Title

SOLACE

Cyber security must be managed and understood at all levels

It is not a question of if we will be threatened by a cyber attack, but when, writes Jo Miller.

As NHS systems were attacked this month, I could understand what our health colleagues were going through.

In 2015, Doncaster MBC was attacked by ransomware. The immediate priority was to invoke our cyber security incident response plan, meaning we shut down our entire system within 15 minutes. Due to our highly skilled response team quickly implementing our plans, we had fully recovered that evening, without losing any data.

Threats like these happen daily and they are becoming more sophisticated. Every business and organisation must be prepared and have the right systems and monitoring in place. Acting quickly is vital to minimise impact.

For councils and public sector organisations it is not a question of if we will be threatened by a cyber attack, but when. IT controls can help manage threats but we need to be vigilant and trained in how to stop this spreading. Cyber crime is here to stay – it generates vast sums of money for criminals with little risk or outlay.

Frequent emails go out to my staff to remind them not to open attachments if they don't know the source and all staff are encouraged to complete training modules on cyber security.

That afternoon, back in 2015, was testing in a range of ways. We were unable to use IT systems, emails and telephone systems. Communicating during an emergency is key, but how do you communicate when we have become so reliant on email, texts and telephones?

Notice boards were put up on all floors to provide updates. Staff cleaned out their lockers, got together, discussed current work and shared ideas.

Technical controls reduce risks but will never give us 100% security, and it's not just an IT issue. People are our weakest link and cyber criminals research social media to mine personal information.

Cyber crime is a corporate risk to be managed and understood at all levels, and that starts at the top.

People and data are our greatest enablers and our greatest assets. We must protect them both in terms of investment. None of this back office/front office distinction – they are different sides of the same coin.

We managed our attack well but we are not complacent. It may happen again and we are ready for it.

Jo Miller is chief executive of Doncaster MBC

SOLACE

Turning neighbourhood health from policy into practice

By Helen Bromley | 19 June 2026

The chairs of Cheshire and Merseyside’s All Together Fairer Board and Neighbourhoods Task and Finish Group set out how the subregion’s neighbourhood approach...

SOLACE

Seizing the opportunity of local government reorganisation

By Cllr Richard Wright | 19 June 2026

Rather than recreating existing structures, councils should use reorganisation to transform services, strengthen local accountability and improve outcomes fo...

SOLACE

The social value 'black hole': ensuring the evidence follows the public sector promise

By Steve Butterworth | 17 June 2026

If we want social value to carry the weight it now commands in procurement, we must design for delivery and measurement from day one, says Steve Butterworth.

SOLACE

Using data to improve supplier payment efficiency

By Linda Weston - Head of Commercial Cards, Lloyds | 17 June 2026

Optima, Lloyds’ supplier payment data analysis tool, brings together deep payments expertise and practical analysis to help organisations explore smarter, mo...

Popular articles by Jo Miller