Who will the Cyber Security and Resilience Bill cover?
We follow the bill through Parliament and explain the proposed responsibilities for data centres, managed providers and other digital suppliers.
UK technology coverage
Identity, resilience and practical defence for a connected country.

What this beat covers
UK cyber policy is widening from individual organisations to the suppliers and platforms on which essential services depend. This desk explains new duties, practical resilience and the security choices facing British organisations of every size.
We follow the bill through Parliament and explain the proposed responsibilities for data centres, managed providers and other digital suppliers.
Our practical coverage focuses on identity, patching, recoverable backups, supplier access and rehearsed incident response.
We track post-quantum cryptography, passkeys, product-security rules and systemic cloud dependencies before they become emergency projects.
Start here
Topic collection
Source-backed reporting with British relevance and global context.
Browse every topic
CybersecurityWhat British employers should verify before a remote technology worker receives a laptop, credentials or access to sensitive systems.
CybersecurityWhat the first Critical Third Party designations change for cloud providers, regulators and the financial firms that remain accountable for their suppliers.
CybersecurityWhy the NCSC changed its advice, what passkeys fix and what British services should do next.
CybersecurityWhat the proposed law means for data centres, managed service providers and their customers.
CybersecurityA practical cyber baseline for the UK’s millions of small firms, charities and sole traders.
CybersecurityWhy migration starts with an inventory — and what the UK’s 2028, 2031 and 2035 targets mean.
CybersecurityWhat the post-Online Safety Act landscape means for platforms, parents and users.