Nguyễn Đình ThuyênAn open notebook
EN
Change colour theme
← Security & recovery
03 / Foundations · 3 min

Cyber risk belongs in daily ship management

Cyber risk management connects people, systems and safe operation. It needs responsibilities and exercises as well as technical controls.

In 30 seconds

  1. IMO MSC.428(98) addresses cyber risk within the safety management system (SMS).
  2. The IMO maritime cyber guidance now links to MSC-FAL.1/Circ.3/Rev.3; always check the current source and applicable flag requirements.
  3. Define reporting, decision authority, response and recovery arrangements suited to the vessel.
Make it concrete

Run a tabletop drill: the office network is unavailable while the ship remains operational. Who reports, who authorises action, and which communications remain available?

  1. 01Assign responsibility
  2. 02Practise
  3. 03Review
Concept diagram · simplified for learning
Check your understanding

Is maritime cyber risk only the shore IT department’s responsibility?

Learning paths →

Go to the source

Sources reviewed: 13.09.2026