Skip Navigation

  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
  • Research

Welcome

The Centre for the Protection of National Infrastructure (CPNI) is the government authority that provides protective security advice to the national infrastructure.

Our advice aims to reduce the vulnerability
of the national infrastructure
to terrorism and other threats,
keeping the UK's essential services safer

What we do

What we do

CPNI's protective security advice spans physical, personnel and information security disciplines. These are specialist areas and organisations need to ensure they have effective measures in place for all of them, right across their operations. The integrated approach to protective security advocated by CPNI encourages organisations to take forward the three disciplines together.

What we do

Highlights


General

  • Processes [01/09/2010]

    A paper outlining security questions businesses should be asking their vendors has been published and is now available.
  • Personnel security measures [18/08/2010]

    An updated version of CPNI's good practice guidance on ongoing personnel security is now available
  • CPNI events [05/08/2010]

    GEFS-6: Food Defence Conference - 'A Heightened Response?'
  • Viewpoints [16/07/2010]

    A new CPNI Viewpoint paper has been published discussing phishing and pharming.
  • InfoSec briefings [16/07/2010]

    Phishing and pharming: A guide to understanding and managing the risks is now available.
  • General protective security publications [10/05/2010]

    PAS 68: 2010 Impact test specifications for vehicle security barriers - reviewed and republished in January 2010 now available.
  • Physical security measures [25/02/2010]

    Updated guide to producing Operational Requirements for security measures published

Advisories

  • 3963 - Out-of-Band Microsoft Security Bulletin Notification 02 August 2010 - Update [02/08/2010]

  • 3960 - Microsoft Security Advisory - Vulnerability in Windows Shell Could Allow Remote Code Execution [18/07/2010]

Highlights

What we do

Top ten security guidelines

  • Assess the risks to your business
  • Consider security first when planning building works
  • Establish a security culture in your business
  • Keep premises clear and tidy
  • Control access points and use staff and visitor passes
  • Install physical measures e.g. locks, alarms, CCTV, lighting etc
  • Establish good mail handling procedures
  • Recruit carefully, checking identities and following up references
  • Take proper IT security precautions
  • Test your business continuity plans regularly

Top ten security guidelines

  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |