Practical help with the controls
Our NCSC-assured Cyber Advisor service provides advice and practical support. The NCSC Assured Service Provider page explains the scope of that assurance.
secure
Get your Cyber Essentials assessment directly from an appointed certification body, wherever you are in the UK.
From £320+ VAT · one-off assessment
For a first certificate, renewal or customer requirement. Submit when you are ready, or ask for separately scoped preparation support.
UK-wide assessment. No managed IT contract required.
One assessment fee, based on your employee count. Our assessment-only price is the IASME scheme fee, with no additional DSC assessment charge.
| Organisation | Assessment fee |
|---|---|
| Micro 0–9 employees | £320 + VAT |
| Small 10–49 employees | £440 + VAT |
| Medium 50–249 employees | £500 + VAT |
| Large 250+ employees | £600 + VAT |
You complete the self-assessment and your authorised signatory confirms the answers. We review the submission against the scheme requirements and make the certification decision.
Tell us your employee count, current certificate and deadline. We reply within one working day.
Scheme fees checked against IASME's published prices on 12 September 2026. You remain responsible for your controls and the accuracy of your answers.
The scheme fee is included. A readiness review identifies gaps before formal assessment. Your team can make the changes, or we quote separately for technical remediation. Support and assessment responsibilities are recorded separately; certification depends on a successful result.
Discuss readiness supportA monthly add-on can cover agreed controls, remediation, evidence and annual recertification, with the scheme fee included. Scope and price vary by organisation size. One-off assessment does not require this service.
Does your customer ask for Plus? Plus adds technical testing of devices and accounts. Our prices start at £1,299 + VAT and include Cyber Essentials.
Compare the Plus assessmentFrom a published client engagement
Device management, a hosted VPN, written policies and managed patching supported a move from no formal IT management to certification. The reported engagement took eight weeks.
Cyber Essentials is a UK government scheme developed by the NCSC, with IASME as its delivery partner. It checks five technical controls intended to reduce common internet-based attacks.
You complete a self-assessment and an authorised signatory confirms the answers. A certification body reviews the submission. A successful assessment results in certification, which is renewed annually.
Both schemes assess the same five controls. Cyber Essentials reviews your answers. Plus checks the controls through technical testing.
If a customer or contract names a level, send the requirement and deadline. We will help confirm the assessment you need.
32 seconds · Silent explainer. The five controls, verified self-assessment and the additional technical testing for Plus.
Read the service explanationStart at the stage that matches your readiness. We agree the service, responsibilities and timetable before work begins.
Confirm the organisation, systems and services in scope. If you choose a readiness review, we assess the five controls and record the gaps to address.
Your team or an agreed supplier makes the required changes. DSC can quote for remediation. The findings, responsible people and work in scope are recorded.
You submit your self-assessment answers for formal review. Where Plus is required, an assessor also tests devices and accounts. Certification follows a successful assessment.
Cyber Essentials and Plus certificates expire after twelve months. Plan renewal before expiry; ongoing control management is available as a separate service.
Timing depends on your scope, readiness, evidence and any remediation. Send your procurement deadline at the outset so we can discuss a realistic schedule.
DSC is appointed to assess and certify organisations for Cyber Essentials and Cyber Essentials Plus. Our assessors work against the scheme requirements when reviewing applications.
Readiness support, remediation and formal assessment have separate responsibilities and records. We define which work is included in your quote and how the assessment decision is made.

The mark shows our Plus certification-body appointment. DSC also holds its own Cyber Essentials Plus certificate. Our NCSC assurance is under the Cyber Advisor scheme.
Review our company credentialsThe same five controls, with additional independent technical testing. An assessor tests a sample of devices and accounts to check the controls work in practice.
Our Plus prices start at £1,299 + VAT for one to nine people and include the prerequisite Cyber Essentials certification. Remediation is quoted separately.
Plus prices, testing and preparationEvery level of Defence Cyber Certification requires Cyber Essentials. DCC Levels 2 and 3 require Cyber Essentials Plus, as set out by IASME.
Our DCC certification-body appointment covers Level 0. If you need CE and DCC together, DCC Level 0 is priced two ways: with an existing CE certificate, or with Cyber Essentials included.
Send the Ministry of Defence or prime contractor's requirement so we can confirm the certification route and scope before you order.
Whether you are renewing, responding to a tender or certifying for the first time, the initial information helps us confirm the right assessment and price.
For organisations with internal IT or an existing provider, nominate the person who can confirm the technical answers. Your organisation remains responsible for the declaration.
Discuss your certification requirementCyber Essentials is a UK government certification scheme developed by the NCSC and delivered through IASME. It checks five technical controls: firewalls, secure configuration, security update management, user access control and malware protection. It is intended to reduce common internet-based attacks.
Both assess the same five controls. Cyber Essentials uses a self-assessment reviewed by a certification body. Plus adds independent technical testing of systems in scope. You need Cyber Essentials before holding Plus. If your contract names a level, that requirement should guide the choice.
The timetable depends on whether your controls are ready, the information available and any changes required. We agree dates after reviewing your scope and deadline. Plus also needs technical testing to be arranged. Preparing answers and resolving known gaps before formal submission helps avoid delays.
Some public sector and commercial contracts require Cyber Essentials, Cyber Essentials Plus or another specified certification. Send the actual clause or supplier questionnaire, including the required scope and deadline, so we can discuss the level it asks for.
DSC is appointed to assess applications and make certification decisions against the Cyber Essentials and Cyber Essentials Plus requirements. We can also assess organisations in your supply chain. Preparation, remediation and formal assessment are separate pieces of work, with their responsibilities and scope recorded before they begin.
Cyber Essentials or Plus? The same five controls, with different levels of verification.
Cyber Essentials is a verified self-assessment. An assessor checks your answers.
Plus adds technical testing of devices and accounts. Cyber Essentials comes first.
Agree the scope and address any gaps. Preparation and formal assessment are separate steps.
Certification follows a successful assessment. Dead Simple Computing. Talk to our certification team.
Tell us your organisation size, current position and deadline. We will confirm the assessment route, what is included and whether any preparation work is needed.
Reading, Berkshire. Cyber Essentials assessment and certification across the UK.
Monday to Friday, 9am to 5.30pm.
Reply within one working day.
Hello, I am Ainsley, the AI assistant here at Dead Simple Computing. Ask me anything about managed IT, cyber security, software and AI, or governance and audit. I can also put you in touch with a person.
Replies are AI generated and can be wrong. Your messages are sent to a third-party AI service to produce them, and a member of our team can read this chat and may join it. Do not type anything confidential. See our privacy notice.