Cyber Incident Response For The NHS
Trustco provide our NHS clients with class-leading, strict-budget compatible IR Plans.




"An incident response plan's weakness is that it's theoretical and untested until required. Trustco works to ensure your IR plan evolves and adapts to a changing threat landscape."
Trustco is trusted by:
Does your IR plan need a security patch?
Cyber Incident Response Plans need updating and are often doomed to fail.
NHS Incident Response Case Study: The WannaCry Attack.
The WannaCry ransomware attack of 2017 had a major impact on the NHS, causing widespread disruption across hospitals and clinics. The recovery was restricted by poor cybersecurity incident response planning:
A 2017 National Audit Office (NAO) report found that no NHS trust had passed the required cybersecurity inspection. This failure suggests a lack of sufficient investment in cyber-defence and incident response preparedness across the NHS.
According to the NAO report, there was a significant delay in NHS organisations identifying and responding to the WannaCry attack. This delay increased the spread of the ransomware and the level of disruption.
There are many reasons why an Incident Response plan is set to fail.
Lack of Regular Testing
NHS trusts often fail to test their IR plans regularly, which leads to confusion and delays when an actual breach occurs.
Understaffing and Skills Gaps
A lack of sufficient in-house cybersecurity expertise, which often leads to slower response times.
Incomplete Documentation
Ensuring each area of your Incident Response Plan is fully fledged and robust can be a challenge; best practises and vulnerabilities change on a daily basis.
Outdated Systems
NHS systems can ofter be outdated, making it difficult to apply modern cybersecurity solutions and further complicating incident response.
Communication Challenges
Internal communications can be challenging with high staff turnover, ever-changing contact details, and staff in multiple locations.
“The WannaCry cyber attack had potentially serious implications for the NHS and its ability to provide care to patients... and could have been prevented by the NHS following basic IT security best practice...the NHS need(s) to get their act together to ensure the NHS is better protected against future attacks.”
Incident Response Plan: The Trustco way
A comprehensive and cost effective way to prepare for any cyber incident.Our IR Pricing Model Could Save You Thousands
- £6000 - the average price of our annual retainer.
- £295 per hour - a discounted, fixed cost for any Incident Response by our cyber team.
- On average, clients save over £40,000 per year! (Compared to a subscription-based model)
£6,000 per year
The average cost of our fixed-priced IR planning retainer.A Fresh Approach To Incident Response
Typical IR Retainer Features | Standard | Trustco |
---|---|---|
Removes the requirement to pre-purchase IR hours | No | Yes |
Eliminates the need to burn unused hours | No | Yes |
Includes IR planner and plan review to jump start the IR engagement | No | Yes |
Offers pre-built incident-specific runbooks | No | Yes |
Provides a secure portal for IR Planning documents | No | Yes |
Offers a 1-hour response SLA | Rarely | Yes |
Provides a sub £300 hourly rate (GBP) | No | Yes |
Total Cost (PER YEAR) | Up to £50,000 | £6,000 |