design (SbD) Standard

This standard outlines the functions within the Secure By Design (SbD) process, aligned to project stages, to ensure a consistent approach to cyber security is achieved throughout a system’s development. The purpose of this standard is to define an approach to ensure that all products / solutions are assured in a repeatable, structured and consistent way. This will enable security controls to be designed into solutions at an early stage, ensuring the secure delivery of solutions across policing, whilst identifying and managing risk to within risk appetite.
This standard adheres to the National Policing Community Security Policy Framework and is a suitable reference for community members, notably those who build and implement IT systems on behalf of national policing.

Published 01/02/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
NCSP Systems Management v1.1

This standard defines the requirements which, when applied, will assist with the secure management of systems and networks.
This standard adheres to the National Policing Community Security Policy Framework and is a suitable reference for community members, notably those who build and implement IT systems on behalf of national policing.
This standard adheres to the National Policing Community Security Policy Framework and is a suitable reference for community members, notably those who build and implement IT systems on behalf of national policing.

Published 01/02/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
Overseas IT Access Guideline

This guidance describes best practice risk management controls for accessing Policing ICT resources whilst abroad. It also describes the circumstances when forces can make a local decision or when referral to NSIRO is required when use abroad is required.

Published 01/03/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
Information Compliance using Microsoft Purview

This guideline is a baseline for Policing in use of Microsoft Purview from a Information Compliance; oversight and measurement perspective

Published 01/03/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
NCSP Bluetooth Guidance Document v1.7

This guideline provides audiences with background information concerning Bluetooth technology and guidance on how it can be suitably and securely deployed within the Law Enforcement environment.
It’s purpose is to provide relevant information, enabling users of Bluetooth technology to achieve operational capability whilst minimising the risks of data security compromise.

Published 01/03/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
NCSP Guideline: INFORMATION TRANSFER

Information transfer is the process of moving information from one location to another. Policies and processes are required to protection information during this process.
Any activity involving the movement of information from one place to another carries inherent risk whereby the confidentiality, integrity or availability of that information may be compromised. Appropriate and proportionate steps must be taken to ensure the security requirements of the information being transferred are protected against deliberate or inadvertent, authorised or unauthorised attack, damage or loss.
ANNEX A – Legacy NPIRMT Protection of OFFICIAL Police Data in Transit – Risks & contextual risk mitigation tables

Published 01/02/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
NCSP Vulnerability Management v2.0

This standard supports the policy set out in the National Community Security Policy, providing requirements for those designing, building and running IT services, managing threats and vulnerabilities within PDS and policing systems.

Published 03/12/2024
Authoring body: Police Digital Service (PDS)
Standards
Resource
NCSP Network Security v1.2

This standard supports the policy set out in the National Community Security Policy, providing requirements for those designing, building and running network services on behalf of national policing. This standard details a minimum set of security requirements and controls that must be met to ensure security and segregation of network services.

Published 01/02/2025
Authoring body: Police Digital Service (PDS)
Standards
Resource
NCSP Technical Security Management Standard v1.1

This Standard specifies the minimum requirements regarding technical security management. It describes the requirements to enable members of the community of trust to build and operate an effective technical security infrastructure, applying security architecture principles and integrating technical security solutions, such as malware protection, intrusion detection and cryptography

Published 02/12/2024
Authoring body: Police Digital Service (PDS)
Standards