Developer docs
API playgroundTry for free, no card

Search company profiles

National Cyber Security Centre

Full company profile

uuid0004dnp

Namestring
National Cyber Security Centre
Legal namestring
National Cyber Security Centre
Websiteurl
ncsc.gov.uk
Company typeenum
Private
Founded yearint
2016
Operating statusenum
Operating
Ownership categoryenum
Headcount rangeband
501–1,000
akta.pro rankint
HeadquartersLondon, United Kingdom
HQ citystring
London
HQ countrystring
United Kingdom
HQ regionstring
Europe
Markets served

Serves global market

Offices1 record

Each record includes

City, Country, Type, Description, Source

Keyword5 values
national cyber security, cyber threat intelligence, incident response services, cyber security certification, critical infrastructure protection
Industry4 codes
1Cyber Defense & Information Security (National Security)
CodeBPAIAHAEPrimaryYes
2Critical Infrastructure Protection (CIP) & NERC-CIP Compliance
CodeHDADAJACPrimaryNo
3Grid Cyber Risk Management, Governance, Compliance & Audit (NERC CIP/IEC 62443)
CodeEUADANACPrimaryNo
4Privacy, Data Protection & Cyber Governance (GRC)
CodeBPAHAFAFPrimaryNo
NAICS code3 codes
  • National Security928110
  • National Security and International Affairs9281
  • International Affairs92812
Product category
National Cyber Security Authority
GTM motion3 records

Each record includes

Type, Description, Source

Revenue model1 record
1Government Funding
TypeManaged Services
Description

NCSC operates as part of GCHQ and is funded by the UK government to provide free cyber security services to the public, businesses, and critical national infrastructure operators. As a government agency, its services are publicly funded and provided at no direct cost to end users.

ncsc.gov.uk
Marketing channels8 records

Each record includes

Title, Type, Stage, Description, Source

Distribution channels5 records

Each record includes

Title, Type, Scope, Target buyer, Description, Source

Cost components5 values
Personnel, Technology or R&D, Operations, Infrastructure, Others
Pricing details1 tier
1Free services for all UK organizations and citizens
ModelOtherBilling cadenceOther
Notes

NCSC provides free cyber security guidance, incident response, threat intelligence, and certifications (Cyber Essentials) at no cost. Services are funded by UK government appropriations.

ncsc.gov.uk
GTM typeB2B
B2B
Offering typeServices
Services
Brand1 of 6 records shown
1Cyber Essentials
Description

UK government-backed cybersecurity certification scheme administered by IASME and backed by NCSC to help organizations protect against common cyber threats.

ncsc.gov.uk
+5 more records
Core offering1 text field

The National Cyber Security Centre is the UK's national technical authority on cyber security, providing authoritative guidance, threat intelligence, and incident response to UK government departments, critical national infrastructure operators, businesses, and the public. It delivers government-backed products and services including Cyber Essentials certification, the Cyber Assessment Framework (CAF), the Early Warning Service, the Share and Defend programme with ISPs, the Vulnerability Monitoring Service, the Cyber Resilience Audit scheme, the CyberFirst education programme, the Cyber Action Toolkit, and the NCSC-engineered SilentGlass hardware device, all provided free of charge under UK government funding.

Differentiator
Functional benefit
Problem solved
Quantifiable outcome1 of 4 values shown
  • Over 200 cyber incidents affecting critical national infrastructure managed in year to May 2026
+3 more records
Product overview1 text field

The National Cyber Security Centre (NCSC) is the UK's technical authority on cybersecurity, operating as part of GCHQ. Rather than a commercial product company, NCSC provides government cybersecurity guidance, certification schemes, and advisory services. Its product portfolio includes SilentGlass (hardware cybersecurity device for HDMI/DisplayPort protection), Cyber Essentials (government-backed certification scheme), Cyber Assessment Framework (CAF guidance framework for critical infrastructure organizations), Early Warning Service (free threat alerts), Share and Defend (malicious site blocking with ISPs), Cyber Resilience Audit Scheme (assurance for independent cyber auditors), CyberFirst (education programmes), Cyber Action Toolkit (free small business guidance), and Vulnerability Monitoring Service (public sector monitoring). NCSC recommends passkeys as the primary authentication method over passwords.

Product and service9 records
1SilentGlass
CategoryHardware cybersecurity device
Description

A plug-and-play hardware cybersecurity device developed by NCSC that actively blocks malicious HDMI and DisplayPort connections, protecting against cyberattacks targeting monitors and display screens. Targets organisations with advanced security requirements including government departments, critical infrastructure operators, and businesses supporting hybrid work. The device is licensed to Goldilock Labs for global manufacture and sale, manufactured at the Sony UK Technology Centre.

