WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts (TLP:CLEAR) UK National Protective Security Authority – Setting the Foundations: Five Principles for a Shared Approach to Insider Risk
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) UK National Protective Security Authority – Setting the Foundations: Five Principles for a Shared Approach to Insider Risk

TLP:CLEAR

Author: Alec Davison

Created: Thursday, March 19, 2026 - 14:38

Categories: Physical Security, Security Preparedness

Summary: The UK’s National Protective Security Authority (NPSA) recently published a guidance report “Setting the foundations: Five principles for a shared approach to Insider Risk,” which outlines five key principles underpinning NPSA’s years of advice and guidance on insider threats.

Analyst Note: Throughout its over 25 years’ experience in security work, NPSA has developed comprehensive insider risk guidance. The report states no matter if you’re new to the field or an experienced security practitioner, audiences need a clear and consistent understanding of key concepts related to insider threats, which NPSA terms insider risk. The report outlines five key principles underpinning NPSA advice and guidance, including:

  • Principle 1: Adopting a shared language – NPSA provides definitions to encourage consistency and highlights that both unintentional and intentional insider events can cause harm to organizations.
  • Principle 2: Broadening our understanding of potential insider threats – Categories of the most common insider events are included. They widen the frames of reference when considering the breadth of assets that need protection and the range of potentially relevant insider events.
  • Principle 3: Considering the ‘spectrum of intent’: unintentional to intentional insider activity – Our message, ‘If you have people, you have insider risk’ challenges assumptions that insider risk solely relates to those who intentionally set out to cause harm. The spectrum of intent demonstrates holistic, organization-wide systems aiming to reduce both intentional and unintentional insider events. These should target both unintentional and intentional insider risk, support staff resilience and build engagement in security.
  • Principle 4: Detecting signs of and de-escalating insider risk – Reviews of known cases demonstrate that signs, across the critical pathway to insider risk, are visible to the organization. There are opportunities to intervene early to help mitigate and reduce insider risk before it manifests or escalates.
  • Principle 5: The foundations for effective interventions – In this section we provide frameworks focusing on what drives insider risk and implications for mitigations. Key considerations are effective security culture and measures that shape the environment to limit the opportunities for insider events to take place, whether intentionally or unintentionally.

Additionally, late last year, WaterISAC published a “Insider Threat Management – Fact Sheet.” This fact sheet was developed by WaterISAC’s Physical Security & Resilience Advisory Committee to help water and wastewater utilities strengthen their insider threat management policies. 

Original Source: https://www.npsa.gov.uk/specialised-guidance/insider-risk-guidance/setting-foundations-five-principles-shared-approach-insider-risk

Additional Reading:

  • (TLP:GREEN) UK National Protective Security Authority Releases Guidance on Managing Insider Threats

Related WaterISAC PIRs: 1, 2, & 4

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 28, 2026)

May 28, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness
Members Only

(TLP:AMBER) Domestic Violent Extremist Shooting Attack at Islamic Center in San Diego, California

May 28, 2026 in Physical Security, Security Preparedness

(TLP:CLEAR) Research Report – Violent Extremist Targeting of Critical Infrastructure

May 28, 2026 in Physical Security, Research, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar