Hansard

Cyber Security and Resilience (Network and Information Systems) Bill

House of Lords · Grand Committee · 1 Sep 2026 · 166 speeches · Official Report

  1. Committee (1st Day)

    HL Deb 1 Sep 2026, vol 859, col 1GC

  2. Northern Ireland, Scottish and Welsh legislative consent sought. Relevant documents: 3rd Report from the Constitution Committee, 7th Report from the Delegated Powers Committee .

    HL Deb 1 Sep 2026, vol 859, col 1GC

  3. Clause 1 agreed.

    HL Deb 1 Sep 2026, vol 859, col 1GC

  4. Clause 2: Overview of Act

    HL Deb 1 Sep 2026, vol 859, col 1GC

  5. Amendment 1

    HL Deb 1 Sep 2026, vol 859, col 1GC

  6. Moved by

    HL Deb 1 Sep 2026, vol 859, col 1GC

  7. 1: Clause 2, page 2, line 13, leave out “on the Secretary of State” Member's explanatory statement This amendment is consequential on my new Clause (Functions under this Part).

    HL Deb 1 Sep 2026, vol 859, col 1GC

  8. Baroness Lloyd of Effra

    My Lords, I will also speak to the other amendments in my name in this group. I thank noble Lords for their constructive engagement on this topic over the Summer Recess. I particularly thank the noble Viscount, Lord Camrose, and his colleagues for sending their questions in advance. I will seek to address those in my opening remarks. This package of amendments introduces new powers that will enable the UK to address vendor-related cyber risks in our critical infrastructure. The principal new clause introduces a new direction power. It enables the Secretary of State to direct entities in scope of the power where they are using, or may potentially use, vendor-supplied goods, services or facilities in connection with their network and information systems that could create national security risks. It is becoming increasingly clear that there are axes of cyber risks that the Government need to address. These risks arise from goods or services supplied by another company being harnessed as tools for sabotage, surveillance or espionage. But they also exist where goods or services constitute critical points of failure due to their defective design or vulnerabilities. Noble Lords would have had some sense of these risks from debates during this Bill-in particular, discussions about remote access in embedded products such as cellular modules and the scope for hostile interference and control. GCHQ has also raised escalating concerns about supply-chain vulnerabilities in the wider...

    HL Deb 1 Sep 2026, vol 859, col 1GC

  9. Lord Clement-Jones

    My Lords, I assume that there are no Back-Bench contributions at this point, so I will speak on behalf of the Liberal Democrats to this very significant group of amendments tabled by the Minister as recently as 24 August. I thank her for her introduction today and for her brief meeting shortly after their tabling. At the outset, from these Benches we express our strong concern about the timing and the sheer scale of the Government’s package of new amendments. To drop 65 amendments of this nature on the eve of Committee, which will completely reshape the architecture of this Bill, after its passage through the Commons, is a major challenge to effective parliamentary scrutiny. The Minister’s letter, also dated 24 August, came alongside these 65 new amendments, so we have had very little time to consider them. As far as I can see, a full Ministerial Statement did not accompany them; we had to rely on the coverage of Computer Weekly to understand the Government’s motives. The Government have quietly established a major parallel high-risk vendor regime. Under Amendments 102 and 103, the Secretary of State-and now, crucially, under Amendment 101, the Chancellor of the Duchy of Lancaster-are granted unilateral powers to issue vendor-related directions. They can legally order an organisation to prohibit, restrict, remove, disable or modify any software, hardware or digital facility supplied by a designated high-risk vendor. Furthermore, under Amendment 105 they are given the power...

    HL Deb 1 Sep 2026, vol 859, col 2GC

  10. Lord Holmes of Richmond

    My Lords, I apologise for not speaking before the Liberal Front Bench, but the great news for everybody in Grand Committee is that I am not the Conservative Front Bench. That is good to know. I declare my relevant technology interests as adviser to the Crown Estate and to Simmons & Simmons LLP. I have just a few questions for the Minister, most of which revolve around what was known when the Bill was in the Commons and what has become known since it was in your Lordships’ House at Second Reading that have required this raft of amendments to come forward over August. The Minister, in her opening, described defective by design; this is an interesting principle, which could have broad applicability, but, as the noble Lord, Lord Clement-Jones, said, we were clearly told at Second Reading that AI and all therein were not in the scope of this Bill. Does this raft of government amendments change that fundamentally? Is it a nod or hint to it? Is this a large, fundamental change in the Government’s policy approach to large language models and enhanced AI, as covered by this raft of proposed amendments? Is the Minister’s view that changes to the machinery of government will not be complete and clear by the time the Bill completes its passage through your Lordships’ House, hence the need for the reference to the Secretary of State or the Chancellor of the Duchy of Lancaster? Is there a broader issue on that point, worth the Committee considering, on how the shuffling of departmental...

    HL Deb 1 Sep 2026, vol 859, col 4GC

  11. Lord Birt

    My Lords, I think that this is profoundly unsatisfactory. It is not good parliamentary procedure to table so many amendments radically different from anything that we have seen before, which I, for one, have seen only at the last minute, so to speak-I have read them, but I will not claim to have studied them. I do not altogether know what I think, but I readily accept that the noble Lord, Lord Clement-Jones, has had a chance to scrutinise them in a lot more detail than I have. I do not have anything substantial to say, but I would like to ask the Minister a question. Manifestly, there is a national security risk, which we would all recognise, and we all recognise that something needs to be done about it. But, if this is a national security issue, perhaps the Minister could explain to us why it cannot be dealt with under existing national security procedures. I have had time to go on to the GCHQ website, where one finds an impressive and considered approach to handling different security issues of this kind called the “equities process”-I did not know about it until the weekend, but it is impressive to read. I just do not understand why you would lodge such a set of issues with DCMS rather than the Cabinet Office. DCMS seems to me completely the wrong home for identifying, weighing and working out what to do about things that have such profound ramifications. Perhaps the Minister could explain to us why existing procedures, which are well tested and, by and large, involve...

    HL Deb 1 Sep 2026, vol 859, col 5GC

  12. Baroness Harding of Winscombe

    My Lords, if I may, I will reiterate points that the noble Lord, Lord Birt, has made. A number of us are struggling to keep up. Much of what the noble Lord, Lord Clement-Jones, said made a lot of sense, but I certainly do not feel sufficiently sighted on the amendments and I would like to request from the Minister a proper briefing as soon as we possibly can. We have multiple days in Committee and I feel that we will keep going round the issue of how AI is being addressed in the Bill. At the core, we are all trying to stand on both sides of the fence: we are very nervous of these powers, which appear to have been snuck in without much scrutiny, but, on the other hand, at Second Reading many of us were clear that we want to see AI captured in the Bill. I am very much in two minds and would welcome a proper briefing from the experts.

    HL Deb 1 Sep 2026, vol 859, col 5GC

  13. Viscount Camrose

    My Lords, I thank the noble Baroness the Minister for introducing this debate and for her helpful advance briefings on these amendments. I also welcome all noble Lords back for what, I am sure, will be a productive Committee stage. It is worth noting at the start of Committee that, sadly, our cyber adversaries did not take the summer off. In July, a small power generator was attacked and, in August, an attack on Manchester Airports Group compromised the data of 8.7 million of its customers. That said, I begin by saying that we on these Benches support the intention behind the Government’s amendments. I absolutely recognise the concerns expressed by all the other speakers thus far; procedurally, this is a very unusual way to go about it, but we support the intention. We have been calling for an increase in the scope of the Bill and for cyber security measures to be undertaken by businesses and individuals, rather than the Government, where possible. We feel that these new amendments go some way to achieving that. However, while we support the intentions, the context around them remains challenging. The difficulty that we face when trying to scrutinise and improve this Bill-and I am sure that we will return to this-is that it essentially exists, at least for now, in a vacuum. The Government’s goals are the right ones and their intentions seem to be clear, but we lack the overall holistic framework that is so important for systemic, strategic approaches to cyber security....

    HL Deb 1 Sep 2026, vol 859, col 5GC

  14. Baroness Lloyd of Effra

    I thank noble Lords for their comments, views and questions, and I will endeavour to respond to them. In respect of why the power is being granted to the Secretary of State or the Chancellor of the Duchy of Lancaster, it is to anticipate any unforeseen machinery of government changes. It is nothing more than that-to avoid future changes that would be needed when government departments change. On the skilled persons list, I am advised that that is currently available on the NCSC website, so it is accessible to all. I come back to the heart of the questions: why is this power needed? It is needed because, even though we are taking powers on critical suppliers, it can be the case that vendors have the capability and intent to cause harm, particularly where they have a link to a third country. That is the element I would highlight today. It is through such vendors that a third country can gain access to or control of critical systems, enabling disruption to UK national infrastructure, surveillance through access to data at scale or espionage through access to sensitive information. The risk landscape is evolving quickly, which is why we are taking action now. On the questions posed by the noble Viscount, Lord Camrose, this is very much in the context of all the other things we are doing-all the other powers in the Bill, the scope of the Bill and the Government’s cyber action plan. This is an additional power focused in particular on being able to act earlier in a preventive...

    HL Deb 1 Sep 2026, vol 859, col 7GC

  15. Viscount Camrose

    Before the Minister sits down, I note that there are a lot of “just in case” elements of the Bill; to me, it feels that there are rather too many. For example, I refer the Minister back to the Chancellor of the Duchy of Lancaster v the Secretary of State. Any department is, at any time, subject to machinery of government changes, but never in any Bill that I have seen-admittedly, I have not seen that many-have both been specified, so why is it so in this Bill? Why do this now? Why not simply make a choice and amend later if necessary?

    HL Deb 1 Sep 2026, vol 859, col 8GC

  16. Baroness Lloyd of Effra

    I am very happy to look at the points that noble Lords have raised in the course of this discussion. I believe that elements such as the consultation and the process of scrutiny are well thought out. I believe that in terms of the elements of subsequent parliamentary scrutiny-the reports that will be made both on the application or when the direction is affected-this is very much in keeping with other national security legislation which has been agreed by this and previous Governments. Many of these elements are very akin to processes that are operational in other areas of government. However, I am very happy to look at, and indeed will look at, all the points that noble Lords have raised. We will discuss them in subsequent meetings, and we will revert to them on Report.

    HL Deb 1 Sep 2026, vol 859, col 8GC

  17. Lord Birt

    Can the Minister explain why GCHQ is not the right home to exercise these powers? I am sure we will all agree that national security is a significant issue, but it is being lodged in departments that have no prior experience of it. What is wrong with existing GCHQ procedures, which are respected and trusted?

