We use some essential cookies to make this website work.
We’d like to set additional cookies to understand how you use GOV.UK, remember your settings and improve government services.
We also use cookies set by other sites to help us deliver content from their services.
You have accepted additional cookies. You can change your cookie settings at any time.
You have rejected additional cookies. You can change your cookie settings at any time.
Departments, agencies and public bodies
News stories, speeches, letters and notices
Detailed guidance, regulations and rules
Reports, analysis and official statistics
Consultations and strategy
Data, Freedom of Information releases and corporate reports
This Code of Practice sets out expectations for the security and resilience of software.
First published during the 2024 to 2026 Starmer Labour government
Document outlining action expected from health and care organisations in 2017 to 2018, to implement recommendations by the National Data Guardian.
Guidance for organisations certified against the UK digital identity and attributes trust framework who offer delegated authority as part of their service.
This publication sets out rules for digital verification services supporting employers who choose to conduct digital right to work checks.
Data security control principles to use when processing and sharing personal data in your service.
Find out who can certify digital identity services during the pilot process, and more about the approval and accreditation process.
This service allows the Ministry of Defence (MOD) and industry partners to manage cyber risk across the defence supply chain.
A revised (alpha) version of the digital identity trust framework following feedback, plus an invitation to express an interest in testing the framework.
This guidance, also known as Good Practice Guide (GPG) 45, helps you decide how to check, or ask others to check, the identity of those you interact with.
Follow this guidance to understand how to become a .gov.uk Approved Registrar
The Defence and Security Accelerator (DASA) uses the Open Call for Innovation to find ideas that address challenges across both Defence and Security landscapes.
Register your interest in future Government-funded cyber security apprenticeships in critical national infrastructure (CNI) sectors.
A guide for designated operators of essential services for healthcare in England explaining the practical impact of the NIS Regulations.
Conformity assessment bodies must follow these processes and requirements when certifying services against the UK digital identity and attributes trust framework.
The gamma (0.4) version of the UK digital identity and attributes trust framework.
Guidance for small businesses on how to put simple cyber security measures in place.
Cyber Explorers is a new online learning platform to teach cyber skills to thousands of school pupils across the UK.
Researchers should use this guidance to understand the security measures you need to follow and how to apply them when working with defence research.
An updated version of the digital identity and attributes trust framework, following testing and feedback.
Guidance on creating, storing and checking evidence of someone’s identity that relies on a ‘vouch’, a formal declaration from a third-party that knows them and is willing to confirm their identity.
Do not include personal or financial information like your National Insurance number or credit card details.
To help us improve GOV.UK, we’d like to know more about your visit today. Please fill in this survey (opens in a new tab and requires JavaScript).