Policy paper

Software Security Ambassadors Scheme

A scheme to champion secure software development and support a resilient cyber ecosystem.

Documents

Details

The Software Security Ambassador Scheme has been developed to help drive adoption of the Software Security Code of Practice, a voluntary set of principles designed to reduce software supply chain attacks and disruption, and improve cyber resilience across the economy. 

Software underpins the economy as a core component of all technologies that businesses rely on. Yet weaknesses in software can cause severe disruption to supply chains and the essential services the public use every day, with more than half (59%) of organisations experiencing software supply chain attacks in the past year. 

These issues can be addressed by embedding basic software security practices across the software market - as set out in the the Software Security Code of Practice

The Software Security Ambassadors scheme was announced on 6 January 2026 as part of the launch of the Government Cyber Action Plan.

Read the press notice.

A range of industry parters (see full list below) have agreed to work with the government as the scheme’s ambassadors, championing the Software Security Code of Practice across sectors, showcasing practical implementation, and providing feedback to inform future policy improvements.

This scheme is part of the government’s wider work to improve UK cyber resilience and grow a secure and prosperous digital economy.

Signatories

  • Department for Science, Innovation and Technology
  • National Cyber Security Centre
  • Accenture
  • Cisco
  • Hexiosec
  • ISACA
  • ISC2
  • Lloyds Banking Group
  • NCC Group
  • Nexor
  • Palo Alto Networks
  • Sage
  • Salus
  • Santander
  • Zaizi

Updates to this page

Published 15 January 2026

Sign up for emails or print this page