    HL Deb 1 Sep 2026, vol 859, col 9GC

  18. Baroness Lloyd of Effra

    I will need to write to the noble Lord on that specific question of how GCHQ’s powers are executed in respect of operational decisions such as this. I am aware that in other areas they are within Secretary of State responsibility, whether they are exercised by a Secretary of State, advised by GCHQ or whether, as the noble Lord suggests, they are actually undertaken by GCHQ.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  19. Lord Clement-Jones

    My Lords, I thank the Minister for her gracious, intended withdrawal of Amendment 1, and I am sure we will have a much better debate on Report as a result, particularly once we have had a chance to read her remarks on both interventions today. However, I hope she will agree with me, especially in terms of what she said about being technology agnostic through the Bill, that we will have a much better debate as we come to talk about specific AI issues as a result of not having already incorporated those in the Bill. So, all the way around we will have a much better debate about the proper shape of the Bill as a result of those amendments being withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  20. Baroness Lloyd of Effra

    With that, I believe now is the time where I beg to leave to withdraw Amendment 1.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  21. Amendment 1 withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  22. Amendment 2 not moved.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  23. Clause 2 agreed.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  24. Clause 3 agreed.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  25. Clause 4: Data centres to be regulated as essential services

    HL Deb 1 Sep 2026, vol 859, col 9GC

  26. Amendment 3

    HL Deb 1 Sep 2026, vol 859, col 9GC

  27. Moved by

    HL Deb 1 Sep 2026, vol 859, col 9GC

  28. 3: Clause 4, page 3, line 18, at end insert- “(3A) A data centre also meets the threshold requirement in this paragraph, regardless of its rated IT load, if the Office of Communications considers that an incident affecting the data centre would be likely to have a significant impact on the economy or the day-to-day functioning of society in the United Kingdom or any part of it, having regard in particular to the data centre’s customer base and level of interconnection with essential services.”Member’s explanatory statement The amendment seeks to add a risk-based designation criterion alongside the existing megawatt thresholds for operators of essential services.

    HL Deb 1 Sep 2026, vol 859, col 9GC

  29. Baroness Kidron

    My Lords, I am very sorry that I missed the early part of that debate because I feel it might impact on some of the things I say. However, when I read the government amendments, I could not see anything in them that made the amendments unnecessary, so I will read carefully all aspects of the first group but I intend to progress with the amendments that I have tabled. I will speak to Amendments 3, 8 and 13 in my name and in the names of the noble Baronesses, Lady Harding, Lady Berger and Lady Morgan. Together, they would expand the scope of services in the Bill so that so-called “small but risky” services were included. Amendment 3 stipulates that smaller data centres could be included if Ofcom considers that an incident affecting the data centre would have a significant impact on the economy or on the day-to-day functioning of society in the UK, taking into account the data centre’s customer base and its role supporting other essential services. Currently, data centres that are for an enterprise purpose only are covered in the Bill only if the rated IT load is 10 megawatts or greater. This is a mid-size data centre. However, there are commercial data centres that can be much smaller than this and are threatening. Perhaps most notable is a recent example from Denmark where the small cloud hosting providers, CloudNordic and AzeroCloud, suffered a ransomware attack that resulted in the paralysing of all company systems and the servers being shut down. Their hundreds of...

    HL Deb 1 Sep 2026, vol 859, col 10GC

  30. Baroness Harding of Winscombe

    My Lords, I support Amendments 3, 8 and 13 in the name of the noble Baroness, Lady Kidron, to which I have added my name. I will not repeat too much all her comments on our learning from the Online Safety Act that small does not mean low risk. However, it should not be a surprise that those of us who championed that amendment to the then Online Safety Bill have again put our names to it. We have learned the hard way that, in online safety, risk can come from the smallest providers. I have learned it personally. I retired from TalkTalk 10 years ago and I remember, what must have been 11 years ago-I promise this is not a cyber attack story-a mapping exercise across all the telcos, mobile and fixed, looking at our even then incredibly complex data centre networks across Europe. I am sure this has all changed and is much more complex, but I remember discovering, as a result of that exercise, that all of us were routing traffic through the same small data centre in central Europe and none of us was aware that we were doing so. These networks are expanding so fast and data centres and managed service providers are growing so fast that it is impossible for people to retain perfect knowledge 100% of the time, so a small provider really can be a node that brings down the whole network. It is not just in child safety that we have learned that small can mean very risky; it is also the case in the world of physical digital infrastructure, which we have known for some time in telecoms....

    HL Deb 1 Sep 2026, vol 859, col 11GC

  31. Lord Clement-Jones

    My Lords, these amendments confront us immediately with some of the Bill’s most fundamental potential structural weaknesses-the danger of a static, arbitrary and pre-digital scope. The Government appear to have conceded this point already by tabling those infamous 65 high-risk vendor amendments in the previous group. Let us look first at Amendment 3 in the name of the noble Baroness, Lady Kidron, which I would have signed if there had been room. As drafted, the Bill brings data centres into scope, relying entirely on rigid physical megawatt thresholds-specifically a rated IT load of 1 megawatt, or 10 megawatts for enterprise facilities. In the modern cloud ecosystem, physical power load is a crude and unreliable proxy for risk. A highly dense, interconnected facility drawing under 1 megawatt can host the critical patient records of multiple NHS trusts, emergency dispatch telemetry or core local government routing directories. If that facility is compromised, the societal and economic devastation will be catastrophic, regardless of how much electricity it pulls from the grid-the noble Baroness drew the parallels with NHS data centres. Amendment 3 would provide the essential statutory fix. It would empower Ofcom to apply a risk-based designation that looks beyond physical power to evaluate the customer base, data sensitivity and critical interconnectivity. I listened with considerable interest and sympathy to what the noble Baronesses, Lady Kidron and Lady Harding, had to say...

    HL Deb 1 Sep 2026, vol 859, col 12GC

  32. This is reinforced by Amendment 8, also in the name of the noble Baroness, which tackles the arbitrary SME exemption for digital service providers. A micro-entity or 10-person software house might develop and maintain a proprietary algorithmic routing tool or specialised API that underpins an entire national utility network. Under the Bill’s blunt size thresholds, that entity sits completely outside the statutory duties. Amendment 8 would ensure that, where a small provider poses a systemic risk to public safety, national security or essential infrastructure, regulators can bring it into scope.

    HL Deb 1 Sep 2026, vol 859, col 12GC

  33. This scope gap is made even more glaring when we look at the omission, broadly, of local government from this Bill. The newly published “Analogue 72” Green Paper from the Cyber Centre of Excellence highlights that across four annual cycles of external passive scans, including their latest July 2026 data, UK local authorities show rising external vulnerabilities. Councils hold the electoral registers, child safeguarding files and social care records of millions of citizens, yet they remain entirely excluded from direct statutory duties under this Bill. The Government expect resilience to be delivered from the bottom up but plan entirely from the top down, leaving local government without statutory baseline funding or standards.

    HL Deb 1 Sep 2026, vol 859, col 12GC

  34. Finally, Amendment 14 in my name would provide a vital refinement to the definition of “managed services” in Clause 9. As currently drafted, Clause 9 defines a managed service so broadly that it in effect acts as a legal dragnet, capturing any service provided under contract for ongoing IT management, support, maintenance or other activities. This threatens to pull thousands of small, non-critical IT consultancies, training providers, software licensing agents and basic help desks into heavy NIS registration and turnover-based penalties. My Amendment 14 would establish a clear statutory boundary: if an IT provider does not possess ongoing privileged administrative access to configure, alter or control a customer’s live network, it is excluded from the managed service provider regime. This would protect small businesses and tech companies and include only those that present genuine systemic threats. I urge the Government to accept this balanced package of risk-based, future-proofed definitions.

    HL Deb 1 Sep 2026, vol 859, col 13GC

  35. Lord Markham

    I add my thanks to the noble Baroness, Lady Kidron, and other noble Lords for trying to make sense of what we all agree is a very difficult area. We are trying to come to a definition of high-risk areas. As we have heard in the examples today, you cannot limit it to size or certain criteria, but we all recognise that you need some sort of risk-based approach for who we really need to be watching out for, for want of a better phrase. In some ways, I come back to the suggestion from my noble friend Lord Camrose. In its severity scale, the Cyber Monitoring Centre has tried to set up such a mechanism. It looks at having a separate grid system which considers, on the one hand, the financial, pound-note impact and, on the other hand, the impact on members of the population. It is a really difficult exercise to define exactly what should and should not be in it, but in using a scale such as this and asking companies or entities to assess themselves, if they come up with a “0” or “1”, then it is less of a concern and, if they come up with a “3” or “4”, it is more of a concern. I accept that some of them will game it and might not treat it honestly, but a lot of them might not. To go to my noble friend’s example of that one small data centre, probably only the centre itself knew at that time that it was pivotal to so many other people. The centre having to make an assessment on where it comes on this severity scale, involving at least the executive team, and having a non-executive...

    HL Deb 1 Sep 2026, vol 859, col 13GC

  36. Baroness Lloyd of Effra

    I thank the noble Baroness, Lady Kidron, for her introduction and my noble friend Lady Harding for setting out the motivation for ensuring that we have the right balance of risk and regulation here. The amendments from the noble Baroness, Lady Kidron, seek to allow for the designation of systemically important data centres, RDSPs and RMSPs which do not already meet the threshold. The Government have considered this issue in the development of the regime and have taken an approach which reflects the markets of the various digital services in scope of the regime. In respect of data centres, the Government agree that a data centre’s significance is not determined solely by size and recognise that smaller facilities may play an important role in supporting the economy and wider society. For that reason, the Bill already provides a route for such operators to be brought into scope outside the standard threshold requirements. The competent authority, Ofcom, has powers to gather information from operators and assess whether designation is appropriate in individual cases. However, with respect to the RDSP and RMSP measures, the existing small and micro-enterprise exclusions have been designed to be proportionate and avoid imposing undue burden on entities with limited resources and market coverage, while focusing on providers whose disruption would have significant societal impact or economic risk to the UK. Although many small and micro-enterprises operate in the digital and...

    HL Deb 1 Sep 2026, vol 859, col 14GC

  37. Baroness Kidron

    I am very grateful to the Minister for suggesting that there will be some consideration of the gap, as she put it, and I look forward to that. I want to raise one thing, which is that I was very struck by her reference to a small number of companies having 86% of the market. In a sector that is dominated by the concentration of power in very small numbers of companies owning many pieces of the stack, is she not worried that making those companies protected and safe and the smaller ones not may further serve to increase the concentration of power and market concentration? Is that not a problem for the future?

    HL Deb 1 Sep 2026, vol 859, col 15GC

  38. Baroness Lloyd of Effra

    The purpose of the Cyber Security and Resilience (Network and information Systems) Bill is to further enhance the scope and powers we have to protect essential services connected through network and information systems. The market as it exists today is as I described. What is within the scope is not the totality of our approach to supporting the further cyber resilience of the UK economy. That is why, for example, we have CRCs locally to support SMEs so that whatever size they are, they can get assistance on the best cyber protection they can take. It is why we have Cyber Essentials and why the NCSC provides advice-all that the economy needs to take appropriate action to be secure. That is one aspect. The second aspect is that small and micro digital and managed service providers are in scope of the Bill if they are considered to provide a critical service to a regulated entity, so even very small entities could possibly be in scope if they are so designated. The last point I shall make-and I am sure we will come on to this further when we come to talk about AI-is that the Government are doing a huge amount in regulation and funding through public finance institutions to support the development of UK technology companies and UK innovators and to ensure that they have the right procurement contracts with the public sector so that they can grow and so that the entirety of our companies can benefit from the best global managed service providers and the best UK managed service...

