0
Featured
Designing the Corporate Cyber Negligence Act (What Accountability Looks Like)
Podcast, Policy, Accountability
Podcast, Policy, Accountability
Designing the Corporate Cyber Negligence Act (What Accountability Looks Like)
Podcast, Policy, Accountability
Podcast, Policy, Accountability

This week, we established why directors should face criminal prosecution for gross cybersecurity negligence. We examined the Synnovis case where a patient died because free MFA was not enabled. We provided technical analysis, psychological examination, and practical implementation guides. Saturday's opinion piece argued forcefully for criminal liability. Next week, we move from "why" to "how."

What would a Corporate Cyber Negligence Act actually say? What are the thresholds between bad luck and criminal negligence? How do we protect small businesses while targeting genuine negligence? What defences exist? How would enforcement work? We are designing the solution. Join us Monday.

Podcast, Policy, Accountability
Podcast, Policy, Accountability
Enough. It Is Time to Send Negligent Directors to Prison for Cyber Failures.
Opinion & Analysis, Accountability, Policy, Podcast
Opinion & Analysis, Accountability, Policy, Podcast
Enough. It Is Time to Send Negligent Directors to Prison for Cyber Failures.
Opinion & Analysis, Accountability, Policy, Podcast
Opinion & Analysis, Accountability, Policy, Podcast

I am tired of watching preventable disasters kill people while executives walk away with bonuses intact.

A patient died because Synnovis did not enable free multi-factor authentication. Nobody will face criminal prosecution.

If a construction director failed to provide hard hats and a worker died, that director would go to prison.

Yet when healthcare executives fail to enable free security controls and a patient dies, nothing happens. This is not justice. This is not accountability.

This is a broken system that treats cybersecurity negligence as an acceptable cost of doing business. It needs to stop. Here is why directors should face prison time for gross cyber negligence.

Opinion & Analysis, Accountability, Policy, Podcast
Opinion & Analysis, Accountability, Policy, Podcast
Should Directors Face Prison Time for Cybersecurity Negligence?
Podcast, Accountability, Healthcare Security
Podcast, Accountability, Healthcare Security
Should Directors Face Prison Time for Cybersecurity Negligence?
Podcast, Accountability, Healthcare Security
Podcast, Accountability, Healthcare Security

On 3 June 2024, a patient arrived at a London hospital A&E feeling unwell. A blood test was ordered. The patient waited. The medics waited. They all waited some more. The patient died. Why? Ransomware had shut down blood testing at Synnovis, the NHS pathology provider.

The security control that would have stopped it? Multi-factor authentication. Completely free. Built into every platform. The consequences for executives who chose not to enable it?

Nothing. In this episode, we ask the uncomfortable question: what if directors faced prison time for gross cybersecurity negligence, just like they do for health and safety failures?

Podcast, Accountability, Healthcare Security
Podcast, Accountability, Healthcare Security

The Small Business Cyber Security Guy

Hello@thesmallbusinesscybersecurityguy.co.uk

© 2026 The Small Buisness Cyber Security Guy/Noel Bradford & Contributors. All rights reserved. All content on this blog is the intellectual property of the copyright holder unless otherwise stated. Feel free to share excerpts with proper credit and a link back to the original posts. Reproducing full articles without permission will make me very grumpy — and nobody wants that.

Privacy Policy - Acceptable Use Statement - Terms of Service