Skip to main content

Written question asked by Baroness Finn (Conservative) on Tuesday, 20 May 2025, in the House of Lords. It was due for an answer on Wednesday, 4 June 2025. It was answered by Baroness Jones of Whitchurch (Labour) on Wednesday, 4 June 2025 on behalf of the Department for Science, Innovation and Technology.


Electronic Government

Question

To ask His Majesty's Government, further to the Written Answer by Baroness Jones of Whitchurch on 14 May (HL7013), whether the Cabinet Office Audit and Risk Committee was formally notified of the letter from the National Cyber Security Centre that warned of shortcomings and risks in the One Login system in September 2023; and if so, on what date they notified that committee; and whether they will place a copy of that letter in the Library of the House.

Answer

Representatives for GOV.UK One Login, attended two meetings into programme risks with the Cabinet Office Audit and Risk Committee (COARC), once in June 2023 and then again in April 2024. On both occasions cyber security risks that took into account NCSC advice were presented. GDS also raised cyber security as its top risk to the Cabinet Office in its quarterly risk reporting, a process which is now replaced by DSIT risk reporting.

A copy of the letter will not be placed in the Library of the House, as it forms part of ongoing security measures and internal governance processes.


Secondary information

Type
Written question
Reference
HL7652
Session
2024-26
Related items
Electronic Government
Wednesday, 14 May 2025
Written questions
House of Lords
Subjects
Electronic government Infrastructure and Projects Authority Cybersecurity National Cyber Security Centre Cabinet Office Audit and Risk Committee
Link
View this Written question on www.parliament.uk