Zero Trust in Practice: Lessons from UK Public Sector Cloud Migrations

Zero Trust cloud security infographic showing the five pillars of Zero Trust for UK public sector AWS and Azure cloud migrations.

The Shift from Perimeter Thinking to Perpetual Verification For years, organisations — particularly in the UK public sector — relied on a simple security model: build a wall, keep the bad actors out, and trust everyone inside. That model is now borderline dead. In 2026, Zero Trust isn’t a buzzword or an aspiration. It’s the […]

GovAssure, Cyber Essentials Plus & CloudCompliance: A 2026 Readiness Guide

GovAssure, Cyber Essentials Plus & Cloud Compliance

Compliance Is Moving Faster Than Most Organisations Can Keep Up If you work in UK public sector IT, 2026 feels like a year where the compliance ground is shifting under your feet. GovAssure assessments are maturing and expanding in scope. Cyber Essentials Plus remains a procurement baseline but is being applied with increasing rigour. The […]

DevSecOps in 2026: Why Embedding Security Into Your Pipeline Is No Longer Optional

Why Embedding Security Into Your Pipeline Is No Longer Optional

DevSecOps in 2026: Why Embedding Security Into Your Pipeline Is No Longer Optional The End of Bolted-On Security For years, security was the stage gate at the end of a delivery pipeline, a manual review, a penetration test, a sign-off meeting that happened weeks after code was written. Developers built. Security teams reviewed. And the […]

Non-Human Identities: The 100-to-1 Risk Your Cloud Team Isn’t Managing

NON-HUMAN IDENTITIES

The Identity Problem Nobody’s Talking About Ask any cloud security team what keeps them up at night and they’ll mention ransomware, misconfigurations, or phishing. Very few will mention the service principal that was created eighteen months ago, has administrator-level access to your production AWS account, and hasn’t been rotated since. They should. In 2026, the […]

Why Sovereign Cloud Is Now a Strategic Priority for European Organisations

Illustration of the European sovereign cloud landscape showing EU-based cloud infrastructure, hyperscalers like AWS, Microsoft and Google, and European providers, highlighting data sovereignty, security and compliance across Europe.

In 2026, “the cloud” is no longer just about where your data sits; it is about who has the keys to the room and which laws apply when someone knocks on the door. For European organisations, Digital Sovereignty has moved from a compliance “checkbox” to a core strategic pillar. At Mobilise Cloud, we are seeing […]

2026: The Upcoming year for the UK public sector and cybersecurity

The year 2026 marks a definitive inflection point for the United Kingdom’s public sector. We have moved beyond the era of aspirational digital transformation and entered a period of operational consolidation and rigorous accountability. With the enforcement of the GovAssure compliance regime and the publication of the Government Cyber Action Plan, the days of “self-assessment” […]

Becoming an IAM Ninja with a little help from AWS

Imagine the scene, your company has decided to move to AWS and already created a load of resources in the new environment. When all of a sudden, they are now worried about the security of these resources and the access they might have. The CSO tasks you with refining and creating new IAM policies. You’re […]

Cloud Security 2019: The review and 2020 trends

Last year I wrote a blog on what security measures you should take for the cloud in 2019. Now I’m here to review if I am a CloudSec soothsayer, or if I was wide of the mark. Let’s see how I did! The Security Measures 2019 Review Don’t Presume the CSP will take full care […]