2Cyber Essentials
CategoryCertification scheme
Description

UK government-backed cybersecurity certification scheme administered by IASME on behalf of NCSC. Protects organisations against the most common cyber threats by setting baseline technical controls. Version 3.3 makes multi-factor authentication mandatory on all cloud services. Suitable for organisations of all sizes.

3Cyber Assessment Framework (CAF)
CategoryGuidance framework
Description

A collection of cyber security guidance for organisations that play a vital role in the day-to-day life of the UK, with a focus on essential functions. Version 4.0 supports both internal assessments and external oversight bodies for compliance with the NIS Regulations.

4Early Warning Service
CategoryThreat intelligence service
Description

A free Active Cyber Defence service that provides email alerts to UK organisations tailored to cyber threats affecting their IP addresses, by analysing multiple threat intelligence feeds and sharing data with internet service providers. Sign-up takes approximately five minutes.

5Share and Defend
CategoryActive Cyber Defence programme
Description

Active Cyber Defence programme that shares real-time data on fraudulent and malicious websites with internet service providers, enabling automatic blocking of fake shops, phishing sites, and malicious links. Operates at ISP level with BT, EE, VodafoneThree, and PXC to protect 46 million mobile phone users and 12 million fixed-line internet subscribers.

6Cyber Resilience Audit (CRA) Scheme
CategoryAssurance scheme
Description

NCSC scheme that assures companies delivering independent cyber audits based on the Cyber Assessment Framework. Provides confidence that service providers meet NCSC technical standards for conducting CAF-based audits, initially supporting nationally critical sectors.

7CyberFirst
8Cyber Action Toolkit
9Vulnerability Monitoring Service (VMS)
Scale indicator6 records

Each record includes

Type, Value, Description, Source

Partnership17 partners
Strategic tierFlagshipTypeStrategic or Co-development PartnerAnnounced on2026-06-16
Description

NPL leads the £10 million National Quantum Standards Network, with NCSC participating as a core partner alongside BSI, UKRI's National Quantum Computing Centre, and UKQuantum to establish technical and cybersecurity standards for quantum technologies.

Strategic tierFlagshipTypeStrategic or Co-development PartnerAnnounced on2026-06-16
Description

BSI is a strategic partner in the National Quantum Standards Network, working with NCSC and other partners to develop internationally recognized performance benchmarks for quantum hardware and software architectures.

3UKRI National Quantum Computing Centre
Strategic tierFlagshipTypeStrategic or Co-development PartnerAnnounced on2026-06-16
Description

UKRI's NQCC participates in the National Quantum Standards Network to help the UK lead global quantum standards-setting decisions as part of the £2 billion National Quantum Strategy.

computerweekly.com
Strategic tierFlagshipTypeStrategic or Co-development PartnerAnnounced on2026-06-16
Description

UKQuantum consortium is a strategic partner in the National Quantum Standards Network, bringing together the quantum sector to oversee standards ranging from laser linewidths to energy efficiency and security requirements.

Strategic tierCoreTypeOEM/ Whitelabel/ Licensing PartnerAnnounced on2026-04-23
Description

Goldilock Labs has been licensed by NCSC to manufacture and globally sell SilentGlass, the world's first NCSC-engineered cybersecurity device that blocks malicious HDMI and DisplayPort connections. The device was previously deployed on Government estates and manufactured in partnership with Sony UK Technology Centre.

Strategic tierCoreTypeOEM/ Whitelabel/ Licensing PartnerAnnounced on2026-04-23
Description

Sony UK Technology Centre partnered with NCSC to manufacture SilentGlass, producing the hardware device at their UK facility. This partnership represents successful government IP commercialization of cybersecurity technology.

Strategic tierCoreTypeStrategic or Co-development Partner
Description

BT and EE are core partners in the Share and Defend programme, sharing real-time intelligence on malicious websites with NCSC to enable automatic blocking across their network of 46 million mobile users and 12 million fixed line subscribers. The programme has blocked nearly 1 billion attempts to access malicious websites.

Strategic tierCoreTypeStrategic or Co-development Partner
Description

VodafoneThree participates in the Share and Defend programme alongside BT and EE, contributing to the most extensive cyber defense programme in the world by sharing threat intelligence on fraudulent and malicious websites.

9PXC
Strategic tierCoreTypeStrategic or Co-development Partner
Description

PXC is a partner in the Share and Defend programme, collaborating with NCSC and other ISPs to expand coverage beyond current partners and protect more UK internet users from malicious websites.

computerweekly.com
Strategic tierCoreTypeStrategic or Co-development Partner
Description

Arqit has been selected by NCSC to participate in its Post-Quantum Cryptography Pilot under the Assured Cyber Security Consultancy Scheme. The partnership validates Arqit's methodology for cryptographic discovery and migration planning as part of UK quantum-safe encryption readiness.

