Electronic Government: Cybersecurity

(asked on 18th June 2025) - View Source

Question to the Department for Science, Innovation & Technology:

To ask His Majesty's Government whether any departments or government agencies monitor the use of insecure or vulnerable container images within government IT systems; and, if so, whether they will publish the latest audit data on the number of container images in use that contain critical or high-severity vulnerabilities.


Answered by
Baroness Jones of Whitchurch Portrait
Baroness Jones of Whitchurch
Baroness in Waiting (HM Household) (Whip)
This question was answered on 2nd July 2025

All government departments and their Arms Length Bodies must meet the Government Cyber Security Standard, which specifies that organisations shall meet or exceed the security outcomes specified in the National Cyber Security Centre’s Cyber Assessment Framework (CAF). Principle B4 of the CAF on system security requires departments to manage vulnerabilities on their systems.

His Majesty’s Government does not hold a central view of departmental or agency vulnerabilities.

Reticulating Splines