Governance, risk and compliance
ScotPayments follows the principles and recommendations of GovAssure and NCSC’s Cyber Assessment Framework.
This includes an active governance and risk management control over the security elements of the service.
The design authority which oversees this is the ScotPayments Security and Privacy Design Authority.
This authority is made up of:
- senior members from the ScotPayments technical, security and product teams
- external experts from the Scottish Government’s Cyber Security Unit