Cyber Essentials Plus Testing & Certification
Cyber Essentials Plus consists of an audit of your organisation's system by a highly trained assessor. The goal of said assessment is to confirm that all controls and measures that have been declared in the Cyber Essentials questionnaire have actually been put into practice within the organisation's network. By undertaking and completing Cyber Essentials Plus, you can declare that your organisation has taken the appropriate measures to meet baseline security standards set out by the Cyber Essentials Scheme.
Other Products and Services from Regola Digital Consulting
Cyber Essentials Certification (Medium-sized Business 51-250)
Cyber Essentials certification for medium-sized businesses up to 250 employees
Free Cyber Security Insurance if turnover <£20M
Fixed cost £600
Cyber Assurance Level 1 Consultancy & Certification
Cyber Assurance is a comprehensive, flexible and affordable cyber security standard. This provides assurance that an organisation has put in place a range of important cyber security, privacy and data protection measures. It aligns directly with the UK Government’s 10 steps to Cyber Security with additional Data Privacy controls and offers smaller companies within a supply chain a ‘right sized’ approach to show their level of information security for a realistic cost.
Important cyber security measures are included such as assessing and managing risk, training people and setting practical policies and procedures. Key resilience strategies are covered and include backing up data, business continuity planning and incident response. Legal and regulatory requirements are also addressed such as your country’s implementation of GDPR (in the UK this is the Data Protection Act). Furthermore, the IASME Cyber Assurance standard was developed over several years during a government funded project. This was in order to create an affordable and achievable alternative to the international standard, ISO 27001. You must have Cyber Essentials first in order to achieve Cyber Assurance.
At Level 2, Cyber Assurance maps well to ISO27001 for Cyber Resilience. A separate page describes this product, and the path to ISO27001.
Cyber Security Awareness Training
Cyber Security Awareness Training is probably the first real step towards cyber resilience (after becoming aware that you need cyber awareness training that is!). To be resilient, an organisation not only needs to be able to defend against cyber attacks, but also to recover effectively and quickly if a system problem emerges.
We consider Cyber Essentials to be the obvious next step, because the 5 technical controls harness the power of software that will already be on the system to automatially protect, with assistance of course from users who are aware (e.g. passwords). The cost of getting these controls working effectively could well be minimal! Once achieved, Cyber Essentials certification comes with free cyber liability insurance (up to £25000). You may wish to also get audited (Cyber Essentials plus). No further training is required for that, but you do need to allow an NCSC-approved vulnerability tester into your system.
Once those five technical controls are working effectively, other standards should be considered that use morte robust user controls, and management controls. This can be achieved through Cyber Assurance, PCI-DSS, or ISO27001.
If an organisation is only at the awareness level, do not be too worried... the fact that you are thinking about improving awareness puts you ahead of many other organisations who have yet to even take that first step.
Regola Digital Consulting
Office 1.19, Torbay Business Centre, Lymington Road, Torquay, Devon, TQ1 4BD, United Kingdom
Regola are an NCSC approved Cyber Essentials Certification Body We offer a cost-effective service, based on many years experience of offering expert advice to SMEs so they cover the basics of technical security. We specialise in UK Government's Cyber Essentials (CE) and have assessed over 150 clients. As an accredited Certification Body for both CE and CE+, and IASME Cyber Assurance, we offer customised guidance to help businesses achieve valued cyber security certifications to assure partners and clients. The Cyber Essentials scheme also provides free Cyber Liability insurance up to £25000 for smaller UK companies who achieve certification. It is especially beneficial for SMEs aiming to secure government contracts or reassure clients that their information is well-protected.