Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Cyber agencies unveil new guidelines to secure edge devices

Security

Cyber agencies unveil new guidelines to secure edge devices

Cyber security chiefs in the UK and their international allies have issued a new set of guidelines to help manufacturers of edge devices make their products more secure and easier to investigate if a compromise occurs.

Image by Doucefleur / copyright Shutterstock

Published by GCHQ’s National Cyber Security Centre (NCSC) and cyber security agencies in Australia, Canada, New Zealand and the US, the new guidance highlights an increasing number of sophisticated malicious actors targeting vulnerabilities in edge devices.

Advertisement
ODU RT

Edge devices are internet-connected devices that sit at the ‘edge’ of a network, acting as entry points for data between local networks and the wider internet. Examples include routers, smart appliances, IoT devices, sensors and cameras, which can be particularly vulnerable to hackers as they often handle important data and connect directly to external networks.

The new guidelines encourage device manufacturers to include and enable standard logging and forensic features that are robust and secure by default, so that network defenders can more easily detect malicious activity and investigate following an intrusion.

They also set out the minimum standards for forensic visibility to help network defenders in securing organisational networks, both proactively and in response to a compromise.

Advertisement
ODU RT

NCSC Technical Director Ollie Whitehouse said: “In the face of a relentless wave of intrusions involving network devices globally our new guidance sets what we collectively see as the standard required to meet the contemporary threat.
    
“In doing so we are giving manufacturers and their customers the tools to ensure products not only defend against cyber attacks but also provide investigative capabilities require post intrusion.
    
“Alongside our international partners, we are focused on nurturing a tech culture that bakes security and accountability into every device, while enabling manufacturers and their customers to detect and investigate sophisticated intrusions.”

The guidance is part of a coordinated series of complementary publications on edge device security, released today in collaboration with agencies in Australia, New Zealand, Canada and the US, with input from the NCSC.

Earlier this year, the NCSC highlighted an Ivanti advisory about a critical security vulnerability in their remote access product, which enables employees to work from home and acts as an edge device to protect against external threats.

Advertisement
Gulfstream banner
UK urged to take AI cyber threats seriously

Security Events

UK urged to take AI cyber threats seriously

22 April 2026

At CYBERUK 2026 - currently taking place at the SEC Glasgow (21st - 23rd April) - Dr Richard Horne, the CEO of the National Cyber Security Centre (a part of GCHQ), gave a keynote speech focused on the challenges raised by rapid technological change dominated by AI and preparation for migration to post-quantum cryptography.

Ramboll appoints Darren Carlile as Director in Buildings

Defence Security

Ramboll appoints Darren Carlile as Director in Buildings

22 April 2026

Global architecture, engineering and sustainability consultancy, Ramboll, has appointed Darren Carlile as a Director in its Buildings business, with responsibility for growth and sales across Transformation and Public Services leading on the National Security and Government, Research and Polar sectors, supporting continued Government ...

Cranfield University develops plant blast barrier

Security

Cranfield University develops plant blast barrier

22 April 2026

New research has revealed how everyday plants can help protect the public from blast impacts, whilst transforming cities into greener, healthier spaces.

PentenAmio completes acquisition of Armour Communications

Security

PentenAmio completes acquisition of Armour Communications

21 April 2026

PentenAmio has today announced its acquisition of Armour Communications, following the relevant regulatory approvals.

Advertisement
ODU RT
Smiths Detection gains ECAC Certification for AI driven cabin baggage screening

Aerospace Security

Smiths Detection gains ECAC Certification for AI driven cabin baggage screening

20 April 2026

Smiths Detection has secured ECAC (European Civil Aviation Conference) certification for its iCMORE APIDS (Automated Prohibited Items Detection System), approved for deployment with the HI SCAN 6040 CTiX.

Securitas appoints Alan Rae as Area Director for UK North and BAE Systems

Defence Security

Securitas appoints Alan Rae as Area Director for UK North and BAE Systems

20 April 2026

Securitas UK has announced the appointment of Alan Rae to the newly created and expanded role of Area Director for UK North and BAE Systems.

Advertisement
ODU RT
Advertisement
FIA2026 animated banner