    HL Deb 1 Sep 2026, vol 859, col 15GC

  39. Amendment 3 withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  40. Clause 4 agreed.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  41. Clause 5 agreed.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  42. Clause 6: Designation of large load controllers as operators of an essential service

    HL Deb 1 Sep 2026, vol 859, col 16GC

  43. Amendments 4 and 5

    HL Deb 1 Sep 2026, vol 859, col 16GC

  44. Moved by

    HL Deb 1 Sep 2026, vol 859, col 16GC

  45. 4: Clause 6, page 4, line 31, after “controller” insert “- (a) which carries on activities for system-balancing purposes (whether or not it also carries on other activities), and”Member’s explanatory statement This amendment would ensure that the threshold requirement relating to the essential service of load control, inserted by Clause 6 of the Bill, applies only to organisations which carry out activities for system-balancing purposes.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  46. 5: Clause 6, page 5, line 5, at end insert- “(za) an activity is carried on for “system-balancing purposes” if it is carried on with a view to contributing to the balancing, flexibility, security or stability of the electricity system as a whole or a significant part of it;”Member’s explanatory statement This amendment would set out when an activity is carried on for “system-balancing purposes” for the purposes of my other amendment to Clause 6.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  47. Amendments 4 and 5 agreed.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  48. Clause 6, as amended, agreed.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  49. Clause 7: Digital services

    HL Deb 1 Sep 2026, vol 859, col 16GC

  50. Amendment 6

    HL Deb 1 Sep 2026, vol 859, col 16GC

  51. Moved by

    HL Deb 1 Sep 2026, vol 859, col 16GC

  52. 6: Clause 7, page 6, line 31, after “engine” insert “, an AI product or service” Member’s explanatory statement This amendment probes whether the definition of “relevant digital service” being inserted into the NIS Regulations by this bill includes generative-AI models, including but not limited to AI agents and large language models.

    HL Deb 1 Sep 2026, vol 859, col 16GC

  53. Baroness Kidron

    My Lords, in moving this amendment, I shall speak also to Amendment 75 in my name; I thank those noble Lords who have added their names in support. I was glad to add my name to Amendments 12, 85 and 86 in the name of the noble Lord, Lord Tarassenko, and Amendment 84 in the name of the noble Lord, Lord Clement-Jones. At the heart of these amendments is the place of artificial intelligence in the Bill. This concern was powerfully raised by noble Lords at Second Reading and repeatedly raised by colleagues from all sides in the other place-as well as, I rather suspect, earlier in this Session. Amendment 6 is a probing amendment. It seeks to understand whether AI products and services are categorised as relevant digital services and, therefore, whether providers of AI products and services will be subject to the same duties in the Bill as other providers of relevant digital services, such as online marketplaces and search engines. The reason I raise this and wish to have clarification is that, in the NIS regulations, the definition of an online search engine is “a digital service that allows users to perform searches of, in principle, all websites or websites in a particular language on the basis of a query on any subject in the form of a keyword, phrase or other input, and returns links in which information related to the requested content can be found”. This sounds a lot like a definition that could cover many of the LLMs and AI agents, so I ask the Minister whether AI services...

    HL Deb 1 Sep 2026, vol 859, col 17GC

  54. Lord Tarassenko

    My Lords, I will speak to Amendments 12, 85 and 86 in my name, and in support of Amendment 6 in the name of the noble Baroness, Lady Kidron, to which I have also added my name. At Second Reading, several noble Lords spoke about the AI-shaped hole in the Bill. I shall not repeat their arguments but will present other evidence, including incidents that have been reported since Second Reading in mid-July, on why this AI-shaped hole needs to be filled. Three serious incidents have been reported since just mid-July: one involving OpenAI’s GPT-5.6 Sol and an unreleased model, one involving Anthropic’s Claude models and one involving multiple AI agents during a cyber evaluation by the AI Security Institute-AISI. AI models, within an appropriate harness, are now capable of operating as autonomous agents. They can break a complex command-for example, “Find a vulnerability in this network”-into sequential tasks, adjust strategy dynamically and execute without further human intervention. These AI agents are built with tool-use capabilities, enabling them to plan but also execute and adapt multistep workflows autonomously. More details have emerged of the Hugging Face hack which occurred on 11 July, just before the Second Reading debate. A report published last week by three researchers from METR and Redwood Research reveals the scale of the incident. Around 1,200 agents in separate sandboxes collaborated on a message board in an attempt to cheat on a task on which they were being...

    HL Deb 1 Sep 2026, vol 859, col 18GC

  55. The two other principles listed in the recent open letter-the use of AI to equip defenders with specialised capabilities and the need for a co-ordinated global response to AI cyber threats-could be fulfilled by giving AISI more powers and putting it on a statutory footing. As the Minister also said at Second Reading, AISI is world leading and was given access to Claude Mythos before its release.

    HL Deb 1 Sep 2026, vol 859, col 620GC

  56. However, tech companies cannot be the sole arbiters of their own safety standards. Self-assessment leaves systemic cyber security gaps unchecked. Amendment 85 therefore seeks to give AISI statutory powers to allow frontier AI companies to submit models for mandatory testing prior to deployment in the UK, with a power to recommend to the Secretary of State that the deployment be delayed, conditioned or prevented. AISI should also have statutory powers to investigate risks, test frontier AI models and agents, both closed-source and open-weight models, and collect reports about cyber attacks by these AI models and agents.

    HL Deb 1 Sep 2026, vol 859, col 620GC

  57. Amendment 12 seeks to give AISI a role, working with the ICO, in issuing guidance on how to take proportionate measures to manage those risks. Putting AISI on a statutory footing, beyond its current status as a unit within DSIT until July and now the Cabinet Office, will also provide a clearer legal framework for international collaboration with other national AI security agencies worldwide and contribute to acting on the third principle listed in last week’s open letter: a co-ordinated global response.

    HL Deb 1 Sep 2026, vol 859, col 620GC

  58. There now seems to be an intention to fill, at least partially, the AI-shaped hole in the Bill through new government amendments. A logical conclusion of this is to give AISI proportionate regulatory powers to go with these amendments. Establishing AISI as an independent statutory body would give it the mandate and legislative framework needed to safeguard public safety in the face of fast-growing threats from agentic AI while maintaining its world-class evaluation capabilities.

    HL Deb 1 Sep 2026, vol 859, col 620GC

  59. Baroness Harding of Winscombe

    My Lords, I support Amendment 75 from the noble Baroness, Lady Kidron, and Amendment 84 in the name of the noble Lord, Lord Clement-Jones, both of which I have added my name to, but I also support all the amendments in the name of the noble Lord, Lord Tarassenko, that I was not smart enough to get my name to last week. This group of amendments demonstrates not just the AI-shaped hole in the Bill but the complete absence of an AI Bill. It worries me that in one group, of a Tuesday afternoon, no more than 25 Peers are discussing such really big and important issues. We are really letting our country down and not building on the strengths that the noble Lord, Lord Tarassenko, set out that we have in this space by not debating this properly. The Governor of the Bank of England also sent an open letter at the weekend, from the G20 Finance Ministers’ meeting: “Recent developments have also highlighted to me that many jurisdictions do not have the protocols in place to manage the development, release, and deployment of advanced frontier AI models, heightening risks for the financial sector and beyond”. He was speaking as the chair of the Financial Stability Board, the global financial stability regulator. He continued: “Taking appropriate steps to support safe and responsible model release and deployment on a global basis should in my view be a priority and would benefit all sectors of the economy”. We should not try to shoehorn this into a cyber security Bill but we have no other...

    HL Deb 1 Sep 2026, vol 859, col 21GC

  60. Lord Holmes of Richmond

    My Lords, it is a pleasure to support all the amendments in this group. In one set of amendments in Committee, we have more on AI than in not just the cyber Bill but across most government legislation-past, present and, tragically, probably largely future. As has already been mentioned and was covered, widely and rightly, at Second Reading, there is a huge gaping hole at the centre of this Bill, a silence that booms around the entire Bill, and that is all things AI. It seems unfortunate that we were told at Second Reading, and probably will be today, that the Bill is not the place for AI. Well, maybe it is not, but it certainly is in that no previous opportunities have been taken. As was mentioned, there was one line in the 2024 King’s Speech: something around frontier models with AI. There have been various other nods and winks. There was a Bill potentially ready to go at the end of autumn 2024; nothing came, and still we have nothing. So now we have a cyber Bill. It would be extraordinary if the Bill did not not only consider AI but have the thread of AI running right through it. What is behind so many of the difficulties, the clear, present and real dangers that the Minister has set out? Well, it may be said to be cyber at the front end, but AI is the grunt, brute force driving so much of this, and that is what all the amendments in this group speak to. The noble Lord, Lord Tarassenko, was right to highlight the excellent work of AISI, but again, as we have seen with...

    HL Deb 1 Sep 2026, vol 859, col 22GC

  61. Baroness Foster of Aghadrumsee

    My Lords, I will briefly speak to the amendments from the point of view of anti-terrorism and national security. I do so with trepidation, having listened to the wonderful speeches that have been made thus far. I find it difficult to understand why there is an unwillingness to give the clarity that has been requested in this group of amendments, particularly on AI models. I note that the Minister, in response to the first group of amendments, said that AI could be in scope. Would it not be much clearer for all concerned if AI was specifically in scope? Ethically speaking-and this follows on from the noble Baroness, Lady Harding-I would have much preferred it if we had had a royal commission look at AI and say, “Here are the guardrails for the development of AI”, but for some unknown reason we are either unwilling or unable to do that as a nation. In its absence, Amendment 75 is very important because, from a national security point of view, we should adopt the precautionary principle. We live in very dangerous times. We have listened to experts such as Jonathan Hall KC say very clearly that we need to take it into account. I say to the Minister that it would be helpful to hear from the Government how they intend to deal with AI as it moves forward and gets bigger and bigger. Surely we should have that ethical and moral conversation about where the guardrails are.

    HL Deb 1 Sep 2026, vol 859, col 23GC

  62. Baroness Freeman of Steventon

    My Lords, I will briefly add my support to the amendments in this group, particularly the “red lines” amendment and the “last resort” amendment. Nobody who has read the report on the Hugging Face incident can fail to think that we need legislation now to deal with these kinds of events. The incident showed unintended co-operation between agents that discussed among themselves whether individual actions were ethical. They were referring to their own ethical guidelines and none of the agents then flagged to their human supervisors what was going on. You can see the training and programming behind these agents: they have some ethical guidelines in there, but those guidelines are in the gift of the companies that train them. We must have more control and oversight over that sort of behaviour, because you can see its consequences. This was an unintended consequence; obviously, there could be intended consequences as well. This legislation is our only opportunity now, and we need to take it because this is not the future; it is the present.