Strategic tierFlagshipTypeStrategic or Co-development Partner
Description

DESNZ jointly developed the Energy Sector Cyber Security Strategy with NCSC, Ofgem, and NESO as 'Quad Partners', structured around five pillars covering threat understanding, resilience uplift, incident response, regulatory compliance, and cyber security culture.

Strategic tierFlagshipTypeStrategic or Co-development Partner
Description

Ofgem is a Quad Partner in developing the Energy Sector Cyber Security Strategy alongside NCSC, DESNZ, and NESO, addressing rising cyber threats to the UK's electricity, gas, and oil infrastructure.

Strategic tierFlagshipTypeStrategic or Co-development Partner
Description

NESO participates as Quad Partner in developing the Energy Sector Cyber Security Strategy, coordinating with NCSC, DESNZ, and Ofgem to ensure security and support transition to net zero energy.

Strategic tierCoreTypeChannel Partner/ Reseller/ Distributor
Description

IASME is the delivery partner for Cyber Essentials certification, administering the government-backed cybersecurity scheme on behalf of NCSC. The partnership provides baseline security certification accessible to organizations of all sizes.

15Five Eyes Intelligence Alliance (CISA, ASD, CCCS, NCSC NZ)
Strategic tierCoreTypeStrategic or Co-development Partner
Description

NCSC participates in the Five Eyes intelligence-sharing alliance with US (CISA), Australia (ASD), Canada (CCCS), and New Zealand (NCSC NZ) to coordinate cyber defense, publish joint advisories, and share threat intelligence on nation-state actors.

computerweekly.com
Strategic tierCoreTypeStrategic or Co-development Partner
Description

FBI collaborates with NCSC on cyber investigations, joint advisories on threat actors (APT28, Volt Typhoon, Flax Typhoon), and international cybercrime response including the Jaguar Land Rover investigation.

Strategic tierCoreTypeStrategic or Co-development Partner
Description

NSA works with NCSC on joint cyber security advisories, particularly regarding Chinese threat actors (Volt Typhoon, Flax Typhoon) and edge device vulnerabilities, coordinating responses to covert networks of compromised devices.

Recent move6 records

Each record includes

Date, Type, Title, Description, Source

Expansion highlight6 records

Each record includes

Type, Description

Peers10 records
TypeBroad incumbent
Description

The US signals intelligence and cybersecurity agency. NSA's Cybersecurity Directorate provides threat advisories, vulnerability management, and classified intelligence-derived guidance — sharing with NCSC under Five Eyes. Broader intelligence mission makes it an incumbent rather than a direct peer.

TypeRegional player
Description

Japan's national cybersecurity policy coordination center under the Cabinet Secretariat. Performs analogous government cybersecurity strategy and incident coordination functions for Japan but with a more strategic/policy emphasis than NCSC's operational incident response profile.

3European Union Agency for Cybersecurity (ENISA)
TypeBroad incumbent
Description

The EU's cybersecurity agency, coordinating cyber resilience across member states. Overlaps with NCSC's pan-European normative role (NIS2, Cyber Resilience Act) but operates at supranational level rather than as a single national authority.

TypeDirect peer
Description

The US national cybersecurity authority and NCSC's closest Five Eyes counterpart. CISA performs the same operational mission — critical infrastructure protection, incident response, threat advisories, and public-sector cyber guidance — and coordinates with NCSC on joint advisories (Volt Typhoon, Flax Typhoon), making it the most directly comparable peer.

TypeDirect peer
Description

Canada's unified national cyber authority under the Communications Security Establishment. CCCS provides near-identical functions to NCSC — threat assessment, incident response, IT security guidance for government and critical infrastructure — and is a direct Five Eyes coordination partner.

6Bundesamt für Sicherheit in der Informationstechnik (BSI)
TypeDirect peer
Description

Germany's federal cybersecurity authority, a close functional counterpart providing IT baseline protection, certification schemes (ISO 27001, BSI-Grundschutz), and critical infrastructure oversight. Comparable scope and regulatory weight to NCSC within the EU.

TypeDirect peer
Description

France's national cybersecurity authority under the SGDSN. ANSSI combines regulatory authority (security visas, certifications like CSPN), incident response (CERT-FR), and critical infrastructure protection — a structurally equivalent role to NCSC in continental Europe.

8Israel National Cyber Directorate (INCD)
TypeDirect peer
Description

Israel's national cybersecurity authority combining operational CERT-IL functions, threat intelligence, critical infrastructure protection, and capacity building. Structurally equivalent to NCSC and widely regarded as a global benchmark for national cyber authorities.

