The Official Report is a written record of public meetings of the Parliament and committees.
The Official Report search offers lots of different ways to find the information you’re looking for. The search is used as a professional tool by researchers and third-party organisations. It is also used by members of the public who may have less parliamentary awareness. This means it needs to provide the ability to run complex searches, and the ability to browse reports or perform a simple keyword search.
The web version of the Official Report has three different views:
Depending on the kind of search you want to do, one of these views will be the best option. The default view is to show the report for each meeting of Parliament or a committee. For a simple keyword search, the results will be shown by item of business.
When you choose to search by a particular MSP, the results returned will show each spoken contribution in Parliament or a committee, ordered by date with the most recent contributions first. This will usually return a lot of results, but you can refine your search by keyword, date and/or by meeting (committee or Chamber business).
We’ve chosen to display the entirety of each MSP’s contribution in the search results. This is intended to reduce the number of times that users need to click into an actual report to get the information that they’re looking for, but in some cases it can lead to very short contributions (“Yes.”) or very long ones (Ministerial statements, for example.) We’ll keep this under review and get feedback from users on whether this approach best meets their needs.
There are two types of keyword search:
If you select an MSP’s name from the dropdown menu, and add a phrase in quotation marks to the keyword field, then the search will return only examples of when the MSP said those exact words. You can further refine this search by adding a date range or selecting a particular committee or Meeting of the Parliament.
It’s also possible to run basic Boolean searches. For example:
There are two ways of searching by date.
You can either use the Start date and End date options to run a search across a particular date range. For example, you may know that a particular subject was discussed at some point in the last few weeks and choose a date range to reflect that.
Alternatively, you can use one of the pre-defined date ranges under “Select a time period”. These are:
If you search by an individual session, the list of ˿ and committees will automatically update to show only the ˿ and committees which were current during that session. For example, if you select Session 1 you will be show a list of ˿ and committees from Session 1.
If you add a custom date range which crosses more than one session of Parliament, the lists of ˿ and committees will update to show the information that was current at that time.
All Official Reports of meetings in the Debating Chamber of the Scottish Parliament.
All Official Reports of public meetings of committees.
Displaying 2297 contributions
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
Has the review completely reshaped the entire skills alignment programme? Has it completely changed how we think about it and what we intend to do? Is it fair to say that it has had a major impact on rethinking the direction of travel for the programme?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
Will you say a wee bit more about that? There has been a skills alignment assurance group, and now there is a shared outcomes assurance group. What is the fundamental difference between the two? Do you have confidence that the new group will be an effective way to monitor progress as we move forward?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
The backup data seemed to be targeted at an early stage. I am a wee bit surprised about how easy it was to access the backup systems. From my long experience of working in computing, I would have expected it to be logical for the backup data to be physically separate so that it could not be subjected to that sort of cyberattack. It should be completely protected and separate from the main data, but that does not seem to have been the case here. Should you recommend that SEPA and other organisations look more closely at that, and that they should separate and protect any data that is essential to keeping their business running?
10:45Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
Does that give assurance, though? There is bound to be another attempt at a similar attack on an organisation. In my opinion, it is still dangerous to have a direct link to the backup data and servers from the main data and servers. There should be some physical and logical separation of the two so that, if the attack is successful in one part of the operation’s data, it does not succeed in the other. Does SEPA plan to consider that?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
Auditor General, one of the lessons from the attack is that the cybercriminal fraternity is a step ahead of the game, despite organisations’ best efforts to have the best systems, including security systems, in place. I imagine that a number of the recommendations try to address that.
The cyberattack is still the subject of an on-going police investigation, but are you able to tell us exactly where the attack managed to penetrate SEPA’s systems—the route source—or will that remain confidential?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
That is good to hear. Convener, you will be delighted to hear that, in my day, when I worked in computing, our guys used to put the backup in a case and take it to the bank. We would actually take a hard drive away and make sure that it was physically protected so that, if something like that happened, the information could be immediately restored. There is a lesson from the past in that regard.
My final query is about staff training. It is recognised that SEPA staff were well trained in all those aspects and were aware of them. Are there further plans to improve training in relation to cyberattacks and to make staff more aware of the possibilities and the risks?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
Before I ask a question on SEPA’s financial sustainability in light of the cyberattack, I will ask about something else about which I am curious.
What volume of data are we talking about? In the report, I can see only a reference in the appendix, on page 9, to about 1.2GB of data being stolen. Is that it? Are we talking about only 1.2GB of data? That is a tiny amount of data that has had such a catastrophic impact.
I refer to my earlier point about offline storage. You can buy data sticks that accommodate huge amounts of data for £10 or £50. You can put almost your entire data set on separate physical data sticks. Nothing can hack them if you do that.
Is there any information on the volume of data that SEPA lost and whether the right strategy is in place to protect it?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
My final question is about the long-term implications for SEPA’s financial sustainability. You said that we do not know the full cost of the cyberattack, but do you have any indications of how it will affect SEPA’s financial sustainability?
Public Audit Committee
Meeting date: 10 February 2022
Willie Coffey
I imagine that cyberattackers make a reasoned guess about how we all behave when we use computers. We are all vulnerable to inadvertently clicking on a link in an email—that seems to be a common route. It seems to me that all systems need the sophistication to guard against that, even when we make those mistakes. Perhaps your colleagues can talk about whether additional protections can be put into systems so that, if we are subjected to phishing and even if we click links, a degree of protection is still available.
Local Government, Housing and Planning Committee
Meeting date: 8 February 2022
Willie Coffey
Good morning. I want to develop a discussion about how and whether NPF4 deals with not just the vacant and derelict land that Sarah Shaw mentioned a moment ago, but the derelict and abandoned dirty, filthy shops that blight our high streets. A lot of good work is being done in a lot of town centres across Scotland, with communities and councils doing a lot to improve areas and towns, where they can. However, many of my constituents often ask me, “What can we possibly do about the 18 abandoned shops that are blighting our high street?” The properties in question are mainly privately owned.
My question, therefore, for Sarah Shaw and perhaps my Ayrshire colleague Craig Iles is: what can we do about this? Should NPF4 strengthen powers in that respect, or do we already have sufficient powers under planning legislation to deal with the issue through, say, amenity notices?