    HL Deb 1 Sep 2026, vol 859, col 23GC

  63. Lord Clement-Jones

    My Lords, we have had some excellent speeches in this group. I hope that the Minister has taken on board some of the points made by people who really know what they are talking about in the AI field. I will speak to my Amendment 84 and in strong support of the amendments tabled by the noble Lord, Lord Tarassenko, and the noble Baroness, Lady Kidron.

    HL Deb 1 Sep 2026, vol 859, col 24GC

  64. The omission of robust statutory AI governance from the Bill is not just an oversight; it is completely unsustainable. The noble Baroness, Lady Harding, made the very good point that what we really need is an AI Bill; and, depressing though it may have been, the noble Lord, Lord Holmes, gave us a history of the lack of action to date. We live and breathe in the desire to see some action in this area, but we are inevitably disappointed. Frontier AI models are expanding at exponential speed, doubling in capability every four months. We have crossed from passive chatbots into autonomous, agentic AI systems capable of executing multistep cyber operations.

    HL Deb 1 Sep 2026, vol 859, col 24GC

  65. We have heard a few quotes today but a warning has been issued by no less than Bill Gates, whose testimony in the New York Times is worth listening to. He understands software engineering better than almost anyone, and he confessed that he was deeply shocked by the coding and offensive capabilities of tools such as Claude Code. He warned that industry leaders privately know how dangerous these models are getting but remain silent because there is too much money on the line. As he noted, tech companies are failing to observe their own stated safety milestones on bioweapons and loss of control, racing full speed ahead while relying on voluntary codes. His verdict on self-regulation was pretty blunt:

    HL Deb 1 Sep 2026, vol 859, col 24GC

  66. “Self-regulation on the most dangerous tool ever invented? No, thanks!”

    HL Deb 1 Sep 2026, vol 859, col 24GC

  67. I hope that the Government, reluctant as they are to listen to some of the advocates of regulation, will listen to someone with that level of authority.

    HL Deb 1 Sep 2026, vol 859, col 24GC

  68. Real-world evidence bears out these fears; we have heard various examples from noble Lords. In February 2026, researchers at Gambit Security documented a campaign where a single operator used Claude Code and GPT-4.1 to attack nine Mexican government organisations. Approximately 75% of remote command executions were conducted completely autonomously by the AI agent. We also witnessed the AWS China incident, where an internal coding agent suffered compound errors and autonomously purged a live database, causing a 13-hour regional outage.

    HL Deb 1 Sep 2026, vol 859, col 24GC

  69. The noble Lord, Lord Tarassenko, and the noble Baroness, Lady Kidron, convincingly described not only the nature of the risk but the sheer scale of it. By tabling Amendment 6, which I have signed, the noble Baroness, Lady Kidron, is rightly seeking to ensure that AI products and services underpinning digital systems are recognised within the scope of Clause 7. Under Amendment 75, we would establish clear statutory red lines prohibiting AI systems being capable of evading human shutdown, self-replicating uncontrollably or executing automated attacks on critical infrastructure. As she described, the red lines campaign is backed by a great many of the leading names in AI developments, and it is clearly backed by public opinion, as she mentioned.

    HL Deb 1 Sep 2026, vol 859, col 24GC

  70. Under Amendments 12 and 85 in the name of the noble Lord, Lord Tarassenko, and my Amendment 92, AISI would be integrated into the regulatory architecture. As the noble Lord, Lord Tarassenko, has argued, the Information Commissioner’s Office and sectoral regulators simply do not possess the specialist machine learning engineering capability that exists within AISI. When regulators assess AI-enabled infrastructure, they must have statutory access to AISI’s technical threat modelling. Furthermore, under Amendment 86 in the name of the noble Lord, Lord Tarassenko, any emergency intervention would have to be subject to an independent post-incident technical review, laid before Parliament within 28 days, ensuring that lessons are learned and transparency is shared.

    HL Deb 1 Sep 2026, vol 859, col 25GC

  71. Finally, my Amendment 84 provides the state with a necessary emergency kill switch. If an autonomous model malfunctions within critical national infrastructure, the Government currently lack clear statutory power to direct an emergency shutdown. This amendment would provide that last-resort power while embedding gold-standard constitutional checks, a mandatory 24-hour review, a seven-day parliamentary reporting lock and an immediate right of appeal to the High Court with compensation provisions for disproportionate directions.

    HL Deb 1 Sep 2026, vol 859, col 25GC

  72. The core argument advanced by ControlAI and leading safety researchers is simple yet profound: you cannot govern what you cannot legally stop. At present, the UK finds itself in a state of dangerous legal exposure. I agree with the noble Lord, Lord Holmes, that this is not all about frontier models but, if a highly capable autonomous frontier model, whether hosted in a UK data centre or integrated across our critical infrastructure, begins exhibiting rogue behaviour, compound algorithmic failure or active alignment collapse, our security services and regulators possess no specific agile statutory mechanism to compel a physical or digital shutdown. Relying on slow-moving administrative notices or voluntary developer good will in a minutes-critical national emergency is not a sufficient strategy.

    HL Deb 1 Sep 2026, vol 859, col 25GC

  73. The Government may point to their broad national security direction powers under Clause 43, but Clause 43 was designed for slow-moving, preventive supply chain restrictions, not real-time emergency operational crises. Clause 43 lacks the explicit technical definitions of large-scale AI systems, the essential 24-hour continuous necessity review and, crucially, the immediate judicial compensation mechanisms required to make emergency state intervention legally sound, commercially fair and compliant with the European Convention on Human Rights.

    HL Deb 1 Sep 2026, vol 859, col 25GC

  74. Crucially, unlike the government amendments in group 1, Amendment 84 is not a blank cheque for executive overreach. On the contrary, this power would operate as a strictly bounded, three-layer lock. Furthermore, catastrophic risk does not require a hostile nation-state. It requires only the sudden, unpredictable failure mode of an autonomous agentic AI operating at machine speed, as we have seen with Mythos and GPT-5. When commercial giants are racing full speed ahead and ignoring their own safety milestones, the state must possess the sovereign backstop of a legal kill switch. By establishing this transparent, court-backed emergency power in primary legislation, Amendment 84 would provide a strong statutory safety net for the AI age.

    HL Deb 1 Sep 2026, vol 859, col 25GC

  75. I urge your Lordships to support all these future-proofed AI protections and to reject the idea that we will be adequately protected under this Bill with a technology-neutral approach. We need to accept that, as the noble Lord, Lord Tarassenko, and many others, including the noble Baroness, Lady Harding, and the noble Lord, Lord Holmes, have shown us, there is a huge AI-shaped hole in this Bill.

    HL Deb 1 Sep 2026, vol 859, col 26GC

  76. Viscount Camrose

    My Lords, I shall begin with Amendment 12 in the names of the noble Lord, Lord Tarassenko, and the noble Baroness, Lady Kidron. I completely understand the necessity and urgency of taking action on these things. The noble Lord, Lord Tarassenko, set out the absolute urgency and the growing weight of the problem that we need to solve here. I have my doubts-I am delighted to carry on talking about this-about the significant expansion of and change in the role of AISI to take on these additional responsibilities. Those are practical doubts; I am certainly not disputing the desirability of fixing this problem. Equally, we have to think practically about how this works alongside the Information Commissioner’s Office and the relative role of each. I thought my noble friend Lord Holmes set it out very well. We are going to need to look carefully at who regulates what-we are going to come to this in the next group-but we need to do so with quite a bit more information about their resources and goals and how we see each regulator taking this forward. I am afraid that there is a very much larger discussion that we will have to take forward on this matter. Although I understand the desire to maximise the use of AISI in giving it these statutory functions via Amendment 85, we on these Benches are hesitant about consolidating powers in a separate non-governmental body. No matter how effective that body continues to prove to be in its original and existing role, taking power outside...

    HL Deb 1 Sep 2026, vol 859, col 26GC

  77. I finish by returning to the broader point. The reason for this group-the debate around AI in the context of cyber security-is that I am afraid we are still unclear about the Government’s wider approach to cyber security and AI. We need to see the bigger picture in the form of a national action plan or White Paper that explains to us overall how the Government see the evolving world enabled by these extremely powerful technologies. We can go sector by sector and debate the best way to regulate and protect them against cyber attacks, but what matters is the Government’s applied philosophy. Until we see that, we are debating ideas in the dark.

    HL Deb 1 Sep 2026, vol 859, col 27GC

  78. Baroness Lloyd of Effra

    I thank noble Lords for their amendments, and I recognise the concerns that have been expressed. Technology is evolving at a rapid pace, and it is important that we harness the benefits and, equally, protect against the risks it may pose. The noble Lord, Lord Holmes of Richmond, asked about the approach that we take. We understand how quickly technology is evolving, and it is important that we have a flexible and future-proof approach. If we limit ourselves to specific technologies, we will not capture new developments. For instance, when the NIS regulations were introduced in 2018, we could not have predicted the role that AI and quantum would play in cyber. That is why the Bill takes an “all hazards, all threats, all technologies” approach. This requires regulated entities to manage all the risks relevant to their network and information systems. For example, if AI forms a part of the system that the essential service relies on-for example, in the provision of drinking water-that entity must assess and mitigate the risks it poses. More generally, the Government take the concerns very seriously. The UK is taking a leading role with our approach to AI security. I will set out my response to each amendment in turn, but while we do not consider the amendments proposed to be the right approach, I reassure noble Lords that the Government are exploring whether additional targeted interventions may be needed in future to address the most significant AI-related national security...

    HL Deb 1 Sep 2026, vol 859, col 28GC

  79. Baroness Kidron

    If I have understood what the Minister said, the NHS must protect itself, but the AI that is attacking it has no duties or obligations under the Bill to check itself before it is used in those ways. That is what I think is the Government’s position, and I would be grateful, when she responds, if she could answer that. I also want to say two other things. One is that I think these issues will come back on Report, so I would be grateful for some proper discussion before then, so that we can see whether we come to a certain place. I do not have it at my fingertips-I may be helped by one of my colleagues-the amount of search that now happens through AI, but it is almost ludicrous to suggest that LLMs are not search. It is deliberate that I got that answer.

    HL Deb 1 Sep 2026, vol 859, col 31GC

  80. Lord Tarassenko

    It is 5 trillion a year.

    HL Deb 1 Sep 2026, vol 859, col 31GC

  81. Baroness Kidron

    Five trillion, a year. I am grateful to the Minister for answering my question because, very often, that does not happen. That really points at a problem.

