Skip to content
All services

CYBER ESSENTIALS

Cyber Essentials Support

Move confidently through Cyber Essentials with a readiness assessment, practical gap remediation, clear application guidance and annual renewal support tailored to your organisation.

Cyber Essentials gives customers, partners and tender teams a recognised signal that your organisation has the core technical controls in place. We make the process manageable: understand the requirements, assess your current position, close the important gaps, prepare the application and stay ready for annual renewal.

Start with a focused readiness review or bring us in at any point in an application. You get practical guidance, a prioritised plan and hands-on technical help shaped around your organisation, systems and deadline.

1. Understand the requirements

We begin with the reason for certification, the level you need and the systems that belong in scope. Together we map your people, devices, networks, cloud services and working practices against the current scheme requirements, so everyone knows what the application needs to cover.

Cyber Essentials focuses on five technical control areas:

  • Firewalls.
  • Secure configuration.
  • Security update management.
  • User access control.
  • Malware protection.

This early scope check gives you a dependable starting point and helps avoid surprises later in the application.

2. Assess your readiness

We review the controls and supporting information you already have, work through the current question set and identify where an answer needs stronger evidence or a technical change.

You receive a clear readiness view with:

  • Controls that are already in good shape.
  • Gaps and open questions ranked by priority.
  • Practical actions, owners and recommended next steps.
  • A route to application based on your target date.

3. Close the gaps

We can implement agreed improvements across configuration, access, software updates and protection where you want hands-on help. When another IT team, MSP or cloud provider owns a system, we translate the requirement into a clear action and help review the result with them.

Changes are planned around your working environment, backups and change windows. This keeps the remediation focused, coordinated and easier to evidence in the application.

4. Prepare the application

We guide you through the questions, help gather the right information and turn technical detail into clear, accurate answers about how your organisation works. We can coordinate tasks, review the completed application with you and help respond to requests for clarification.

Your team stays involved throughout, so the final answers reflect the systems and controls you actually use.

5. Submit for certification

When you are ready, we help you submit to an independent IASME certification body for the formal assessment. The certification body makes the assessment decision and issues the certificate, while we stay alongside you to help with technical questions or remediation that comes back during the process.

6. Keep it current each year

Cyber Essentials certification is valid for 12 months. Ahead of renewal, we review changes to your people, devices, services and the scheme requirements, revisit the five controls and prepare updated application information.

Renewal support can be a one-off project or a planned annual review, giving you a repeatable process rather than a last-minute scramble.

Cyber Essentials or Cyber Essentials Plus?

Cyber Essentials uses a verified self-assessment of the five controls. Cyber Essentials Plus builds on the same foundation with independent technical testing. We can help you prepare for either level, address gaps and coordinate the work around your intended assessment date.

Frequently asked questions

Can you help if we have already started the application?

Yes. We can review where you are, clarify difficult questions, identify missing evidence and focus the remaining work around your deadline.

Can you work with our existing IT provider?

Yes. We can work with your internal team, MSP and cloud providers, giving each owner clear actions and reviewing the relevant results together.

What should we have ready for the first conversation?

Your approximate staff and device counts, main cloud services, current IT support arrangement, whether this is a first application or renewal, and any customer or tender deadline are a useful start.

How is the work priced?

Readiness, remediation, application guidance and renewal support are scoped around your organisation and the help you need. Your proposal sets out deliverables, fees and any likely third-party costs before work begins.

Plan your next step

Tell us what is driving certification, where you are in the process and the date you are working towards. We will help you choose the right starting point and build a practical route through readiness, remediation, application and renewal.

For deeper work across websites, web apps, DNS/TLS, email controls or accessible hosting, explore Web & Infrastructure Security Assurance.

Talk it through

Let’s talk it through

Tell us what you need help with. We’ll talk through the options and next steps.

  • Deliverables and fees in writing
  • Follow-up and open actions recorded
  • Access and responsibilities agreed

Send an enquiry at any time. We will respond as soon as we can and agree a practical next step with you.