Skip to content

Information Security Management

Digital locker

Information Security Management is a tailored professional support to help police forces manage cyber and information security effectively.

How it works

The service covers the full spectrum of security management, from implementing and maintaining an Information Security Management System (ISMS) to delivering bespoke security components based on organisational needs. This ensures that forces meet regulatory requirements and maintain strong cyber resilience.

Flexible options allow for surge capacity or extended scope where additional support is required

Benefits
  • Enhanced cyber resilience through proactive security management.
  • Enabling of force objectives and goals.
  • Regulatory compliance with national and policing standards.
  • Flexible support model to meet changing organisational needs.

Chargeable Member Service button (no link)

Learn more about member benefits on our dedicated Members page.

What we need
  • Business objectives in relation to security.
  • Completion of the ‘getting to know you’ questionnaire.
  • Current security policies and governance frameworks.
  • System architecture and technical documentation.
  • Risk register and mitigation plans.
  • Collaboration and access to relevant stakeholders.
  • Agreement on scope and timelines.
What you get
  • Management of your Information Security Management System (ISMS).
  • A complete gap analysis of information security and risk across your force, with a strategic recommendation summary for implementation.
  • A tailored plan on development, implementation and management of capabilities tailored to organisational needs.
  • Continual management of all compliance and assurance submissions required across your force.
  • Expert guidance across all security domains.
  • Recommendations for risk mitigation and control improvements.
  • Optional surge capacity for large-scale or urgent requirements.
  • Monthly ‘Security Delivery’ meeting providing an overview of the value added over the previous month and areas of focus for the upcoming month.

Use cases

We are operating a pilot service with Gwent Police to strengthen their Information Security Management System and provide cyber and information security expertise to their force.

An initial gap analysis was carried out to understand the construct of the force, their objectives and priorities, and their security posture. A strategic summary with recommendations and a plan to address concern areas was generated to allow planning and scheduling of activities, whilst allowing capacity for surge when incidents occur. This enabled their Chief Officer team to understand the current security maturity of the force and focus efforts on areas with the biggest impact, reducing risk exposure and enabling force objectives.