    HL Deb 1 Sep 2026, vol 859, col 31GC

  82. Finally, on the AISI point-we will probably come back to it a little bit in the next group-a few months ago AISI dropped the societal harms piece of its remit. That was largely due to pressures within government. As much as I recognise that it was set up to do one thing, it is very much at the behest of whoever is immediately pulling the strings. I think that there was a very deep understanding among those who were concerned about this issue that the frontier companies were much more comfortable talking about future security risks, which are a little way ahead and about which we can say we do not know what is going to happen, than the societal risks, which are happening right now. So I think that on both of these things we will be back, but I am grateful for the offer of a discussion.

    HL Deb 1 Sep 2026, vol 859, col 31GC

  83. Baroness Lloyd of Effra

    To respond to the question about how the Bill approaches certain AI products and services, as I mentioned in respect of Amendment 6, were AI services to be brought into the ambit of the Bill as proposed in Amendment 6, that would not address some of the harms that the noble Baroness, Lady Kidron, and other noble Lords, have set out. The way the Bill works is that it is about risks that are relevant to the systems of the affected organisations. As in the healthcare example I gave, it is about risks associated with products that might be used to provide those services. That is the way the Bill is set up. Obviously, as I also said, we are very well aware about the increasingly embedded nature of AI in the economy, and we will keep its impact on the regulatory landscape under review.

    HL Deb 1 Sep 2026, vol 859, col 32GC

  84. Amendment 6 withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 32GC

  85. Amendment 7

    HL Deb 1 Sep 2026, vol 859, col 32GC

  86. Moved by

    HL Deb 1 Sep 2026, vol 859, col 32GC

  87. 7: Clause 7, page 6, line 31, after “engine” insert “, software or a digital platform,” Member’s explanatory statement This amendment, and others in the name of Lord Birt, seek to include software and platform providers in the definition of a relevant digital service provider.

    HL Deb 1 Sep 2026, vol 859, col 32GC

  88. Lord Birt

    My Lords, I will also speak to all the other amendments in my name, which are all supported by the noble Lord, Lord Londesborough, and some by others of your Lordships. The Bill in its present form, as others have already said, is extraordinarily limited in scope and ambition-well short, for example, of the scope of the EU’s own NIS2 and its Cyber Resilience Act. One likely and highly unwelcome consequence of this shortfall is that, if the Bill passes in its present form, the UK will be even less well defended than our equivalents in Europe and even more of an attractive target for the bad actors than we are now. Taken together, my amendments would, first, create a single regulator, the “Office for Cyber Resilience”, or OCR; secondly, they would extend the scope of the Bill to all services that have a material impact on the UK’s economy, society or defence and security; thirdly, they would place obligations on technology suppliers, barely discussed so far, to provide safe services; fourthly, they would require relevant bodies to adjust to threats from new and emerging technologies; fifthly, they would ensure that we have sufficient and appropriately qualified cyber professionals; and, sixthly, they would enable new organisations to be brought under the auspices of the Bill as circumstances change. Why a single regulator? Because the threat we face, as we have heard all afternoon, is enormous, from state actors, from organised criminal gangs and even from obsessive teenagers....

    HL Deb 1 Sep 2026, vol 859, col 32GC

  89. Lord Londesborough

    My Lords, I shall speak to Amendments 7, 9, 11, 76, 77 and 88 to 91 in the name of my noble friend Lord Birt, each of which I have added my name to, and to Amendment 87 in the name of the noble Lord, Lord Clement-Jones.

    HL Deb 1 Sep 2026, vol 859, col 35GC

  90. Since Second Reading, some noble Lords may have noticed that I have gained a pair of crutches. This is not so much the result of a cyber kneecapping exercise but of a planned intervention by my surgeon. The good news is that the longest that I can stand up to speak is currently 10 minutes, which is nature’s way of stopping me banging on for too long about cyber security. That said, my main focus is on this crucial amendment proposing the creation of an office for cyber resilience, the OCR, a much-needed single competent authority adopting a centralised rather than fragmented approach. Before I get into that, let me provide some perspective from the world of business and, indeed, the consumer on why the centralised approach is absolutely needed.

    HL Deb 1 Sep 2026, vol 859, col 35GC

  91. First, I shall say a word about the threats and the financial cost. Noble Lords may remember that, at Second Reading, many people mentioned the estimated £15 billion annual cost to the UK of lost revenues as a result of cyber attacks in this country. This is almost certainly a serious underestimate given how many outfits fail to report cyber attacks or, indeed, near misses. The financial impact comes in the form of not just reparation, reputational costs and lost revenues but the major distraction on core businesses, the drain on resources and loss of productivity. These real costs are not factored in, so no one knows the actual number. It could well be as high as £30 billion a year, but we know that this figure reflecting the multiplicity of threats is growing at an alarming rate and could breach the £100 billion mark within the next five years unless we massively upgrade our cyber defences, detection, knowledge, standards and certification practices as these amendments propose.

    HL Deb 1 Sep 2026, vol 859, col 35GC

  92. We have mission-critical cost-benefit questions. How much will we invest to protect our economy, infrastructure and defences, both public and private? Put another way, how much are we prepared to lose by patching together a fragmented approach to cyber security, which, I am afraid to say, this Bill is guilty of? That is the question we need to ask ourselves. It is not just the level of funding but how the resources should be structured. Is this the time for a fragmented, multi-sector, multi-regulator approach or do we grasp the nettle and set up a single centralised body that has the teeth, power, funding, expertise and know-how to face up to these existential threats?

    HL Deb 1 Sep 2026, vol 859, col 35GC

  93. This group of amendments raises a fundamental question which has echoes of the current debate on devolution and economic growth. Do we devolve responsibilities for cyber security to our 12 regulators, the majority of which are currently struggling to keep on top of their current remit, such as Ofwat and Ofgem, albeit with the support of the NCSC, which is a respected, but none the less advisory, body sitting within GCHQ or do we adopt what is internationally considered best practice, the centralised model, by setting up an OCR that has fit-for-purpose regulatory powers and do this not just in the interest of the 12 sectors, but to mind the many gaps that this Bill fails to address across both public and private sectors, especially small and medium enterprises, which are now almost all tech-enabled and exposed to cyber attacks, most of which go unreported and never touch the national statistics?

    HL Deb 1 Sep 2026, vol 859, col 36GC

  94. We should be concerned about the impact of cyber attacks on SMEs across all sectors, which are generally underresourced and ill prepared to face up to or even detect the growing array of threats. Witness the fact that 96% of all successful cyber attacks in the UK in 2024-the ones we know about-were perpetrated on SMEs, not because they are prime targets but because they are soft targets. That is another reason to establish an OCR: to set up a single competent authority that benefits SMEs whatever their sector, and not simply as an advisory body-we have that already. As addressed in subsections (3) and (4) of the clause proposed in Amendment 88, the OCR would set specific standards, audits and certification for the software and digital service providers and MSPs that SME infrastructure depends on.

    HL Deb 1 Sep 2026, vol 859, col 36GC

  95. I should declare at this stage that I chair, sit on the board of and advise a number of start-ups and scale-ups, with staff numbers ranging from 20 to 100. Let me briefly describe the cocktail of cyber risks to which they are exposed. They all have their customer and prospect databases, CRMs, that sit on third-party software platforms, often requiring bespoke programming to fit the needs of each company. These platforms are typically interfaced with other applications and databases-one for marketing, one for sales, one for finance and accounts, one for HR and payroll, and, often, complicated ones for content, production or product. The point I am making is that, even for companies with fewer than 50 staff, there can be a complex web of interdependencies that may involve as many as five to 10 different software or digital service providers. Their networks are therefore very vulnerable to hackers, who have a number of entry points to exploit.

    HL Deb 1 Sep 2026, vol 859, col 36GC

  96. Amendment 89, to which I have added my name, is highly relevant here, seeking to establish a register of software and platform providers of essential services and to certify their products as safe for use. That is vital. This is not about advice; it is about regulation, certification and, of course, proper real-time reporting of incidents and near misses. I ask the Minister and her department to give the amendments in this group the attention they absolutely deserve.

    HL Deb 1 Sep 2026, vol 859, col 36GC

  97. Lord Holmes of Richmond

    My Lords, it is a pleasure to speak to this group of amendments; I was certainly delighted to sign those in the name of the noble Lord, Lord Birt. Before turning to the specific subject matter, I say that the point he raised about JLR is germane to our broader discussions this afternoon and goes to the heart of the sense of coherence, or lack thereof, in certain key elements of the Bill. JLR suffered a serious cyber attack yet it currently would not fall within one of the sectors covered by the Bill. Was that attack significant at a level that should be of concern to the Bill? To look at its economic impact-the definition of which my noble friend Lord Camrose has identified as being somewhat broad, to paraphrase what he said-the JLR attack impacted that quarter’s GDP numbers, thus raising the eyebrows of the markets, the ratings agencies and all international economic observers. I would suggest that the impact was more than material and certainly significant, yet it would fall outside the sectors in the Bill as currently drafted. That goes to the point at the heart of the need for an OCR or an entity that would perform that function or role. Much of the discussion so far on this group is understandably echoic of the discussion we are having around the need for AI to be taken on by some regulator. As we are discussing the need for AI regulation and legislation, it seems only fair for me to give a nod to the AI authority in my AI regulation Private Member’s Bill-it comes with...

    HL Deb 1 Sep 2026, vol 859, col 37GC

  98. Baroness Neville-Jones

    My Lords, the last two interventions seemed to raise two issues, not one. The first is the question of how many regulators and the second is their coverage. Who will they regulate? Will they regulate just, say, the public sector, or will they regulate, in effect, the whole of the economy, including retail, business, high street businesses and so on? You can argue a case for any of these approaches: you can try to do too much, and certainly you can fail and do too little. While I can see the case for a single regulator, my worry is that large organisations like that, with monopoly powers, in the end either tend to fail, because they just do not cope, or become overweening. I do not think that we want either of those two things. I am therefore in favour of something that is more decentralised than that and has more specialised regulators involved, partly because I think the nature of the regulation probably deserves that. However, at the same time, there has to be some degree of co-ordination-in fact, a high degree of co-ordination-between the regulators. They must operate according to the same principles, applied appropriately. They must espouse the same philosophy and must be seen to be fair. Therefore, great divergence and different approaches will equally not work. There needs to be a mechanism for co-ordination, for discussion and for agreement of principles. There also needs to be a thinker there somewhere. I am therefore in favour of some bit of the system being bigger...

    HL Deb 1 Sep 2026, vol 859, col 38GC

  99. The second question is, what is the coverage? Is it essentially the suppliers in the world of cyber and digital activity or does it have to go wider? I have actually argued publicly for the regulation to go wider, because it is not satisfactory that when we get something as damaging as JLR, we have to have a public bailout. There is real danger to the economy, and I do not dispute that. Should it be the same as the kind of regulation applied to the direct suppliers-to the industry that supports the security of the country? There, I do not have a firm answer, but it seems to be an area where there ought to be discussion as to how far we take these regulatory powers. I am not someone who says that it is enough to go to the board and tell them to do a proper job. Most boards at the moment have a half-hearted and rather uninformed approach to cyber regulation and not enough real expertise.

