
Why School Staff Are Central to School Cyber Security
A teacher is preparing for a lesson when the resource they need refuses to open. The class is due in a few minutes. Another member of staff sends a link to the document and says they may need to sign in again. Nothing about the situation feels particularly unusual. The

PECR Explained: What UK Businesses Need to Know
PECR governs much more than marketing emails. This practical guide explains electronic marketing, cookies and tracking technologies, how PECR works alongside UK GDPR, and what recent DUAA changes mean for UK organisations.

The Cybersecurity Decisions Hidden in Everyday Work
A thumbs-up, access request or permission change can take seconds while carrying much more consequence. The useful question is not whether the action looks suspicious, but what changes after you take it.
Digital ethics at work: when the right decision is not written in the policy
A manager asks an employee to use the organisation’s approved AI tool to summarise a sensitive document before a meeting. The request is legitimate. The deadline is close. The tool has already been approved, and the employee has used it successfully for other tasks. They open the document, bring up
What Is the UK Cyber Resilience Pledge and What Does It Mean in Practice?
A supplier agreement is waiting for approval. The service is already in use, the relationship is established and the renewal date is close enough that delaying the decision could create an operational problem of its own. The paperwork confirms the price, the term and the level of support. The supplier
KCSIE 2026: what schools should do about cyber awareness, AI and online safety
A member of staff is moving between lessons when a pupil mentions that an image is being shared in a group chat. They do not have the full story yet. They do not know whether it is bullying, embarrassment, friendship conflict, sexual harassment, AI-generated content, or something that needs immediate

Why Blame and “Human Error” Are Putting Your Business at Risk
A finance team is trying to finish the month-end payment run. Dave has a list of invoices open, a supplier has already chased twice, and the team wants to avoid holding up a project that depends on the payment being made. Nothing about the morning feels unusual. It is busy,

The State of Cybersecurity in Education: What the 2025/2026 Breaches Survey Really Shows
A teacher opens a shared document while preparing a lesson. A school office receives an email that appears to relate to a parent query. A college administrator moves between learner records, funding systems and staff messages. A university team member receives a request linked to an account, research system or

The State of UK Cyber Resilience: What the 2025/2026 Breaches Survey Really Shows
A supplier email lands while someone is closing off invoices. A login prompt appears while a manager is moving between systems. A charity administrator receives a document request that appears to relate to a real funding conversation. A team member working from home needs access to a shared file before