top of page
Part way through your assessment and looking for help?
Why not arrange a meeting with your assessor or try our blog.
We passed last year so which service do we need
Which Service
CEPlusStandardSystem
Frequently asked questions
Cyber Essentials Certification FundamentalsWhich Service is best for my organisationAnswering the question setThe Cyber Certification StandardsGovernment Contract ComplianceCyber Security Risk Management
What is the Cyber Essentials certification process?
Cyber Essentials is a series of self-assessment questions that when answered will highlight and provide visibility of areas of cyber risk your business is exposed too. This allows you to make changes and become a Cyber essentials certified business.
You work through all the questions which are then assessed by the awarding body and you will pass or fail. We have supported services (https://www.getcybercertified.co.uk/product-page/cyber-essentials-supported)which come with assistance and pre checking of your answers before marking. We haven't had a client who's taken our supported service and followed our advice who has failed and we've marked thousands of assessments. Or if you know you will pass we also have a marking only service (https://www.getcybercertified.co.uk/product-page/cyber-essentials-marking-only)which is simply that, we mark your submission and if its compliant we issue your certificate. No fuss, no support, no turnaround SLA's, just a submission marking.
The basic level of Cyber Essentials (CE) does not require any vulnerability or third-party testing like the higher Cyber Essentials Plus certification which required an audit of your answers.
How can you quickly achieve Cyber Essentials certification?
With Get Cyber Certified, you can achieve Cyber Essentials certification quickly through our supported service. We offer same-day options and boast a 100% pass rate for our supported service. The quickest we've certified is 4 hours from start to finish. If you need a quick turnaround, call us and let us know. If we have the resources available and can help, we will.
Why do we need Cyber Essentials?
We live in a world where cyber-attacks are now a lucrative business model and used by criminals and states. This is partly due to speed of growth and our increasing reliance on connected technologies, both personally and professionally.
The risks keep on growing and each year Cyber-attacks have consistently grown around 40%. With attacks becoming more sophisticated the need for businesses to invest and take cyber security seriously has never been greater, and the repercussion for getting it wrong huge.
It was to help address this situation that the National Cyber Security Centre (https://www.ncsc.gov.uk/)(NCSC) and leading experts created a security standard that businesses could apply to help protect themselves. The result was ‘Cyber Essentials’ a certification that helps businesses to understand and deliver the right security in the right areas and even helps to protect against 80% of common cyber threats.
Whats covered in the Cyber Essentials assessment?
Cyber Essentials certification was designed around 5 key pillars of security
• Your Security Configurations and Settings
• Patch Management and Updates
• Boundary Firewalls and Internet Gateways
• Access and Administrative Controls
• Protecting the business from Malware
By addressing vulnerabilities in each of these areas, you can reduce your risk to the majority of common security threats.
Why should you get Cyber Essentials certified?
Getting Cyber Essentials certified offers numerous benefits: it reassures your customers that you take security seriously, attracts new business by showcasing your commitment to security, and provides marketing materials to promote your certification. It helps combat up to 80% of common cyber threats and is recognized by the ICO as a step towards GDPR compliance. It also allows you to work in government contracts and supply chains, provides assurance that your basic cyber security controls are in place, offers free Cyber Liability Insurance, and can reduce business costs as some insurers offer discounts to CE certified companies. Ultimately, it secures your business, reducing potential downtime and costs.
How long does certification last?
Your Cyber Essentials certification lasts for 12 months at which point you will need to reapply for certification. We usually recommend starting your next assessment around 6 weeks before your certificate expiry date.
Whats in scope for Cyber Essentials?
This is one of the most common questions and include: Are home user devices included? What about Microsoft 365? My company accesses a remote desktop environment so are the PC's and laptops still in scope? What about staff's personal phones?
Basically, any devices used to access (and not necessarily store) company data is in scope. That's a very simple way of describing it and the UK Governments NCSC change the framework from time to time. If you would like to check what's covered in the Cyber Essentials assessment you can download the governments Requirements for IT Infrastructure document here.(https://www.ncsc.gov.uk/cyberessentials/resources) The NCSC sometimes change the link so if you cant download the document please let us know.
bottom of page