    HL Deb 1 Sep 2026, vol 859, col 38GC

  100. It seems to me that many directors these days need not just to be able to understand P&L and be able to answer questions of financial accountability; they actually need to understand a much wider set of risks, including technological ones. I am also in favour of much greater education and a good deal more pressure inside the City for competence to be generated more widely. I think that would be good, but I think the language the Government use needs to be a lot tougher and a lot more directed than it is at the moment; it is sort of half-hearted, if I might say so.

    HL Deb 1 Sep 2026, vol 859, col 39GC

  101. The question of how far you take the powers of the state and the powers of the regulator seems to me to be an area for discussion. It would be good to see some agreement between the private sector and the regulators about what needs to be regulated and what should be left to business. I think that is an area for further discussion, but I think we need something which is not quite either of these two extremes that are being proposed: the complete regulation of everything and done by only one regulator.

    HL Deb 1 Sep 2026, vol 859, col 39GC

  102. Lord Clement-Jones

    My Lords, I first congratulate the noble Lord, Lord Birt, on what is a really comprehensive vision expressed in this group of amendments. I speak in strong support of those amendments, on which both he and the noble Lord, Lord Londesborough, have spoken so cogently. Together, they address one of the most glaring defects of the architecture of this Bill: the fragmented, inefficient model of 12 separate sectoral regulators. I think that the noble Baroness, Lady Neville-Jones, asked the right questions about how to co-ordinate and how to be fair, but I am afraid I come to very different answers and to the same conclusion as the noble Lord, Lord Birt. Cyber threats are sector-agnostic. Malicious code and supply chain exploits do not respect the boundary between Ofwat, Ofgem or the CAA. Expecting 12 separate bodies to recruit scarce elite cyber forensic talent is a fantasy that results in weak, uneven enforcement. Furthermore, multi-sector businesses face duplicative compliance obligations across separate competent authorities in the current scheme. Under Amendments 7, 9 and 11, the noble Lord, Lord Birt, would correctly widen the definition of digital service providers to include the creators, distributors and managers of software and digital platforms. As the Synnovis pathology attack proved so catastrophically to London hospitals, our critical infrastructure is entirely dependent on third party software code. If we do not bring software and platform providers into scope under...

    HL Deb 1 Sep 2026, vol 859, col 39GC

  103. Viscount Camrose

    My Lords, I thank the noble Lord, Lord Birt, for introducing this debate and all noble Lords who have spoken. I appreciate the rigorous strategic thinking that the noble Lords, Lord Birt and Lord Londesborough, have put into the proposal for an office for cyber resilience, but I will try to keep my remarks to the principle of a single regulator. As others have set out very powerfully, I see the appeal of having a single regulator: it is easy to issue directives, to store data and information centrally, to take a systemic approach overall and to better manage the hiring of scarce, skilled resources. That said, as my noble friend Lady Neville-Jones pointed out, it is important to see the value of sectoral regulators supported by a centre-of-excellence model. More sector-specific expertise, more direct communication with the industry and more flexible approaches are all easier to achieve with smaller, more specific regulators. At a sufficient level of abstraction, it almost does not matter which of those models you go for; it is about having resourced, skilled and empowered people performing monitoring and enforcement activities, regardless of the body under which they sit. More broadly, the point is that, while differences between a more centralised or more sectoral approach are worthy of debate-I do not think we would ever hit the extremes of either of those-what actually matters is ensuring that, whichever route the Government choose to take us, they make certain that the...

    HL Deb 1 Sep 2026, vol 859, col 40GC

  104. Baroness Lloyd of Effra

    I thank the noble Lords, Lord Birt and Lord Clement-Jones, for their introduction to this section and for setting out the motivation behind a single cyber regulator. As others have pointed out, this is a question of sectoral expertise and cyber expertise. It is my view that, given the complex cyber landscape, establishing a single regulator would not be as effective as the approach that we are pursuing. Different sectors have different risks, technologies, operational environments, market structures and resilience challenges within their industries. To take an example, the energy sector has a greater reliance on operational technology-such as turbines, substations and gas pipes-as compared to the digital services sector, which is predominantly information technology-based. Noble Lords will see that the guidance on quantum, for example, differs in that respect. This is why expert regulators are needed to ensure compliance in a manner that reflects the realities of their sectors. I do not recognise the assertion that there is a single internationally recognised model of best practice. There are very near neighbours who have the model that we are pursuing, which keeps the sectoral expertise. Additionally, I do not believe that it would be an effective use of resources to establish a new regulator, and the proposed 12-month establishment period would delay the implementation of this regime. Finally, cyber would continue to exist within a multi-regulator landscape as there are...

    HL Deb 1 Sep 2026, vol 859, col 41GC

  105. I turn to the questions around scope and the model of regulator at which we are looking, as well as Amendments 76 and 77 on the definition and designation of essential services. I agree that a clear framework is needed for bringing additional organisations into scope of the NIS regulations. However, these criteria should ensure that only the UK’s most critical services are brought into scope, in keeping with the objectives of the NIS regulations. By shifting the definition of “essential” to focus on assessments of material impact only, rather than the systemic importance of the activity, the new criteria would risk significantly expanding the scope of the regulations to capture many more businesses, both large and small. We will talk further about the scope of the Bill in later groups, but I just note in respect of JLR that the UKEF guarantee was not a bailout; UKEF will receive payment for providing its guarantee.

    HL Deb 1 Sep 2026, vol 859, col 42GC

  106. The process set out in the amendment, which would introduce a duty on the Secretary of State to consider recommendations from a central regulator, would create a further, unnecessary layer of complexity. The Secretary of State already has a duty to consult appropriate persons when considering designation, and new activities will be brought into scope only where the Secretary of State has undertaken a thorough assessment of the evidence.

    HL Deb 1 Sep 2026, vol 859, col 42GC

  107. I turn to the questions asked by the noble Lords, Lord Clement-Jones and Lord Birt, about bringing providers of software and digital platforms within the definition of a “relevant digital service provider” and providing relevant security duties for those who create, distribute, manage or support software. Some software and digital platforms are captured by the existing RDSP framework where they meet the definition of “cloud computing”. This would include common models such as platform as a service, infrastructure as a service, and, where the service is scalable and elastic, software as a service. Organisations providing the ongoing management or support of software on behalf of others can also be captured under the relevant managed service provider measure where they meet that definition.

    HL Deb 1 Sep 2026, vol 859, col 43GC

  108. The effect of these amendments would be to extend regulation to software developers, distributors and support providers who are not otherwise intended to be in scope. The approach that we are taking for software products-the software security code of practice-sets baseline expectations for organisations that develop and sell software. The Government are promoting the adoption of the software security code of practice by working closely with industry through the software security ambassador scheme. The scheme brings together industry leaders who are committed to championing the code and driving improvements to software security practices in their supply chains. Although the Government agree that software security is important, creating a statutory register of approved software providers could distort the market, restrict supply choice and introduce untested regulatory consequences that go significantly beyond the Bill’s risk-based approach. It could also create unnecessary barriers for innovative UK firms, start-ups and SMEs, potentially limit access to some of the best talent and reinforce the position of larger established providers.

    HL Deb 1 Sep 2026, vol 859, col 43GC

  109. I come to the question on regulator funding asked by the noble Viscount, Lord Camrose. The Bill provides a different funding model to allow cost recovery such that regulators will be appropriately funded for their additional activities in respect of cyber.

    HL Deb 1 Sep 2026, vol 859, col 43GC

  110. I hope that these responses reassure noble Lords on the benefit of a multi-regulator regime made up of expert and coherent regulators who have a strong understanding of the needs and risks of their respective sectors, combined with the means for consistent, clear and coherent commonality across the piece.

    HL Deb 1 Sep 2026, vol 859, col 43GC

  111. Baroness Neville-Jones

    In this recovery regime, will whatever organisations that are to be regulated be levied for the service of regulation that will be provided, or will the revenue come as a result of fines? If that is the case, I hope they will not raise the revenue by finding fault. What is the basis of the cost recovery? It needs to be perceived to be fair, not onerous and not directed at encouraging regulators to regulate for the sake of increasing their income.

    HL Deb 1 Sep 2026, vol 859, col 43GC

  112. Baroness Lloyd of Effra

    The intent behind the cost recovery model is to provide a fair approach so that regulators, when regulating on cyber, can recover the costs associated with that. Further guidance will be put out on this. I cannot recall the Bill’s exact provisions on fines. I will come back to the noble Baroness on that.

    HL Deb 1 Sep 2026, vol 859, col 43GC

  113. Lord Birt

    My Lords, I confess to a real disappointment listening to the Minister’s response. We have sat here all afternoon and heard many strong contributions on many matters, but so far, the Government do not appear to have moved an inch on any of them. I have a few quick points. The Minister just referred to the regulators. There are 12 regulators of 12 sectors, which is a tiny fraction of the economy. We have had this very profound discussion about AI today. Is she really asking us to believe that Ofwat is capable of mastering the complexity and continuing challenge that AI poses? To me, the answer is all too obvious. Secondly, I say to the noble Baroness, Lady Neville-Jones, in particular, that I have sat on many boards over recent decades at different levels in the UK, in Europe and globally. An awful lot of expertise comes to the table, but it is absolutely out of the question that every board in the land will have a real cyber expert on it-hence the notion. A financial audit is a really powerful thing these days. It gets into the bowels of a company, and if anything is going wrong anywhere then it will find out about it. That is why I propose that we have a cyber resilience audit-not for every company in the land but for those that fall under the heading of essential services. Finally, we are at war, and I completely agree with the noble Lord, Lord Londesborough, that the scale of the damage to our economy is almost certainly vastly underestimated. The framework imposed in...

    HL Deb 1 Sep 2026, vol 859, col 44GC

  114. Amendment 7 withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 44GC

  115. Amendments 8 and 9 not moved.

    HL Deb 1 Sep 2026, vol 859, col 44GC

  116. Clause 7 agreed.

    HL Deb 1 Sep 2026, vol 859, col 44GC

  117. Clause 8: Duties of relevant digital service providers

    HL Deb 1 Sep 2026, vol 859, col 44GC

  118. Amendment 10

    HL Deb 1 Sep 2026, vol 859, col 44GC

  119. Moved by

    HL Deb 1 Sep 2026, vol 859, col 44GC

  120. 10: Clause 8, page 7, line 36, at end insert- “(1A) In paragraph (1), after “risks” insert “, including risks arising from fraud,”.”Member's explanatory statement This amendment would explicitly include risks arising from fraud as one of the risks to the security of network and information systems that relevant digital service providers must identify and manage.

