Acute NHS Trust Cyber Security Transformation
Others deliver and disappear. We stay - to govern, harden, monitor, and evolve - turning frameworks into action, not just checklists.

Our Trust regards a proactive approach to data protection and cyber security as integral to patient
safety. With this in mind, we sought a Cyber Security Lead to provide general guidance and leadership to address our strategic risks around cyber security,
including building the bank of evidence of good practice required for our annual Data Security and Protection Toolkit (DSTP) assessment. MCS was brought in at a time when we wanted to overhaul our approach and increase our understanding of the potential threats. Their ability to share extensive knowledge of cyber security in an accessible manner is a key contributor to the successes that have followed, further extended by their insight into the workings of the NHS and the DSPT process.
MCS led both internal resources and third parties through the remediation required, providing insight, guidance and training where needed. They fostered an approach in line with Trust values, methodologies, and budget, providing out-of-the-box suggestions where appropriate and counselled us to avoid unnecessary cost. With the help provided, our acute Trust saw a significant reduction in our Microsoft Defender Threat and Vulnerability Score (TVM), and we strengthened our position across the DSPT.
In addition to this, in December 2021, MCS led the response to news of the Log4J global vulnerability, working quickly and efficiently, providing critical leadership, and overseeing the partnership between internal resources, NHS Digital, and third parties to reinforce the Trust’s posture in light of this zero-day exploit.
Overall, the Trust’s leadership has seen an improvement in the insight we have into our Cyber Security and Information Governance risks and the required mitigation required for internal assurance. In addition, whilst trialling the company’s proprietary tool, ‘DSPT View’, we have seen an increase in our knowledge and understanding across our technical teams, streamlined reporting at a senior management level and a clearer journey to enhancing our Cyber Security Posture.
Chief Digital Information Officer & SIRO