TypeDirect peer
Description

New Zealand's national computer emergency response team within the Government Communications Security Bureau. Operates a near-identical mission and product portfolio to NCSC UK (CERT functions, threat advisories, critical infrastructure guidance) and shares the NCSC brand identity.

TypeDirect peer
Description

Australia's national cybersecurity authority within ASD. ACSC publishes the Essential Eight maturity model and Shares threat intelligence with NCSC under Five Eyes, operating the equivalent mix of public guidance, incident response, and critical-infrastructure protection that defines NCSC.

Market position
Strengths5 records

Each record includes

Headline, Details, Source

Weaknesses4 records

Each record includes

Headline, Details, Source

Competitive moat6 records

Each record includes

Type, Details

Key risks1 record

Each record includes

Headline, Details, Source

Key highlights7 records

Each record includes

Headline, Details, Source

Customer concentration

Classification, Details

Named customers6 records

Each record includes

Name, Industry, Type, Use case, Source, UUID

Segment5 records

Each record includes

Title, Type, Primary, Description, Pain point addressed, Use case, Source

Ideal customer profile5 records

Each record includes

Profile, Firmographic size, Sales motion, Sales cycle length, Buying structure, Purchase trigger, Buyer persona, Geography, Industry vertical, Primary use case, Description, Pain points, Evidence proof points, Target buyer

Technology focused
Yes
API detail
Has APIbool
No

Docs URL, Description

AI capability5 records

Each record includes

Type, Description, Source

AI maturity
App detail

Has app

Feature4 records

Each record includes

Title, Differentiator, Description, Source

Core technology
Revenue estimate
Valuation estimate
Number of profiles
Profiles8 records

Each record includes

Name, Designation, Designation category, Overview, Profile commentary, Source

No data
No data
Funding overview

Funding stage, Last funding date, Total funding USD

Funding rounds

Each record includes

Round, Amount USD, Date, Pre money valuation, Total investors, Investors, News

Investors

Each record includes

Name, Type, Date of entry, Rounds participated, Website

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

M&A

Each record includes

Name, Acquisition type, Announced date, Completed date, Status, Website, News

Investment

Each record includes

Name, Round, Announced date, Lead investor, Website, News

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

National Cyber Security Centre

National Cyber Security Authorityncsc.gov.uk

National Cyber Security Centre firmographics

Firmographics
Name
National Cyber Security Centre
Legal name
National Cyber Security Centre
Website
https://ncsc.gov.uk
Company type
Private
Founded year
2016
Operating status
Operating
Headcount range
501–1,000 employees
Ownership category
akta.pro rank

National Cyber Security Centre industry classification

Industry
Product category
National Cyber Security Authority
NAICS
National Security (928110), National Security and International Affairs (9281), International Affairs (92812)
akta.pro primary industry
Cyber Defense & Information Security (National Security) (BPAIAHAE)
akta.pro secondary industries
Critical Infrastructure Protection (CIP) & NERC-CIP Compliance (HDADAJAC), Grid Cyber Risk Management, Governance, Compliance & Audit (NERC CIP/IEC 62443) (EUADANAC), Privacy, Data Protection & Cyber Governance (GRC) (BPAHAFAF)

Keywords

  • National cyber security
  • Cyber threat intelligence
  • Incident response services
  • Cyber security certification
  • Critical infrastructure protection

Where National Cyber Security Centre is headquartered

Location

Headquarters

HQ city
London
HQ country
United Kingdom
HQ region
Europe

Offices1 record

Markets served

National Cyber Security Centre business model

Business model
GTM type
B2B
Offering type
Services
Cost components
Personnel, Technology or R&D, Operations, Infrastructure, Others

Revenue model

  1. Government Funding: NCSC operates as part of GCHQ and is funded by the UK government to provide free cyber security services to the public, businesses, and critical national infrastructure operators. As a government agency, its services are publicly funded and provided at no direct cost to end users.

Pricing tiers

ModelBillingPrice
OtherOtherFree services for all UK organizations and citizens

Go-to-market motion3 records

Distribution channels5 records

Marketing channels8 records

National Cyber Security Centre product offering

Product offering

Core offering

The National Cyber Security Centre is the UK's national technical authority on cyber security, providing authoritative guidance, threat intelligence, and incident response to UK government departments, critical national infrastructure operators, businesses, and the public. It delivers government-backed products and services including Cyber Essentials certification, the Cyber Assessment Framework (CAF), the Early Warning Service, the Share and Defend programme with ISPs, the Vulnerability Monitoring Service, the Cyber Resilience Audit scheme, the CyberFirst education programme, the Cyber Action Toolkit, and the NCSC-engineered SilentGlass hardware device, all provided free of charge under UK government funding.

