Skip to main content

Part of Cyber security guide for non-executive directors

Resources and glossary

Page contents

Resources


Glossary

Asset management and renewal - Boards should ensure there is a refresh schedule in place for replacement of ageing assets.

Incident response plan - Boards should have sight of the plan and ensure it is tested and reviewed on a regular basis. They should also be clear about the role they play in the event of an incident occurring.

Internal and external audit - Boards can use internal and external audit to provide assurance on cyber security issues. However, it is essential that these audits are focused on the areas of greatest concern. The audit team will need the necessary cyber security knowledge and/or access to third party reviews.


Last edited: 16 July 2025 9:20 am