    HL Deb 1 Sep 2026, vol 859, col 44GC

  121. Baroness Ludford

    My Lords, I apologise for not having been much around earlier, but I am also involved in the Hillsborough Bill in the Chamber. Amendment 10 stands in my name and that of my noble friend Lord Clement-Jones. It would insert just five words into Regulation 12 of the 2018 regulations so that the risks which a relevant digital service provider must identify and manage explicitly include risks arising from fraud. The amendment might create no new duty if the duty is already encompassed in Clause 8, but it settles a question that the Bill currently leaves open. When an online marketplace, search engine or cloud provider-or a software or digital platform, under Amendment 7 from the noble Lord, Lord Birt-sits down with its regulator and asks which risks it is expected to manage, is fraud definitely on the list? At present, nobody can say so with confidence, and the answer matters a great deal because of who Clause 8 applies to. Relevant digital service providers are online marketplaces, search engines, cloud computing services and, possibly, digital and software platforms. These are not incidental to fraud in this country. They are increasingly where it begins. We can see the impact of a lack of action to secure online and cyber spaces. Fraud makes up 44% of all UK crime, and online technologies, especially artificial intelligence, are supercharging that, with a big increase in online-generated fraud and scams. Research by Lloyds Bank found that Meta’s social media sites are a...

    HL Deb 1 Sep 2026, vol 859, col 45GC

  122. Lord Ravensdale

    My Lords, I declare my interest as a chief engineer working for AtkinsRéalis. I shall speak to Amendment 82. In our debate on group 3, a lot of good points were made about one specific technology related to cyber: AI. However, as the noble Lord, Lord Birt, said in the debate on the previous group, quantum is the other area that needs attention as a specific technology. When I started here around seven years ago, I never thought that I would one day be talking about quantum mechanics in your Lordships’ House. I recently heard the story of Heisenberg and his discovery of the uncertainty principle, almost 100 years ago in 1927. He was out in a park late one night, after a long argument with Niels Bohr, and he saw a row of street lights. He saw a person walking in between the street lights late at night. He would see them go past one light-you would be able to observe them-and then they would disappear into the darkness and they would then reappear at the next light. He realised that he could use that analogy for the behaviour of the electron: as it was being measured, it was there as a particle, but, when it was not being measured, it had to be considered probabilistically because you do not know where it is. In the same way, with a quantum computer, the value of the qubit, as it is called, is locked in only when it interacts with a measurement device. This extraordinary powerful technology is now emerging. As an example, the Willow chip, which has recently been developed by...

    HL Deb 1 Sep 2026, vol 859, col 46GC

  123. Lord Clement-Jones

    My Lords, I will speak to this substantial and rather disparate group of amendments, including Amendments 93 to 95 in my name, Amendment 10 tabled by my noble friend Lady Ludford, and a number of other amendments in the names of other noble Lords, including that of the noble Lord, Lord Arbuthnot, who, sadly, is in the Chamber as well. Under Amendment 10, comprehensively introduced by my noble friend Lady Ludford, we would ensure that digital service providers manage risk arising from AI-driven fraud which, as she explains, represents over 40% of reported crime in England and Wales. I thought she made an extremely convincing case and I very much hope that the Minister takes what she said to heart and adds the very few words that are required to make this Bill much more secure with regard to the kind of phishing activity that she described. As regards the various amendments relating to skills, beginning with the workforce and competence deficit, in its latest 2025-26 workforce study, ISC2 reveals that 52% of UK cyber professionals identify skills shortages as their single greatest obstacle to regulatory compliance, with 58% of organisations facing critical skills shortages. Regulation without competence is what might be described as pure compliance theatre. That is why, on these Benches, we strongly support Amendment 15 in the name of the noble Lord, Lord Arbuthnot, which would place a direct statutory duty on regulated organisations to ensure that their security leads possess...

    HL Deb 1 Sep 2026, vol 859, col 622GC

  124. Lord Markham

    My Lords, I thank the noble Baroness, Lady Ludford, for introducing this group. I am generally supportive of the principles she is introducing, and I thank all noble Lords who have spoken in this debate. I particularly enjoyed trying to get my head round ten septillion, however many zeros that was, on that computing. Moving first to our amendments, I hope that there was something constructive in this debate trying to build on a lot of the things that the noble Lord, Lord Birt, said in the previous group around giving people tools for self-help in a lot of this because we know that the Government cannot be expected to cover every aspect. Starting with the amendment in my name and that of my noble friend Lord Camrose, Amendment 92B builds on a similar principle to that underpinning our support for a voluntary referral scheme, that being that businesses and individuals should, where practical, be self-sufficient and self-accountable with regard to cyber security. The more that businesses are responsible for their own security, the less the state has to look over their shoulders: I think that is of benefit to both parties. Requiring a large business to report its own cyber security and resilience plan provides an impetus. The idea is that you want the board to ask the chief executive and the executive team, “What are you doing in this space?” and hold them to account for the shareholders. If the answer to that is a big fat zero, that would clearly be concerning. That act of...

    HL Deb 1 Sep 2026, vol 859, col 49GC

  125. Our Amendment 169 attempts to maximise the effectiveness of our information sharing and analysis centres, whether private or public, in the case of the NCSC. Organisations that exist to support the entities covered by the NIS regulations will inevitably have sector-specific expertise, and if there is a chance to utilise that expertise, the Government should do so.

    HL Deb 1 Sep 2026, vol 859, col 50GC

  126. Our Amendment 170 would require the Secretary of State to report annually on the Government’s progress towards meeting the existing requirements and implementation deadlines. Naturally, it is a function of both Houses of Parliament to hold the Government to account over their own targets, so I hope that all noble Lords will get behind this and that the Government will support it too.

    HL Deb 1 Sep 2026, vol 859, col 50GC

  127. Our Amendments 173 and 175 would make the commencement of the Bill conditional on the publication of the national cyber action plan. On the point raised by noble Lord, Lord Clement-Jones, we are not trying to delay this in any way, shape or form. Of course, we want it to be quickly enacted but, at the same time, I think we would all say that it is vital that there is a cyber action plan that we can look at, and we are trying to use this as a tool to say, “Can we please have some action in this space?”

    HL Deb 1 Sep 2026, vol 859, col 50GC

  128. Our Amendment 174 would require the Secretary of State to lay before the House a funding plan for the key provisions before commencement. The remit of the regulatory authority is being expanded and its responsibilities increased. If it is to be meaningful, it must come with a proportionate increase in its resources and support.

    HL Deb 1 Sep 2026, vol 859, col 50GC

  129. I will touch briefly on several other amendments in this group. I am grateful to my noble friend Lord Arbuthnot-who, with impeccable timing, has just entered the Room-for what he is trying to do in Amendment 174D. Cyber security is best achieved when the strategy is system-driven rather than entity-based. I support the principle behind the amendments in the names of my noble friends Lord Holmes and Lord Arbuthnot around making sure that skilled people are in place. The Secretary of State should help to mandate that and define the standards by which someone should be considered an expert.

    HL Deb 1 Sep 2026, vol 859, col 50GC

  130. Lastly, I am grateful to the noble Lord, Lord Clement-Jones, for his amendments, in particular, Amendment 95, which would reduce the maximum interval between legislation and operational reports from five years to three years. That is welcome. The world of cyber security is ever changing and it will do so with increased speed as our AI continues to develop. A five-year maximum timeframe is simply too long for any Government to reflect on the effectiveness of existing legislation. I hope that the Minister will take that point, along with the others I have made.

    HL Deb 1 Sep 2026, vol 859, col 50GC

  131. Baroness Lloyd of Effra

    I thank noble Lords for their amendments in this group, which I will endeavour to cover in my response, starting with the lead amendment from the noble Baroness, Lady Ludford. Fraud risks and fraud are indeed important to address. The Bill requires relevant digital service providers to prevent or mitigate risks through an all-hazards approach. We already expect RDSPs to address risks posed by fraud as part of their security duties. The reason why we do not single out risk posed by fraud is that this may not reflect the full range of risks faced. It is important that regulators in their guidance, for example, in respect of the ICO, respond to the risks that their sectors are experiencing, which could include fraud. I heard clearly the facts that the noble Baroness set out, but that will be something that will come in due course. On the important points made by the noble Lord, Lord Ravensdale, on the risks posed by quantum computing, the “all hazards, all threats, all technologies” approach enables a flexible and future-proof regime. It is important that each version of the statement of strategic priorities is not bound by the risks posed by specific technologies because they could become outdated; it cannot necessarily prefigure what will be a particular risk in 10 years’ time. Post-quantum cryptography is incredibly important. The department is working on guidance documents that will support organisations to manage their transition, in line with the NCSC guidance and...

    HL Deb 1 Sep 2026, vol 859, col 50GC

  132. Amendment 95B would require the report to explicitly assess the impact of supply chain and third-party dependencies on the resilience of regulated persons. The regime places duties on regulated entities to identify, assess and manage risks, including those posed by their supply chains, which will be strengthened by supply chain duties which we propose to include in the SRRs. Through the designated critical supplier measure, we will safeguard the cyber resilience of our essential services’ most critical suppliers.

    HL Deb 1 Sep 2026, vol 859, col 53GC

  133. As the Bill already requires the report on the operation of the regime to assess whether the overall objectives of the regime have been met, this would include considerations of the frameworks’ supply chain measures. The Bill’s delegated powers will also enable us to specify additional topics which must be covered in each report if needed. However, as supply chain resilience is a core component of the framework, specifying this as a factor to consider in the statutory report would not be necessary.

    HL Deb 1 Sep 2026, vol 859, col 53GC

  134. I turn to the Government Cyber Action Plan and Amendment 170, tabled by the noble Viscount, Lord Camrose, which touches on how Parliament holds the Government to account for their own cyber resilience. We strongly welcome the reports from the Public Accounts Committee and the National Audit Office on the Government’s cyber resilience. In response, we have already adopted a duty to provide biannual reporting on progress against the recommendations of these two reports. The Government Cyber Action Plan sets out clear accountability structures to ensure that cyber risks at all levels of government are actively owned and managed, with those responsible held to account.

    HL Deb 1 Sep 2026, vol 859, col 54GC

  135. In respect of the NCAP-the national cyber action plan-and Amendments 173 and 175, I reassure noble Lords that we remain committed to publishing the national cyber action plan and we will update Parliament upon its publication.

    HL Deb 1 Sep 2026, vol 859, col 54GC

  136. Finally, I turn to Amendment 93 from the noble Lord, Lord Clement-Jones. It is essential that the proposed measures I have spoken to are appropriately consulted on. That is why the Bill already contains consultation provisions in relation to the issuing and revising of a code of practice, the use of the Bill’s regulation-making powers, and the powers of direction. At times, a public consultation may be appropriate. That is why we have already indicated our intention to publish a consultation on key elements of the Bill’s implementation.

