Salisbury Foundation Trust


Internal Reference Number: FOI_4917

Date Request Received: 25/02/2019 11:03:35

Date Request Replied To: 11/03/2019 08:39:16

This response was sent via: By Email

Request Summary: Cybersecurity; budget, cyber attacks, threat types, defences etc.

Request Category: Private Individuals

Question Number 1:
Are you aware of the Minimum Cyber Security Standard, published 25th June 2018?
a. Yes
b. No
Answer To Question 1:
Question Number 2:
What is your annual dedicated budget for cybersecurity (including personnel and technology)?
a. £10,000 or less
b. £10,001 - £50,000
c. £50,001 - £100,000
d. £100,001 - £500,000
e. £500,001 - £1,000,000
f. £1,000,001 - £5,000,000
g. £5,000,001 - £10,000,000
h. £10,000,001 or more
Answer To Question 2:
Question Number 3:
Approximately how many cyber-attacks (of any kind) have you experienced in your organisation in these 12-month periods?

Please see attached table to complete answer.
Answer To Question 3:
Question Number 4:
Which of the following attack / cybersecurity threat types have been detected by your organisation? [Select all that apply]
a. Hacking
b. Phishing
c. Malware
d. Ransomware
e. Accidental/careless insider threat
f. Malicious insider threat
g. Foreign governments
h. Crypto mining
i. Other, please specify: _______________
Answer To Question 4:
As far as aware only b, c and h
Question Number 5:
Which of the following form part of your cybersecurity defence technology strategy? [Select all that apply]
a. Firewall
b. Antivirus software
c. Network device monitoring
d. DNS filtering
e. Malware protection
f. Log management
g. Network configuration management
h. Patch management
i. Network traffic analysis
j. Multi-factor authentication
k. Network perimeter security solutions
l. Employee training (whole organisation)
m. Employee training (IT team)
n. Other, please specify: ___________
Answer To Question 5:
An exemption has been applied to this question under section 38 (Health and Safety) of the Freedom of Information act.
Question Number 6:
Which of these obstacles has your organisation experienced in maintaining or improving IT security? [Select all that apply]
a. Competing priorities and other initiatives
b. Budget constraints
c. Lack of manpower
d. Lack of technical solutions available at my agency
e. Complexity of internal environment
f. Lack of training for personnel
g. Inadequate collaboration with other internal teams or departments
h. Other, please specify: _______________
Answer To Question 6:
Primarily a, b and c
Please see attachments:
FOI_4917 Q3 Table for completion.docx
To return to the list of all the FOI requests please click here

Our staff at Salisbury District Hospital have long been well regarded for the quality of care and treatment they provide for our patients and for their innovation, commitment and professionalism. This has been recognised in a wide range of achievements and it is reflected in our award of NHS Foundation Trust status. This is afforded to hospitals that provide the highest standards of care.

Salisbury NHS Foundation Trust, Salisbury District Hospital, Salisbury, Wiltshire, SP2 8BJ
T: 01722 336262 E:
© 2022 Salisbury NHS Foundation Trust
Trust Values