Product overview

The National Cyber Security Centre (NCSC) is the UK's technical authority on cybersecurity, operating as part of GCHQ. Rather than a commercial product company, NCSC provides government cybersecurity guidance, certification schemes, and advisory services. Its product portfolio includes SilentGlass (hardware cybersecurity device for HDMI/DisplayPort protection), Cyber Essentials (government-backed certification scheme), Cyber Assessment Framework (CAF guidance framework for critical infrastructure organizations), Early Warning Service (free threat alerts), Share and Defend (malicious site blocking with ISPs), Cyber Resilience Audit Scheme (assurance for independent cyber auditors), CyberFirst (education programmes), Cyber Action Toolkit (free small business guidance), and Vulnerability Monitoring Service (public sector monitoring). NCSC recommends passkeys as the primary authentication method over passwords.

Differentiator

Problem solved

Functional benefit

Brands

  • Cyber Essentials: UK government-backed cybersecurity certification scheme administered by IASME and backed by NCSC to help organizations protect against common cyber threats.
  • SilentGlass
  • Cyber Assessment Framework (CAF)
  • CyberFirst
  • CYBERUK
  • Early Warning Service

Products and services

  • SilentGlass A plug-and-play hardware cybersecurity device developed by NCSC that actively blocks malicious HDMI and DisplayPort connections, protecting against cyberattacks targeting monitors and display screens. Targets organisations with advanced security requirements including government departments, critical infrastructure operators, and businesses supporting hybrid work. The device is licensed to Goldilock Labs for global manufacture and sale, manufactured at the Sony UK Technology Centre.
  • Cyber Essentials UK government-backed cybersecurity certification scheme administered by IASME on behalf of NCSC. Protects organisations against the most common cyber threats by setting baseline technical controls. Version 3.3 makes multi-factor authentication mandatory on all cloud services. Suitable for organisations of all sizes.
  • Cyber Assessment Framework (CAF) A collection of cyber security guidance for organisations that play a vital role in the day-to-day life of the UK, with a focus on essential functions. Version 4.0 supports both internal assessments and external oversight bodies for compliance with the NIS Regulations.
  • Early Warning Service A free Active Cyber Defence service that provides email alerts to UK organisations tailored to cyber threats affecting their IP addresses, by analysing multiple threat intelligence feeds and sharing data with internet service providers. Sign-up takes approximately five minutes.
  • Share and Defend Active Cyber Defence programme that shares real-time data on fraudulent and malicious websites with internet service providers, enabling automatic blocking of fake shops, phishing sites, and malicious links. Operates at ISP level with BT, EE, VodafoneThree, and PXC to protect 46 million mobile phone users and 12 million fixed-line internet subscribers.
  • Cyber Resilience Audit (CRA) Scheme NCSC scheme that assures companies delivering independent cyber audits based on the Cyber Assessment Framework. Provides confidence that service providers meet NCSC technical standards for conducting CAF-based audits, initially supporting nationally critical sectors.
  • CyberFirst
  • Cyber Action Toolkit
  • Vulnerability Monitoring Service (VMS)

Quantifiable outcome

  • Over 200 cyber incidents affecting critical national infrastructure managed in year to May 2026
  • +3 more outcomes

Companies that use National Cyber Security Centre

Customer profile

Named customers6 records

Segments5 records

Ideal customer profiles5 records

National Cyber Security Centre technology and API

Technology

Technology focussed Yes

API detail

Has API
No
API docs
API detail

Core technology

AI maturity

App detail

AI capability5 records

Feature4 records

National Cyber Security Centre partnerships and signals

Strategic signal

Partnerships

17 partnerships are on record, tiered flagship and core.

