Issue - meetings
Cyber Strategy Report
Meeting: 08/07/2026 - Cabinet (Item 208)
208 Cyber Strategy Report
PDF 205 KB
Lead Member: Councillor Alex Wagner, Deputy Leader and Portfolio Holder for Transformation and Economic Growth
Lead Officer: Sam Williams, Service Director - Enabling
Additional documents:
- Appendix 1 - Cyber Strategy 2026, item 208
PDF 559 KB
- Appendix 2 - 1 Page Cyber Strategy 2026, item 208
PDF 2 MB
Decision:
RESOLVED:
That Cabinet:
1. Approved the Cyber Strategy 2026-2030 in appendix 1, and the Plan on a Page Cyber Strategy 026-2030 in appendix 2.
2. Delegated authority to the Service Director Enabling and Head of Automation and Technology in consultation with the Portfolio holder for Transformation and Economic Growth to update the strategy annually aligned with any legislation change and best practice.
Minutes:
The Deputy Leader presented the report which set out the Council’s approach to managing cyber security risks and improving organisational resilience. Members noted that cyber security is a corporate responsibility and a key strategic risk, with the strategy focused on protecting sensitive information, safeguarding critical services and ensuring the Council can respond effectively to cyber incidents.
The strategy is structured around six priorities: secure-by-design principles, governance and assurance, protection of data and critical services, workforce capability, incident detection and recovery, and partnership working with national cyber organisations. Members were advised that the strategy aligns with recognised national cyber security frameworks and will support a risk-based approach to managing cyber threats.
Questions were raised regarding performance measures, future costs and the monitoring of cyber risks. Officers advised that detailed information regarding the Council’s cyber maturity and risk profile could not be disclosed publicly for security reasons, but confirmed that the strategy would be delivered within existing budgets and that any future investment requirements would be subject to separate business cases. Members also noted that a Digital Strategy and associated delivery roadmap would provide further detail on implementation activity.
Cabinet recognised the increasing importance of cyber resilience in protecting Council services and agreed that a strategic approach was essential to support service continuity and public confidence.
RESOLVED:
That Cabinet:
1. Approved the Cyber Strategy 2026-2030 in appendix 1, and the Plan on a Page Cyber Strategy 026-2030 in appendix 2.
2. Delegated authority to the Service Director Enabling and Head of Automation and Technology in consultation with the Portfolio holder for Transformation and Economic Growth to update the strategy annually aligned with any legislation change and best practice.