UK Police Helping Business Fight Cyber Attacks

The UK Metropolitan Police Service (MPS) has unveiled an innovative new exercise that teaches business leaders how to protect their companies from cyber-attacks. 

The cyber prevent team are booked to carry out another 18 events to more than 100 people during March and April, which include a bank, and a multiple business event where ten exercises will be running simultaneously.

A number of the events are being ran in partnership with the City of London Police’s Cyber Crime Unit who have adopted the initiative and are also delivering it as part of their cyber-crime awareness offering, ensuring businesses across the capital are protected.

The exercise, which consists of two game boards with Lego pieces that represent a company with separate premises, is designed to explore the decisions that people make, in order to protect their businesses and organisations from modern day threats, such as hacking and malware attacks. 

All the scenarios in the game are based upon real-life situations and current threats.

Current National Cyber Security Centre (NCSC) and Met Police cyber security guidance is provided in the post-exercise debrief. The initiative builds on existing support for companies given by the NCSC, who have published a Small Business Guide listing top tips to shield from potential online attacks.

Background
The resource, entitled 'Decisions and Disruptions', funded by the Engineering and Physical Sciences Research Council (EPSRC), was first developed by a group of academics, currently based at the University of Bristol, in partnership with the National Cyber Security Centre.
Officers in the Met's Fraud and Linked Crime Online (Falcon) unit have adapted it to be included in their regular cyber awareness presentations given to businesses and organisations.
Since it was first demonstrated in June 2017, 13 exercises have been run with external companies, 33 have been run internally with a further eight delivered to other police forces.

Current Events
A number of the events are also being run in partnership with the City of London Police’s Cyber Crime Unit who are also delivering it as part of their cyber-crime awareness offering.

Detective Chief Superintendent Mick Gallagher, head of the Organised Crime Command, said: "We've had excellent feedback from everyone who has been shown this exercise and it is an excellent tool to promote awareness of the growing range of cyber security threats. Due to the physical representation of the game board, it makes cyber security easier to understand and the scoring system introduces a competitive and fun element, which is proven to aid learning.

"The scale and complexity of cybercrime and fraud online is constantly evolving and our officers are proactively targeting the criminals responsible. However, it is also an important part of our work to educate members of the public how to protect themselves online and reduce their chances of being a victim of crime."

Professor Awais Rashid, Professor of Cyber Security in the Department of Computer Science at the University of Bristol, added: “Decisions and Disruptions is a table top game that we developed where players can experiment with cyber security risks, learn about decision-making and its consequences, and reflect on their own perception of cyber security. 

“The research we have conducted so far using the game, including the collaborative work with the London Metropolitan Police, has uncovered a number of key insights about how different demographics in organisations, managers, IT personnel and security experts, approach security decision-making, the good practices and the pitfalls to be avoided.”

"The game requires no prior cyber security expertise from players and the details of how to build a game board are freely available on the website. Anyone interested can build their own board and learn about cyber security in a fun way with friends, family and co-workers."

Bristol University:

You Might Also Read: 

Cybercrime Costs Londoners £26m Every Month:

UK Police Introduce Cyber Security Certification:


 

 

« The Resurgent Cyber Threat From Iran
Petty Criminals Have Use Of Sophisticated Hacking Tools »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Resecurity, Inc.

Resecurity, Inc.

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

NCC Group

NCC Group

NCC Group is a global cyber and software resilience business operating across multiple sectors, geographies and technologies.

Virus Bulletin

Virus Bulletin

Virus Bulletin is an online security information portal and certification body, providing users with independent intelligence about the latest developments in the global threat landscape.

Snort

Snort

Snort is an open source intrusion prevention system capable of real-time traffic analysis and packet logging.

Siepel

Siepel

Siepel manufactures high quality shielded rooms and anechoic chambers dedicated to TEMPEST, NEMP & HIRF.

Karlsruhe Institute of Technology (KIT)

Karlsruhe Institute of Technology (KIT)

KIT is a leading research and education institutions with strong capabilities in information systems and security.

Software Engineering Institute (SEI)

Software Engineering Institute (SEI)

At the CERT Division of SEI we study and solve cybersecurity problems, research security vulnerabilities in software, and develop information and training to help improve cybersecurity.

Netrix

Netrix

Netrix is a Mexican company specialized in IT Security, with more than 18 years of experience in Managed Services, Professional Services and Turnkey Solutions related to Security.

CETIC

CETIC

CETIC is an applied research centre in the field of ICT. Key technologies include Big Data, Cloud Computing, the Internet of Things, software quality, and trust and security of IT systems.

Salt Security

Salt Security

Salt Security protects the APIs that are the core of every SaaS, web, mobile, microservices and IoT application.

u-blox

u-blox

u-blox deliver leading wireless technology to reliably and securely locate and connect people and devices.

Plug and Play Tech Center

Plug and Play Tech Center

Plug and Play is the ultimate innovation platform, bringing together the best startups and the world’s largest corporations.

Netsurion

Netsurion

Netsurion powers secure and agile networks for highly distributed and small-to-medium enterprises and the IT providers that serve them.

ISMAC

ISMAC

ISMAC was founded to create a security solution that would work for smaller to medium as well as bigger corporations at an affordable price.

Etisalat

Etisalat

Etisalat Group is one of the world’s leading telecom groups in emerging markets.

Sirti

Sirti

Sirti is Italy's leading technology company in the design and production of network infrastructures and telecoms system integration.

Ingenics Digital

Ingenics Digital

Ingenics Digital is a recognized initiator and leading service provider in the areas of software development and embedded systems.