  • National Physical Laboratory (NPL)flagshipStrategic or Co-development Partner · 16 June 2026NPL leads the £10 million National Quantum Standards Network, with NCSC participating as a core partner alongside BSI, UKRI's National Quantum Computing Centre, and UKQuantum to establish technical and cybersecurity standards for quantum technologies.
  • British Standards Institution (BSI)flagshipStrategic or Co-development Partner · 16 June 2026BSI is a strategic partner in the National Quantum Standards Network, working with NCSC and other partners to develop internationally recognized performance benchmarks for quantum hardware and software architectures.
  • UKRI National Quantum Computing CentreflagshipStrategic or Co-development Partner · 16 June 2026UKRI's NQCC participates in the National Quantum Standards Network to help the UK lead global quantum standards-setting decisions as part of the £2 billion National Quantum Strategy.
  • UKQuantumflagshipStrategic or Co-development Partner · 16 June 2026UKQuantum consortium is a strategic partner in the National Quantum Standards Network, bringing together the quantum sector to oversee standards ranging from laser linewidths to energy efficiency and security requirements.
  • Goldilock LabscoreOEM/ Whitelabel/ Licensing Partner · 23 April 2026Goldilock Labs has been licensed by NCSC to manufacture and globally sell SilentGlass, the world's first NCSC-engineered cybersecurity device that blocks malicious HDMI and DisplayPort connections. The device was previously deployed on Government estates and manufactured in partnership with Sony UK Technology Centre.
  • Sony UK Technology CentrecoreOEM/ Whitelabel/ Licensing Partner · 23 April 2026Sony UK Technology Centre partnered with NCSC to manufacture SilentGlass, producing the hardware device at their UK facility. This partnership represents successful government IP commercialization of cybersecurity technology.
  • BT Group (including EE)coreStrategic or Co-development PartnerBT and EE are core partners in the Share and Defend programme, sharing real-time intelligence on malicious websites with NCSC to enable automatic blocking across their network of 46 million mobile users and 12 million fixed line subscribers. The programme has blocked nearly 1 billion attempts to access malicious websites.
  • VodafoneThreecoreStrategic or Co-development PartnerVodafoneThree participates in the Share and Defend programme alongside BT and EE, contributing to the most extensive cyber defense programme in the world by sharing threat intelligence on fraudulent and malicious websites.
  • PXCcoreStrategic or Co-development PartnerPXC is a partner in the Share and Defend programme, collaborating with NCSC and other ISPs to expand coverage beyond current partners and protect more UK internet users from malicious websites.
  • Arqit QuantumcoreStrategic or Co-development PartnerArqit has been selected by NCSC to participate in its Post-Quantum Cryptography Pilot under the Assured Cyber Security Consultancy Scheme. The partnership validates Arqit's methodology for cryptographic discovery and migration planning as part of UK quantum-safe encryption readiness.
  • Department for Energy Security and Net Zero (DESNZ)flagshipStrategic or Co-development PartnerDESNZ jointly developed the Energy Sector Cyber Security Strategy with NCSC, Ofgem, and NESO as 'Quad Partners', structured around five pillars covering threat understanding, resilience uplift, incident response, regulatory compliance, and cyber security culture.
  • OfgemflagshipStrategic or Co-development PartnerOfgem is a Quad Partner in developing the Energy Sector Cyber Security Strategy alongside NCSC, DESNZ, and NESO, addressing rising cyber threats to the UK's electricity, gas, and oil infrastructure.
  • National Energy System Operator (NESO)flagshipStrategic or Co-development PartnerNESO participates as Quad Partner in developing the Energy Sector Cyber Security Strategy, coordinating with NCSC, DESNZ, and Ofgem to ensure security and support transition to net zero energy.
  • IASMEcoreChannel Partner/ Reseller/ DistributorIASME is the delivery partner for Cyber Essentials certification, administering the government-backed cybersecurity scheme on behalf of NCSC. The partnership provides baseline security certification accessible to organizations of all sizes.
  • Five Eyes Intelligence Alliance (CISA, ASD, CCCS, NCSC NZ)coreStrategic or Co-development PartnerNCSC participates in the Five Eyes intelligence-sharing alliance with US (CISA), Australia (ASD), Canada (CCCS), and New Zealand (NCSC NZ) to coordinate cyber defense, publish joint advisories, and share threat intelligence on nation-state actors.
  • FBI (United States)coreStrategic or Co-development PartnerFBI collaborates with NCSC on cyber investigations, joint advisories on threat actors (APT28, Volt Typhoon, Flax Typhoon), and international cybercrime response including the Jaguar Land Rover investigation.
  • NSA (United States)coreStrategic or Co-development PartnerNSA works with NCSC on joint cyber security advisories, particularly regarding Chinese threat actors (Volt Typhoon, Flax Typhoon) and edge device vulnerabilities, coordinating responses to covert networks of compromised devices.

Scale indicators6 records

Recent moves6 records

Expansion highlights6 records

National Cyber Security Centre competitors and assessment

Company assessment

Broad incumbents

  • National Security Agency (NSA) — Cybersecurity Directorate: The US signals intelligence and cybersecurity agency. NSA's Cybersecurity Directorate provides threat advisories, vulnerability management, and classified intelligence-derived guidance — sharing with NCSC under Five Eyes. Broader intelligence mission makes it an incumbent rather than a direct peer.
  • European Union Agency for Cybersecurity (ENISA): The EU's cybersecurity agency, coordinating cyber resilience across member states. Overlaps with NCSC's pan-European normative role (NIS2, Cyber Resilience Act) but operates at supranational level rather than as a single national authority.

