On 12 November 2025 the Cyber Security and Resilience (Network and Information Systems) Bill was introduced to the UK Parliament.
The intention of the bill is to protect essential public services and critical infrastructure from cyber-attacks. The bill aims to accomplish this by:
- Reforming and expanding the Network and Information Systems Regulations 2018 to cover more sectors and suppliers.
- Delivering “a more consistent and effective regime, with expanded and more timely reporting of harmful cyber attacks, a stronger mechanism for government to set priority outcomes for regulators to work to, and a fuller toolkit for sharing information, recovering costs and enforcement.”
- Allowing the government to be more agile in responding to developments in the cybersecurity landscape
The text of the bill can be found here.