CSRB Radar — April 2026: Report Stage Underway, the Preparation Window Is Open
Share
Archive note — updated 8 August 2026. This article was originally published on 26 April 2026 as a dated Parliamentary snapshot. It is retained for chronology and should not be read as the current Bill position.
Current position
The Cyber Security and Resilience (Network and Information Systems) Bill has completed all Commons stages and Lords Second Reading. Lords Committee Stage is scheduled to begin on 1 September 2026; future dates may be provisional. The Bill is not law in force until Royal Assent and commencement.
Check the official Parliament Bill record.
What remains useful from the April readiness view
MSPs can still prepare evidence across governance, incident-response ownership, supply-chain assurance and documented scope analysis. These are readiness workstreams based on the Bill and Secordit methodology; they are not confirmed legal thresholds.
The Bill contains a proposed penalty framework. Penalty maxima, regulator detail, scope thresholds and reporting implementation must be read from the current Bill and official secondary material rather than inferred from this historical article.
Where to go next
Start with CSRB-BRIDGE for a self-serve readiness gap analysis. Use CSRB-WATCH for supervised monthly monitoring, material amendment alerts, a versioned changelog and subscriber archive.
Secordit Intelligence products are operational intelligence and compliance readiness materials. They do not constitute legal advice and do not guarantee regulatory outcomes. Buyers should verify current legal requirements against official sources and seek legal advice where required.