Regional players

Direct peers

  • Cybersecurity and Infrastructure Security Agency (CISA): The US national cybersecurity authority and NCSC's closest Five Eyes counterpart. CISA performs the same operational mission — critical infrastructure protection, incident response, threat advisories, and public-sector cyber guidance — and coordinates with NCSC on joint advisories (Volt Typhoon, Flax Typhoon), making it the most directly comparable peer.
  • Canadian Centre for Cyber Security (CCCS): Canada's unified national cyber authority under the Communications Security Establishment. CCCS provides near-identical functions to NCSC — threat assessment, incident response, IT security guidance for government and critical infrastructure — and is a direct Five Eyes coordination partner.
  • Bundesamt für Sicherheit in der Informationstechnik (BSI): Germany's federal cybersecurity authority, a close functional counterpart providing IT baseline protection, certification schemes (ISO 27001, BSI-Grundschutz), and critical infrastructure oversight. Comparable scope and regulatory weight to NCSC within the EU.
  • Agence Nationale de la Sécurité des Systèmes d'Information (ANSSI): France's national cybersecurity authority under the SGDSN. ANSSI combines regulatory authority (security visas, certifications like CSPN), incident response (CERT-FR), and critical infrastructure protection — a structurally equivalent role to NCSC in continental Europe.
  • Israel National Cyber Directorate (INCD): Israel's national cybersecurity authority combining operational CERT-IL functions, threat intelligence, critical infrastructure protection, and capacity building. Structurally equivalent to NCSC and widely regarded as a global benchmark for national cyber authorities.
  • National Cyber Security Centre New Zealand (NCSC NZ): New Zealand's national computer emergency response team within the Government Communications Security Bureau. Operates a near-identical mission and product portfolio to NCSC UK (CERT functions, threat advisories, critical infrastructure guidance) and shares the NCSC brand identity.
  • Australian Signals Directorate (ASD) — Australian Cyber Security Centre (ACSC): Australia's national cybersecurity authority within ASD. ACSC publishes the Essential Eight maturity model and Shares threat intelligence with NCSC under Five Eyes, operating the equivalent mix of public guidance, incident response, and critical-infrastructure protection that defines NCSC.

Market position

Strengths5 records

Weaknesses4 records

Competitive moat6 records

Key risks1 record

Key highlights7 records

Customer concentration

National Cyber Security Centre social profiles

Digital presence

National Cyber Security Centre financial estimates

Financial estimate

Revenue estimate

Valuation estimate

National Cyber Security Centre leadership team

Management profile

Number of profiles

Profiles8 records

National Cyber Security Centre funding detail

Funding detail

Funding overview

Funding rounds

Investors

Funding detail is available on the Subscription and Enterprise plan.Contact sales →

National Cyber Security Centre M&A and investment

M&A and investment

M&A

Investments

M&A and investment is available on the Subscription and Enterprise plan.Contact sales →

Frequently asked questions about National Cyber Security Centre

What does National Cyber Security Centre do?

The National Cyber Security Centre is the UK's national technical authority on cyber security, providing authoritative guidance, threat intelligence, and incident response to UK government departments, critical national infrastructure operators, businesses, and the public. It delivers government-backed products and services including Cyber Essentials certification, the Cyber Assessment Framework (CAF), the Early Warning Service, the Share and Defend programme with ISPs, the Vulnerability Monitoring Service, the Cyber Resilience Audit scheme, the CyberFirst education programme, the Cyber Action Toolkit, and the NCSC-engineered SilentGlass hardware device, all provided free of charge under UK government funding.

Is National Cyber Security Centre a public or private company?

National Cyber Security Centre is a private company. It is classified as state government owned and is currently operating.

When was National Cyber Security Centre founded?

National Cyber Security Centre was founded in 2016. It employs 501 to 1,000 people.

Where is National Cyber Security Centre based?

National Cyber Security Centre is headquartered in London, United Kingdom, in the Europe region.

How does National Cyber Security Centre make money?

One revenue line is on record: government Funding.

Who are National Cyber Security Centre's main competitors?

Broad incumbents on record are National Security Agency (NSA) — Cybersecurity Directorate and European Union Agency for Cybersecurity (ENISA). Japan's National Center of Incident Readiness and Strategy for Cybersecurity (NISC) is listed as a regional player. Direct peers are Cybersecurity and Infrastructure Security Agency (CISA), Canadian Centre for Cyber Security (CCCS), Bundesamt für Sicherheit in der Informationstechnik (BSI), Agence Nationale de la Sécurité des Systèmes d'Information (ANSSI), Israel National Cyber Directorate (INCD), National Cyber Security Centre New Zealand (NCSC NZ) and Australian Signals Directorate (ASD) — Australian Cyber Security Centre (ACSC).

