Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Cyber agencies unveil new guidelines to secure edge devices

Security

Cyber agencies unveil new guidelines to secure edge devices

Cyber security chiefs in the UK and their international allies have issued a new set of guidelines to help manufacturers of edge devices make their products more secure and easier to investigate if a compromise occurs.

Image by Doucefleur / copyright Shutterstock

Published by GCHQ’s National Cyber Security Centre (NCSC) and cyber security agencies in Australia, Canada, New Zealand and the US, the new guidance highlights an increasing number of sophisticated malicious actors targeting vulnerabilities in edge devices.

Advertisement
Security & Policing Rectangle

Edge devices are internet-connected devices that sit at the ‘edge’ of a network, acting as entry points for data between local networks and the wider internet. Examples include routers, smart appliances, IoT devices, sensors and cameras, which can be particularly vulnerable to hackers as they often handle important data and connect directly to external networks.

The new guidelines encourage device manufacturers to include and enable standard logging and forensic features that are robust and secure by default, so that network defenders can more easily detect malicious activity and investigate following an intrusion.

They also set out the minimum standards for forensic visibility to help network defenders in securing organisational networks, both proactively and in response to a compromise.

Advertisement
ODU RT

NCSC Technical Director Ollie Whitehouse said: “In the face of a relentless wave of intrusions involving network devices globally our new guidance sets what we collectively see as the standard required to meet the contemporary threat.
    
“In doing so we are giving manufacturers and their customers the tools to ensure products not only defend against cyber attacks but also provide investigative capabilities require post intrusion.
    
“Alongside our international partners, we are focused on nurturing a tech culture that bakes security and accountability into every device, while enabling manufacturers and their customers to detect and investigate sophisticated intrusions.”

The guidance is part of a coordinated series of complementary publications on edge device security, released today in collaboration with agencies in Australia, New Zealand, Canada and the US, with input from the NCSC.

Earlier this year, the NCSC highlighted an Ivanti advisory about a critical security vulnerability in their remote access product, which enables employees to work from home and acts as an edge device to protect against external threats.

Advertisement
Babcock LB
Darktrace enhances its ActiveAI Security Platform

Security

Darktrace enhances its ActiveAI Security Platform

24 October 2025

Darktrace has announced a wave of innovations across its ActiveAI Security Platform to protect organisations from increasingly complex, multivector and novel attacks, extending novel threat detection and autonomous investigations across email, network, OT, cloud and SaaS and consequently delivering deeper endpoint visibility than ever ...

UK CSOs warn of threat to executives

Security

UK CSOs warn of threat to executives

23 October 2025

More chief security officers (CSOs) in the UK than anywhere else in Europe are providing senior executives such as CEOs and CFOs with close protection officers, protection for executives’ family members, personal protective equipment, online threat monitoring and enhanced security procedures to mitigate the threats posed to executives.

Met launches new drone programme

Security

Met launches new drone programme

23 October 2025

The Metropolitan Police Service has launched an innovative trial which sees drones dispatched to support police officers responding to emergencies.

Digital & Cyber Bursary scheme in Lancashire expanded

Defence Security

Digital & Cyber Bursary scheme in Lancashire expanded

23 October 2025

Five hundred students in Lancashire are to be given the opportunity to join the frontline of UK cyber defence, through a new major expansion of the Government’s Digital & Cyber Bursary Programme.

Advertisement
ODU RT
Robosys secures Australian AMC Search training support contract

Defence Security

Robosys secures Australian AMC Search training support contract

23 October 2025

Robosys Automation has secured a new contract award from the Australian Maritime College, AMC Search, to supply its advanced VOYAGER AI software as a retrofit to its OPT WAMV-16 Unmanned Surface Vessel (USV).

Goldilock Secure and Dorado Software unite to advance cybersecurity resilience

Security

Goldilock Secure and Dorado Software unite to advance cybersecurity resilience

22 October 2025

Goldilock Secure, the NATO-backed cybersecurity specialist behind FireBreak, has announced a strategic collaboration with Dorado Software, a solution provider in network and infrastructure deployment including management and automation, to accelerate cybersecurity resilience across critical infrastructure and the enterprise.

Advertisement
ODU RT