From b46a75cf994f8edce1aaa99ac178424be1fd78e7 Mon Sep 17 00:00:00 2001 From: karlchillmaid Date: Fri, 14 Jan 2022 11:07:25 +0000 Subject: [PATCH] Add anchor IDs --- app/templates/views/security.html | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/app/templates/views/security.html b/app/templates/views/security.html index 771fad40b..34c8fa28f 100644 --- a/app/templates/views/security.html +++ b/app/templates/views/security.html @@ -15,7 +15,7 @@
  • manage risks around information
  • -

    Data

    +

    Data

    On Notify, data is encrypted:

    -

    Technical security

    +

    Technical security

    Other technical security controls on Notify include:

    If signing in with a text message is a problem for your team, contact us to find out about using an email link instead.

    -

    Information risk management

    +

    Information risk management

    Our approach to information risk management follows NCSC guidance. It assesses:

    This approach also applies to the service providers Notify uses to send messages.

    -

    How we manage risks on Notify

    +

    How we manage risks on Notify

    Things we do to manage risks on Notify include:

    -

    Cabinet Office approval

    +

    Cabinet Office approval

    Notify has been assessed and approved by the Cabinet Office Senior Information Risk Officer (SIRO). The SIRO checks this approval once a year.

    Notify also has approval from the Office of the Government’s SIRO to host data within the EEA.

    -

    Classifications and security vetting

    +

    Classifications and security vetting

    You can use Notify to send messages classified as ‘OFFICIAL’ or ‘OFFICIAL-SENSITIVE’ under the Government Security Classifications policy.

    Notify does not process data classified as ‘SECRET’ or ‘TOP SECRET’.

    The Notify team has Security Check (SC) level clearance from United Kingdom Security Vetting (UKSV).