ISO 22336 states that an organization’s top management should develop a resilience policy. This article looks at what a resilience policy should include and the steps involved in preparing one.
UK
Absolute Security has published the 2025 Resilience Index, a report based on actual telemetry from over 6 million enterprise PCs. The report claims that ‘the conventional notion of resilience may already be obsolete’.
Zimperium has announced the release of its 2025 Global Mobile Threat Report, which highlights critical mobile device threat trends from the past year.
The new UK Resilience Academy (UKRA) was launched on 28 April 2025. Here, Robert Hall builds on a previous article, Prospects for the new UK Resilience Academy; and looks at the aims of the UKRA.
Many CISOs already oversee strong security programs focused on prevention, detection, and response. However there’s growing recognition that resilience needs to be an integral part of strategies. Tim Sherbak offers some advice for CISOs on moving forward into cyber resilience.
A new set of National Occupational Standards (NOS) for Resilience and Emergencies have been published by standard setting organization The Workforce Development Trust, as an initiative of the UK’s Cabinet Office.
Nexthink has published new research exploring the challenges that IT leaders face in preparing for the next wave of AI-driven digital transformation.
A new survey-based report from Semperis looks at The State of Enterprise Cyber Crisis Readiness.
The Resilience Association will hold its Annual Summit on Thursday 12 June in London, with the theme ‘Renewable Resilience: Transitioning through Uncertainty’.
Veeam Software has published the findings of its latest research in the From Risk to Resilience: Veeam 2025 Ransomware Trends and Proactive Strategies Report.









