TodayWorkLords Committee stage resumes on 1 September for cyber resilience legislation
Needs team input

Lords Committee stage resumes on 1 September for cyber resilience legislation

Linked to Cyber Security & Resilience

OwnerAlex
Next deadlineNo date
Outputs1
THE BRIEF ALEX IS WORKING FROM

The Bill could impose additional security and resilience duties on systems supporting essential activities, with potential operational and compliance costs for our infrastructure businesses. Recommended actions: 1. Ask Legal and Operations to confirm whether Northstar activities may fall within the Bill’s essential-activity scope. 2. Review the Bill and forthcoming Lords Committee papers for changes affecting regulated operators. 3. Prepare a short internal briefing before the 1 September sitting.

Current next move ↓
Alex’s proposed approach
  1. Ask Legal and Operations to confirm whether Northstar activities may fall within the Bill’s essential-activity scope.
  2. Review the Bill and forthcoming Lords Committee papers for changes affecting regulated operators.
  3. Prepare a short internal briefing before the 1 September sitting.
Keep working with Alex

Ask for a revision, another briefing format, a deadline change or give Alex the missing evidence. The conversation stays attached to this job.

Continue this work with Alex →
WHAT NEEDS TO HAPPEN NOW

Answer Alex’s evidence question

Alex has completed the useful work possible without guessing and will continue from the answer.

ALEX’S LATEST READNeeds team input
Ask Alex about this work →

The Bill is scheduled for four Lords Committee sittings from 1 September. I’ve prepared a first-pass internal brief, but we still need a coordinated scope assessment before we can judge Northstar’s exposure or settle a position.

IssueCyber Security & Resilience
ConfidenceConfirmed
Progress3 of 4 steps
PROGRESS

The next step

3 / 4

Alex keeps the full plan underneath this simple view.

!
CURRENT STEPConfirm Northstar scope and exposure

We cannot yet tell which Northstar activities, systems or group entities could fall within the Bill’s essential-activity scope, or what implementation work may be required.

View full workplan4 steps
Confirm parliamentary timetableCompleted

The Bill is in Lords Committee stage, with sittings scheduled for 1, 3, 7 and 9 September 2026.

Review available legislative materialCompleted

The primary parliamentary source confirms the Bill’s purpose and stage, but no clause text, explanatory notes or Committee papers were available for detailed amendment analysis.

Prepare first-pass internal briefCompleted

I’ve set out the confirmed legislative position, likely relevance to Northstar and the questions that need answering internally.

!
Confirm Northstar scope and exposureWaiting

We cannot yet tell which Northstar activities, systems or group entities could fall within the Bill’s essential-activity scope, or what implementation work may be required.

NEEDS INPUTLegal, IT/security, Compliance and Operations
Provide input →
NEEDS YOU

1 thing Alex needs

1 open

Each request is kept short. Give Alex the answer directly and the work can continue.

!
WaitingLegal, IT/security, Compliance and Operations

Confirm Northstar scope and exposure

Please provide a coordinated assessment of potentially in-scope activities and systems, current NIS obligations, incident-reporting arrangements…

OUTPUTSDrafts and briefingsReview, share or continue from the latest versions.
1 current
ALEX CAN ALSO HELPMore ways to move this workCreate a brief or ask Alex to continue from the current evidence.
Open
ALEX CAN DO THIS NOWKeep this Work Item moving
SOURCE & SUPPORTING EVIDENCECyber Security and Resilience (Network and Information Systems) Bill
View
SourceUK_PARLIAMENT · Primary
ConfidenceConfirmed
Published26 Aug 2026

Current stage: Committee stage. Current House: Lords. Originating House: Commons.

Open official source ↗