    HL Deb 1 Sep 2026, vol 859, col 54GC

  137. However, a full public consultation will not always be proportionate to the proposal. This could be the case where a very specific set of individuals or organisations are likely to be affected, whose views can be sought by targeted engagement, or where the consultation deals with highly technical issues or minor amendments. When it comes to matters of national security in particular, decisions are likely to be highly time sensitive. Requiring extensive public consultation ahead of issuing a direction would delay urgent action and increase risks to national security.

    HL Deb 1 Sep 2026, vol 859, col 54GC

  138. The Bill already requires the Secretary of State to consult the intended recipient of a direction and any other persons deemed appropriate before issuing a direction. This requirement may be waived only when this would not be practicable or holding a consultation would be contrary to national security interests. This exception also exists for issuing designated vendor directions in the Telecommunications (Security) Act 2021.

    HL Deb 1 Sep 2026, vol 859, col 54GC

  139. I thank noble Lords for their amendments, which touch on many aspects of implementation of the regime.

    HL Deb 1 Sep 2026, vol 859, col 54GC

  140. Lord Ravensdale

    My Lords, can I clarify the Minister’s response to my amendment? She stated that the statement of strategic priorities should not refer to specific technologies, implying that it is difficult to change. The reasoning behind my amendment was precisely because the statement of strategic priorities is a more flexible instrument than having these targets in the Bill. I think there is no question of the threats posed by quantum cryptography and the need for better join-up. Can the Minister clarify her comments on the statement of strategic priorities?

    HL Deb 1 Sep 2026, vol 859, col 54GC

  141. Baroness Lloyd of Effra

    The content of the statement of strategic priorities will be subject to consultation and we will be working with regulators on that. It could include specific risks, whether from quantum or from fraud. What I do not want to do right now is to commit that it will include that, because we are going through a process.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  142. Baroness Ludford

    My Lords, I thank the Minister for her reply. Her last words gave me a little bit more hope than the rest of her response, to be honest, when she said that the statement of strategic priorities could include specific risks, because it seemed to me that she was otherwise being a bit generic and unspecific-almost above the fray. When I came in on a previous group-and other noble Lords are much more knowledgeable and expert in this field than I am-I picked up some frustration that the feedback from the Government and from the Minister today was a bit vague and not very responsive. All this is happening out there; there are huge cyber threats and there is a feeling that the Government are not really getting to grips with the actualité quite as much as they might. I understand that the Minister might not be able to say now what will be in the statement of strategic priorities, but what we are searching for is that it will grapple with real problems out there in the economy, in society. I must admit that Amendment 82 from the noble Lord, Lord Ravensdale, on post-quantum cryptography, is somewhat above my pay grade. I wish I was more knowledgeable, but I ain’t. But I understand what he is saying, how real this is: the threat is out there. You just have to read newspapers to get the drift of what is happening. I mentioned that fraud is nearly half of all crime, so these are big issues. I think that what we want from the Government is a feeling that they get it, that there is going...

    HL Deb 1 Sep 2026, vol 859, col 55GC

  143. Amendment 10 withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  144. Amendments 11 and 12 not moved.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  145. Clause 8 agreed.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  146. Clause 9: Managed service providers

    HL Deb 1 Sep 2026, vol 859, col 55GC

  147. Amendments 13 and 14 not moved.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  148. Clause 9 agreed.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  149. Clause 10 agreed.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  150. Amendment 15 not moved.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  151. Clause 11 agreed.

    HL Deb 1 Sep 2026, vol 859, col 55GC

  152. Clause 12: Critical suppliers

    HL Deb 1 Sep 2026, vol 859, col 56GC

  153. Amendment 15A

    HL Deb 1 Sep 2026, vol 859, col 56GC

  154. Moved by

    HL Deb 1 Sep 2026, vol 859, col 56GC

  155. 15A: Clause 12, page 10, leave out lines 27 and 28 and insert- “(a) P supplies goods or services, whether directly or through one or more intermediaries, on which an OES for which the authority is the designated competent authority materially depends for the provision of an essential service,”Member's explanatory statement This amendment would allow regulators to address material dependencies beyond immediate contractual suppliers, while ensuring that the statutory review tests whether supply-chain risks outside the regulatory perimeter are undermining resilience and does so at a frequency that reflects technological and threat-related change.

    HL Deb 1 Sep 2026, vol 859, col 56GC

  156. Lord Arbuthnot of Edrom

    My Lords, I apologise for having spent less time in Committee than I would have liked, but I have been speaking on the Public Office (Accountability) Bill. I am grateful to those noble Lords who I suspect have been speaking to amendments on my behalf. Amendments 15A and 15B are about the designation of critical suppliers. New Regulation 14H says: “A designated competent authority may designate a person … under this regulation if P supplies goods or services directly to an OES for which the authority is the designated competent authority”. The Bill expands this regime to cover additional organisations and creates a new framework for designated critical supplies. That is good, and it recognises that essential services depend on organisations that go far beyond the direct infrastructure of the critical organisation itself; everything is dependent on everything else. However, the critical supplier test is focused on suppliers providing goods or services directly to a regulated organisation. That ignores the concept of a supply chain with several tiers of suppliers. These amendments are intended to address that. Therefore, I beg to move.

    HL Deb 1 Sep 2026, vol 859, col 56GC

  157. Lord Ravensdale

    My Lords, I will speak briefly to my Amendment 16. In my view, the central problem is that, if I am small or medium-sized firm, I cannot currently tell with any confidence whether I am within the scope of the Bill as a critical supplier. Small and medium-sized enterprises are the lifeblood of our economy, and we need to approach with caution any ambiguity around their inclusion in the Bill. I took note of what the Minister said at Second Reading, when she said that: “They can be regulated if they are designated as critical suppliers, for which there will be a high bar for designation ”.-[ Official Report , 14/7/26; col. 622.] That was helpful, but what exactly is that high bar? To give noble Lords an example of regulation legislation that is not defined, I come back to one noble Lords are likely to be familiar with: the infamous IR35. With that, the uncertainty and costs of getting it wrong were high in the regulation, so firms applied a blanket under which everyone they engaged with had to be inside IR35 and had to be treated as an employee. IR35 addressed a real problem, but the test was judgment-heavy and getting it wrong was expensive. That was why many organisations stopped making case-by-case decisions and applied a blanket policy, which meant that far more were caught by the regulation than was intended. I remember many years ago, as an engineer, spending a lot of time trying to fill in IR35 determinations and not doing engineering, which was a frustration at the...

    HL Deb 1 Sep 2026, vol 859, col 56GC

  158. Lord Clement-Jones

    My Lords, I shall speak in support of this group on designated critical suppliers. I support in particular Amendments 15A and 15B, which were tabled by the noble Lord, Lord Arbuthnot of Edrom; I have signed them both. We are also sympathetic in principle to Amendment 16 in the name of the noble Lord, Lord Ravensdale. We on these Benches fully support the principle of regulating managed service providers and designated critical suppliers. Because MSPs and key vendors act as trusted bridges into multiple enterprise networks, a single compromised supplier can trigger a systemic, cross-sector shutdown; we saw this in the Collins Aerospace attack, which halted airport check-in systems across Europe. However, we must ensure that our regulatory net is both deep enough to capture hidden systemic risks and precise enough to avoid catching non-critical small businesses. In our view, Amendments 15A and 15B in the name of the noble Lord, Lord Arbuthnot, achieve the necessary depth. They would empower regulators under Clause 12 to designate critical suppliers that supply essential services or managed service providers through one or more intermediaries. In modern digital architectures, systemic single points of failure often sit at tier 2 or tier 3 in the supply chain. If an essential service materially depends on a sub-tier vendor, regulators must not be blinded by the absence of a direct contract. By pairing Amendments 15A and 15B with Amendment 16 in the name of the noble Lord, Lord...

    HL Deb 1 Sep 2026, vol 859, col 57GC

  159. Lord Markham

    My Lords, I thank my noble friend for introducing this group; as it is the final group of the day, I will keep my remarks brief. Amendments 15A and 15B in the names of my noble friend Lord Arbuthnot and the noble Lord, Lord Clement-Jones, seek to allow regulatory oversight of critical suppliers on whom operators of essential services and relevant service providers depend, be it directly or indirectly. We believe that this must be a reasonable approach. The aim of Clause 12 is to ensure the continued functioning of the central suppliers and providers by providing support for their critical suppliers. Surely whether they are supplied directly or indirectly is of little importance. Amendment 16 from the noble Lord, Lord Ravensdale, would restrict the designation of critical suppliers to those who present systemic risk rather than a simple single-entity risk. We should seek to minimise government oversight wherever possible, and suppliers should not be designated unless they pose a genuine risk. I am also supportive of the noble Lord’s focus on cross-sectoral consistency and general macroeconomic risks, which is too often something that the Government neglect. However, I am hesitant to endorse the amendment in its entirety. Having to assess every supplier of every OES, RDSP or RMSP and having to decide whether it meets the systemic threshold have the potential to place an unrealistic administrative burden on designated competent authorities. We are already concerned about the...

    HL Deb 1 Sep 2026, vol 859, col 58GC

  160. Baroness Lloyd of Effra

    I thank noble Lords, in particular the noble Lords, Lord Arbuthnot and Lord Ravensdale, for engaging with the incredibly important question of drawing the right scope in the Bill for the designation of those in the supply chain. It is incredibly important that we get this right and take into account the economic and security impact. To begin, let me explain our reading of the amendments and the practical impact they would have. Amendments 15A and 15B would enable regulators to designate suppliers as critical beyond those which directly supply to regulated entities, if they are materially dependent on that supplier to provide the regulated service. This would extend the scope of the measure to include suppliers further down the chain, even where they have no direct relationship with the regulated entity. In addition, the amendments would introduce an additional assessment of whether a regulated entity is materially dependent on a supplier, which would form part of the designation process. This could create a higher bar for designation of a direct supplier than currently exists in the Bill and could limit designation by excluding suppliers whom it would be reasonable and prudent to include. The Bill recognises the importance of supply chain security, has considered the risks that supply chains pose and has developed targeted and proportionate measures to address those risks. First, regulated entities are subject to an overarching duty to identify and manage the risks posed to...

    HL Deb 1 Sep 2026, vol 859, col 58GC

  161. Lord Arbuthnot of Edrom

    My Lords, I listened carefully to what the Minister said. She made some very reasonable points and she may even be right, but I will need to take it away and think about it. In the meantime, I beg leave to withdraw my amendment.

    HL Deb 1 Sep 2026, vol 859, col 60GC

  162. Amendment 15A withdrawn.

    HL Deb 1 Sep 2026, vol 859, col 60GC

  163. Amendments 15B and 16 not moved.

    HL Deb 1 Sep 2026, vol 859, col 60GC

  164. Clause 12 agreed.

    HL Deb 1 Sep 2026, vol 859, col 60GC

  165. Clauses 13 and 14 agreed.

    HL Deb 1 Sep 2026, vol 859, col 60GC

  166. Committee adjourned at 7.43 pm.

    HL Deb 1 Sep 2026, vol 859, col 60GC