Decoding the world of cybersecurity

· ·

UK plans national information defence centre

The UK government has ordered work on a National Centre for Information Defence while separately developing a US partnership applying AI and autonomy to critical-infrastructure defence.

UK plans national information defence centre
Summary
  • UK security chiefs have been tasked with creating a centre to detect, attribute, and disrupt hostile-state information attacks.
  • The operating model, statutory footing, accountability structure, and detailed remit have not yet been published.
  • A separate UK-US AI and autonomy partnership will focus on protecting critical national infrastructure and accelerating interoperable defence capabilities.

The UK government has ordered security chiefs to begin establishing a National Centre for Information Defence, creating a dedicated structure intended to detect, attribute, and disrupt hostile-state information operations.

Prime Minister Andy Burnham announced the centre during his address to the United Nations General Assembly in New York on 22 September. The government has not yet published a detailed operating model, budget, statutory basis, or timetable, meaning the announcement currently establishes direction rather than a fully defined agency.

The proposed centre is intended to address foreign information operations, including AI-enabled disinformation and synthetic media. Work in this area is currently distributed across intelligence agencies, law enforcement, government departments, and regulatory and policy functions.

Parliamentary committees have previously argued for a more coherent structure. The Foreign Affairs Committee said the UK response to foreign disinformation had been fragmented and had recommended a dedicated centre, while the Science, Innovation and Technology Committee has separately examined misinformation, harmful algorithms, and the limits of existing regulatory arrangements.

The remit will require careful boundaries. Information operations sit at the intersection of national security, intelligence, social platforms, democratic processes, and freedom of expression. Parliamentarians responding to the announcement have already raised questions about statutory footing, public accountability, and the distinction between hostile foreign interference and lawful domestic political activity.

The government’s stated focus is hostile-state activity. The Prime Minister linked the proposed centre to Russian information operations and said the UK would share expertise with countries facing interference around elections.

The announcement comes alongside a separate UK-US initiative applying artificial intelligence and autonomy to the defence of critical national infrastructure. The partnership will involve the UK Ministry of Defence’s Rapid AI Delivery Taskforce and the US defence department’s digital and AI organisation, with an emphasis on interoperable capabilities and detecting and deterring threats against infrastructure.

The government has described the programme broadly, including infrastructure from sea lanes to airspace. Detailed cyber architecture, deployment arrangements, and safeguards have not yet been released.

Taken together, the two initiatives illustrate how the definition of national cyber resilience is extending beyond conventional network defence. Information integrity, AI-enabled influence activity, autonomous defence systems, and the protection of physical and digital infrastructure are becoming increasingly connected parts of state security policy.

They also create accountability questions. Attribution of hostile information activity can depend on intelligence that cannot always be published, while disruption can involve technical, diplomatic, legal, or platform-level measures. A body responsible for both attribution and operational response will need clear authority and oversight if its conclusions are to carry public confidence.

Similar questions apply to AI-enabled infrastructure defence. Automated detection may improve speed and scale, but autonomous or semi-autonomous defensive systems require reliable controls over what can be acted upon without human intervention, particularly where digital activity interacts with physical infrastructure or military systems.

The National Centre for Information Defence is therefore still a proposal rather than an operational capability. Its eventual significance will depend on where it sits in government, what powers it receives, how it coordinates existing agencies, and how transparently its remit distinguishes hostile-state operations from the wider information environment.

×