A free, self-serve tool developed by NPSA to help organisations understand their current security culture, and plan how to improve it.
A campaign to help you instil vigilance behaviours in your employees, which in turn will help them become an active part of your protective security regime.
A simple, comprehensive yet practical framework for how to embed security behaviours.
Joint NPSA and NCSC guidance containing advice on how organisations can defend themselves against malicious emails that use social engineering techniques.
The Workplace Behaviours campaign kit is designed to help individual staff members ensure that they are getting the security basics right, in and around the workplace.
This campaign aims to raise awareness about what social engineering is, what an approach might look like, and how staff can better protect themselves against this type of threat.
This guidance has been designed to support security managers, hiring managers, and others in your organisation responsible for inducting new joiners, to best communicate your security policies, processes and ways of working.
This campaign, now in the form of an innovative new app, will help you to protect yourself, your colleagues, and your organisation from the harmful impact of malicious online profiles. You’ll know how to identify them, how to respond, and how to minimise the risk of being targeted in the first instance.
This campaign helps line managers to think about the kind of security behaviours they should expect from the people they manage, to help protect them and the organisation from security threats and risks. It also provides suggestions on how to develop a culture within a team where team members take responsibility for security, know what the correct security procedures are, and work together to keep organisational assets safe and secure.
The materials provided as part of the ‘It’s OK to Say’ education programme are intended to support organisations with educating staff on identifying and reporting unusual or concerning workplace behaviours, and in setting up mechanisms to promote the appropriate intervention. Education on these behaviours will help to build resilience to insider risks and a stronger security culture for the organisation and its people.
The NPSA self-service Personnel Security Maturity Assessment (PSMA) is designed to specifically assess an organisation's personnel security maturity. This is a key factor, in addition to physical and cyber security measures, in strengthening an organisation's resilience to insider and wider external security threats.