Cyber Security / 02 · What we do
Certification, monitoring and response
From the baseline certifications a supply chain asks for, to monitoring around the clock and incident response, with one team accountable across all of it.
01Certify
Cyber Essentials and Cyber Essentials Plus
The baseline supply chains and contracts ask for. Preparation, remediation and formal assessment are separate pieces of work, whether you take Cyber Essentials or Cyber Essentials Plus, which adds a technical audit where an assessor tests a sample of your devices and accounts.
Readiness reviewControls in placePlus auditAnnual renewal
Book a Cyber Essentials review →
02Defence
Defence Cyber Certification
The Ministry of Defence has asked all industry partners to achieve Defence Cyber Certification Level 0 by 31 December 2026. Level 0 requires Cyber Essentials for your business-critical systems, and we are an appointed certification body for both.
DCC Level 0MOD supply chainCyber Essentials includedGap review
See what Level 0 involves →
03Implement
Cyber Advisor
Help putting the five Cyber Essentials technical controls in place, for small and medium organisations, from an advisor assessed by IASME. We work on your systems alongside your team.
Five controlsOn your systemsSME focusedIASME assessed
See the Cyber Advisor service →
04Assured
NCSC Assured Service Provider
The assurance behind that support: we are an NCSC Assured Service Provider under the Cyber Advisor scheme, assessed by IASME. Supplier due diligence can name the scheme and check the record.
Cyber AdvisorIASME assessedCE implementationSME focused
See our NCSC assurance →
05Assure
ISO 27001
A full information security management system, the proof larger clients and regulators look for. We run ISO 27001 ourselves and are certified by a UKAS-accredited certification body, so we can take you from gap analysis to certificate.
Gap analysisISMS buildInternal auditCertification support
Plan your ISO 27001 path →
06Protect
Email and endpoint security
The two routes attackers use most often: the inbox, and the devices your people work on. We configure and run the protection, usually on licences you already pay for, and keep it that way.
Anti phishingMulti factor authenticationEndpoint protectionData controls
Book a security review →
07Detect
Threat detection and response
Managed detection and response watching your systems around the clock, included as standard for managed clients. Analysts investigate the alerts and contain threats early.
24 / 7 monitoringMDR as standardThreat containmentClear reporting
See how monitoring works →
08Respond
Incident response
When it matters, you speak to a senior responder. They take control, contain the incident, restore the business, and explain what happened and how to stop it recurring. Incident response is available to our managed clients.
Rapid containmentSenior responderRecoveryPost incident report
Talk to us about response →