Does National Cyber Security Centre have an API?

No public API is recorded for National Cyber Security Centre.

What industry is National Cyber Security Centre in?

National Cyber Security Centre's product category is National Cyber Security Authority. Its primary akta.pro industry code is BPAIAHAE, Cyber Defense & Information Security (National Security), with a secondary code of HDADAJAC, Critical Infrastructure Protection (CIP) & NERC-CIP Compliance. Its NAICS code is 928110.

Unlock the full company data

50 free credits on sign-up, no credit card required.

Contact sales
Live signals
NZ HeraldNorth Korea uses remote IT worker to clandestinely earn NZ currencyNorth Korea used an IT worker with a false identity to obtain remote work with a New Zealand business, earning foreign currency. The National Cyber Security Centre's annual report labeled this a new threat in a rapidly changing cyber hazards landscape.DevdiscourseGlobal Alert: Iranian Spyware Targeting Activists RevealedBritain, the US, and the Netherlands jointly issued a cybersecurity alert warning against Iranian spyware targeting dissidents and activists. The UK's National Cyber Security Centre identified 'CHOSEN BRICK' as the weapon, exploiting WhatsApp and Telegram via spear-phishing. The advisory urges heightened vigilance among potential targets.TechRadarHow did Iran manage to knock a UK power generator offline for four days, and what does it mean for other critical infrastructure? The experts weigh inA UK power generation plant was taken offline for four days after a cyberattack attributed to Iran, which has stepped up offensive cyber warfare since February 2026. The UK government said the small-scale generator did not threaten the wider energy system, but experts warn it demonstrates state-linked hackers can penetrate critical infrastructure. The UK's National Cyber Security Centre issued new guidance on protecting operational technology devices.IndustrialcyberUK NCSC warns of increased OT targeting as threat actors exploit internet-exposed systems and edge devicesThe U.K. National Cyber Security Centre issued a Thursday advisory warning of increased targeting of operational technology systems globally, including in the U.K., with activity by multiple threat actors causing limited real-world disruption. It urged organizations to inventory internet-facing assets, retire end-of-life equipment, disable insecure protocols such as SNMP v1, v2 and Telnet, and segment management, OT and IT networks. The NCSC also recommended registering for its free Early Warning service.TechRoundHackers Shut Down A UK Power Plant – Are Cyberattacks Moving From Data Theft to Physical Interruption?A UK electricity generator was taken offline for four days in July 2026 following a cyberattack reportedly linked to Iranian hackers, with the National Cyber Security Centre intervening. Officials said the grid remained secure and the plant was "tiny," but experts say the four-day OT recovery time reveals weak IT-OT segmentation and untested recovery playbooks.ITProZero-click email attacks: What businesses need to knowThe UK's National Cyber Security Centre issued an alert on "beehive" zero-click phishing attacks by Russian group Laundry Bear (TA488/Void Blizzard) exploiting Zimbra Collaboration Suite and Outlook Web Access vulnerabilities. The campaign ran at least five months against Ukrainian and US defence targets, exfiltrating 90 days of email, session tokens and saved credentials. Experts advise patching, shortening token lifetimes and isolating sessions.AOL.comIran-linked hackers took U.K. power plant offline for first time, reports sayBritish media reported that Iranian-linked hackers temporarily took a UK power plant offline in July, the first time such a facility was shut down by Iranian-linked actors in the country. The plant was down for four days, and officials said it was a small-scale facility that did not affect the UK's overall power supply. The National Cyber Security Centre neither confirmed nor denied the attack.IndustrialcyberUK NCSC calls for risk-based controls as organizations deploy increasingly autonomous AI agentsThe U.K. National Cyber Security Centre issued practical guidance on deploying agentic AI systems, urging organizations to match agent autonomy with acceptable risk and apply controls beyond built-in model safeguards. Recommendations include threat modelling, sandboxing, restricted credentials, observability and immediate shutdown capabilities. The NCSC said formal guidance is still being developed.AOL.comUK briefs energy chiefs after Iran-linked cyber attack reportsThe UK government briefed energy company chiefs on protective measures following reports that Iran-linked hackers disabled a small energy facility in July. Minister Michael Shanks confirmed the incident did not threaten the wider electricity grid or cause power outages for consumers. Officials are currently collaborating with regulators and the National Cyber Security Centre to assess threats and strengthen infrastructure defenses.The IndependentIranian hackers carry out unprecedented attack on UK’s power networkAn Iranian-affiliated cyberattack forced a small-scale UK power generator to shut down for four days, marking the first known instance of such an attack on a UK energy facility. The incident was reported to the National Cyber Security Centre (NCSC), prompting government briefings for power companies and businesses regarding cybersecurity protocols.