Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • NCSC chief warns security must come first with AI designs

Security

NCSC chief warns security must come first with AI designs

Lindy Cameron, CEO of the UK's National Cyber Security Centre (NCSC), today warned that security must be the primary consideration for developers of artificial intelligence (AI) in order to prevent designing systems that are vulnerable to attack.

Image courtesy NCSC

In a major speech, Lindy Cameron (above) highlighted the importance of security being baked into AI systems as they are developed and not as an afterthought. She also emphasised the actions that need to be taken by developers to protect individuals, businesses, and the wider economy from inadequately secure products.

Advertisement
ODU RT

Her comments were delivered to an audience at the influential Chatham House Cyber 2023 conference, which sees leading experts gather to discuss the role of cyber security in the global economy and the collaboration required to deliver an open and secure internet.

She said: “We cannot rely on our ability to retro-fit security into the technology in the years to come nor expect individual users to solely carry the burden of risk. We have to build in security as a core requirement as we develop the technology.

“Like our US counterparts and all of the Five Eyes security alliance, we advocate a ‘secure by design’ approach where vendors take more responsibility for embedding cyber security into their technologies, and their supply chains, from the outset. This will help society and organisations realise the benefits of AI advances but also help to build trust that AI is safe and secure to use.

“We know, from experience, that security can often be a secondary consideration when the pace of development is high.

“AI developers must predict possible attacks and identify ways to mitigate them. Failure to do so will risk designing vulnerabilities into future AI systems.”

The UK is a global leader in AI and has an AI sector that contributes £3.7 billion to the economy and employs 50,000 people. It will host the first ever summit on global AI Safety later this year to drive targeted, rapid, international action to develop the international guardrails needed for safe and responsible development of AI.

Advertisement
ODU RT

Reflecting on the National Cyber Security Centre’s role in helping to secure advancements in AI, she highlighted three key themes that her organisation is focused on. The first of these is to support organisations to understand the associated threats and how to mitigate against them. She said: “It’s vital that people and organisations using these technologies understand the cyber security risks – many of which are novel.

“For example, machine learning creates an entirely new category of attack: adversarial attacks. As machine learning is so heavily reliant on the data used for the training, if that data is manipulated, it creates potential for certain inputs to result in unintended behaviour, which adversaries can then exploit.

“And LLMs pose entirely different challenges. For example - an organisation's intellectual property or sensitive data may be at risk if their staff start submitting confidential information into LLM prompts.”

The second key theme Ms Cameron discussed was the need to maximise the benefits of AI to the cyber defence community. On the third, she emphasised the importance of understanding how our adversaries – whether they are hostile states or cyber criminals – are using AI and how they can be disrupted. She said: “We can be in no doubt that our adversaries will be seeking to exploit this new technology to enhance and advance their existing tradecraft.

“LLMs also present a significant opportunity for states and cyber criminals too. They lower barriers to entry for some attacks. For example, they make writing convincing spear-phishing emails much easier for foreign nationals without strong linguistic skills.”
 

Advertisement
Babcock LB
NW PRO wins ADS Security Innovation Award

Security Events

NW PRO wins ADS Security Innovation Award

12 March 2025

NW Pro have been announced as the winners of the ADS Security Innovation Award during the Home Office’s Security and Policing Exhibition for their product NexuSec.

NPAS orders seven Airbus H135s

Aerospace Security

NPAS orders seven Airbus H135s

12 March 2025

The UK’s National Police Air Service (NPAS) has selected Airbus Helicopters to supply seven H135 helicopters as the initial phase of its fleet renewal programme.

ADS releases its Security and Resilience Outlook 2025

Security

ADS releases its Security and Resilience Outlook 2025

11 March 2025

The latest data from ADS highlights that turnover in the Security and Resilience Sector reached £24 billion in 2024, representing growth of 176% from a decade earlier.

SIA consults on proposed licence applications criteria

Security

SIA consults on proposed licence applications criteria

11 March 2025

The Security Industry Authority (SIA) has today launched a consultation on changes it is proposing to make to its licensing criteria.

Advertisement
ODU RT
HMP Highpoint expanded to create UK

Security

HMP Highpoint expanded to create UK's largest public sector jail

10 March 2025

More dangerous criminals will be taken off the streets thanks to a 700-place expansion which will turn a Suffolk jail into the UK’s largest public sector prison.

AAUK relaunches APPGAA for Air Ambulances

Aerospace Security

AAUK relaunches APPGAA for Air Ambulances

7 March 2025

Air Ambulances UK (AAUK) has relaunched the All-Party Parliamentary Group on Air Ambulances (APPGAA), reaffirming its commitment to advocating for the lifesaving work of air ambulance charities across the UK.

Advertisement
ODU RT