(6 days, 18 hours ago)
Lords ChamberMy Lords, I thank my noble friend for those questions. There is no evidence that this was caused by any malicious activity, and we have to be very careful that we do not speculate otherwise. AWS has publicly stated that the outage was initially caused by an issue with its configuration of the domain name system, or DNS, and some wider related complications. Departments independently determine which suppliers to use based on their use cases. Some cloud providers are strategic suppliers, but departments make decisions on adoption based on not only reliance but cost, capability and their staff’s expertise. We are working to diversify the UK’s cloud ecosystem and encourage greater participation by UK-based and European providers, as well as promoting innovation through our digital infrastructure and cybersecurity programmes. At the same time, the NCSC offers advice and guidance on how businesses and organisations can make themselves more cyber resilient, and this advice is also broadly applicable to digital resilience issues.
As I mentioned in Oral Questions last week, businesses should also take it upon themselves to ensure that they have sufficient cyber resilience systems in place by ensuring that their software and hardware are up to date and, if they can, seeking certification so that their systems are Cyber Essentials certified. Businesses should also be encouraged to have a business continuity plan so that, if anything happens, they have a plan in place.
My Lords, I congratulate my noble friend on his Question; I submitted exactly the same Question yesterday. Is it possible that some of the sites affected in the UK, including the GOV.UK portal, were not aware that the data was held in America rather than in the UK and that, therefore, when a problem arises as it did in East-1, or whatever it is called, on the east coast of America, they were not aware that we would be in this vulnerable position?
(8 months, 4 weeks ago)
Grand CommitteeI am sorry to interrupt the noble Lord but, as Members may have noticed, there is a Division in the Chamber. The Committee stands adjourned until 5.28 pm.
My Lords, we will resume the Committee. The noble Lord, Lord Leigh, has the floor.
My Lords, I think that I had reached the conclusion of my remarks, which is that I support these amendments. I particularly support impact assessments.
Before I sit down, I just make the comment that it is somewhat strange to note that we were voting on something in the Chamber of the House relating to boxes in the Royal Albert Hall, but we are deprived of the opportunity to vote on the matter of national insurance rises for every company in the UK. That seems to me to be somewhat absurd.
(1 year, 3 months ago)
Lords ChamberI thank the noble Baroness for her question and her openness and engagement with me when she was a Minister. Her passion for improving resilience was clear in how she carried out the role. This is definitely a central concern of the incoming Government, which is why we introduced the cybersecurity and resilience Bill in the King’s Speech. I look forward to discussing that further with her and other noble Lords from around the House as it progresses through the legislative process.
My Lords, as the Government continue to consider the issues arising from this serious outage, I invite my noble friend the Minister to consider seriously the reports issued by the Joint Committee on the National Security Strategy, of which I have been a member, which deal with issues such as ransomware, against which the software was designed to protect us. These issues will only become more important in the years ahead.
My noble friend raises similar points to other noble Lords; Members across the House are quite rightly concerned about this. As part of the process of developing and taking the cybersecurity and resilience Bill through this House and the other place, all learning from a range of reviews, including some of the public inquiries that have reported and are yet to report, will be key to improving our country’s resilience.