Overview
The Security domain encompasses all capabilities, tools, and practices that protect the organisation’s people, data, systems, and services from threats and ensures resilience against disruption.
Key capabilities
Products and services
Digital tools, platforms and services that enable security capabilities.
- DNS Check is a free monitoring service provided by the Government Digital Service (GDS) to the UK public sector
- Vulnerability Monitoring Service, provided by the Government Digital Service (GDS), helps public sector organisations identify and respond to security vulnerabilities in your internet-facing digital services
- SIEM Integration Service allows you to receive all the misconfiguration and vulnerability data collected by DNS Check and the Vulnerability Monitoring Service
- GOV.UK One Login lets your users sign in to your service with their email address, password and two-factor authentication
- GOV.UK Internal Access is an Alpha service which provides single sign-on for internal users to services
Guidelines and standards
Provides access to the approved guidance, design principles, and technical standards that support security capabilities.
- Government Security is the home of security strategies, standards, policies, and guidance for UK government departments and their arm’s length bodies
- Secure by Design provides guidance on effective cyber security practices when building digital services and technical infrastructure
- Secure Govt Email provides guidance on how to apply the government secure email policy
Commercial agreements
Crown Commercial Service (CCS) agreements which provides access to commercial agreements that support security.
- Cyber Security Services are CCS commercial agreements that offer cyber security services to help improve organisational cyber resilience and security posture
- Security Physical, Technical and Support Services are CCS commercial agreements for security products and services
- Network Services are CCS commercial agreements that include network security and domain name services
Related domains
- Integration - is for connecting service applications to back-end systems
- Governance and standards - is for ensuring services are compliant and aligned with strategic policy
- Data and information Management - is for managing the data that powers services