NCSC Assured Service Provider, Cyber Advisor scheme

Dead Simple Computing is an NCSC Assured Service Provider under the National Cyber Security Centre's Cyber Advisor scheme. Through an independent assessment run by IASME, NCSC's delivery partner for the scheme, we are assured for our competence to give practical advice and support on implementing the Cyber Essentials technical controls, for small and medium organisations.

If a tender, a regulator, or your own supplier due diligence asks whether your Cyber Essentials support comes from an independently assured advisor, we can answer yes. The NCSC listing says Dead Simple Computing "currently meets the standards required under Cyber Advisor scheme", and names Daniel McClure Fisher as the Qualified Advisor. Verify our listing on ncsc.gov.uk (opens in new tab).

Verified
ISO 27001 & 9001Certified by a UKAS-accredited certification body Cyber EssentialsCertification body NCSC AssuredCyber Advisor CISSPHeld by Daniel McClure Fisher
NCSC Assurance / 01 · What it is

The Cyber Advisor scheme

The Cyber Advisor scheme exists so small and medium organisations can find help implementing the Cyber Essentials technical controls from someone whose competence has been checked. Assessment is run independently by IASME, NCSC's delivery partner for the scheme.

NCSC Assurance / 02 · The process

How the assurance is earned

There are two parts: the individual qualifies, and then the firm becomes an Assured Service Provider.

01

The advisor is assessed

An individual becomes a qualified Cyber Advisor by passing an IASME-run assessment, then receives a Certificate of Competence in Cyber Essentials Implementation.

02

The firm becomes an Assured Service Provider

A firm becomes an NCSC Assured Service Provider by employing at least one qualified Cyber Advisor, holding Cyber Essentials certification, and running a quality management system. We meet those through our certification body status and our ISO 9001 quality management system, certified by a UKAS-accredited certification body.

03

Maintained, not one-off

Assured status is upheld by continuing to meet the scheme's requirements, not granted once and then forgotten.

Advice and assessment. As a Cyber Essentials certification body, our assessors work to the standard every day. The advice and the formal assessment are kept as separate pieces of work.
NCSC Assurance / 03 · What it means for you

What the assurance means for you

The assurance answers one specific due diligence question: if you are choosing help to get your Cyber Essentials controls in place, for a tender, a supply-chain requirement, or simply to close a risk, the competence behind that help has been checked by someone other than us.

For SMEsSME-focused assurance.Cyber Essentials help for small and medium organisations, which is what the scheme is tailored towards.
CheckedChecked against the scheme's standard.Your implementation advice comes from a qualified Cyber Advisor assessed by IASME.

How the assurance fits our other credentials

The assurance is specific: practical help implementing the Cyber Essentials technical controls for small and medium organisations, provided through our Cyber Advisor service. It sits on top of our Cyber Essentials certification body status, because the people advising you on the controls are the people appointed to assess them. We are also an appointed certification body for Defence Cyber Certification at Level 0, where Cyber Essentials is one of the required controls.

Behind it sits our ISO 9001 quality management system, certified by a UKAS-accredited certification body and one of the scheme's requirements, and Daniel McClure Fisher, CISSP and MCIIS-qualified, leads the security work.

That is deliberately narrower than "we do all your cyber security". Our ISO 27001 consultancy, risk management, governance and audit and incident response are separate services backed by our other credentials, not by this assurance.

Assured Service Provider in association with the National Cyber Security Centre, Cyber Advisor (Cyber Essentials)
The official scheme mark. Verify our assured status through IASME's Cyber Advisor pages (opens in new tab).
NCSC Assurance / 04 · What's assured

What the assurance covers

Here is what that help looks like in practice.

01Review

Cyber Essentials readiness and gap review

A review of where your systems stand against the five Cyber Essentials controls.

Readiness reviewGap analysisScoping
02Implement

Help with the five controls

Support putting the controls in place, firewalls, secure configuration, access control, malware protection and update management, done with you rather than handed over as a checklist.

FirewallsSecure configAccess controlPatching
03Certify

Getting to certification

We take you through to certification, and because we are a certification body we know what the assessment expects.

Certification supportAssessment prepAnnual renewal
04Advise

Advice sized for an SME

Advice pitched at a small or medium organisation, focused on the controls that close the most risk.

Risk-basedSME-focusedPrioritised
FAQ

Common questions

What is an NCSC Assured Service Provider?

It is an organisation assured under one of the NCSC's assurance schemes. Dead Simple Computing is assured under the Cyber Advisor scheme, which covers advice and support on implementing the Cyber Essentials technical controls for small and medium organisations. An organisation earns it by employing at least one qualified Cyber Advisor, holding Cyber Essentials certification, and running a quality management system, all assessed independently by IASME, NCSC's delivery partner.

What is the NCSC Cyber Advisor scheme?

It is an NCSC scheme, delivered by IASME, that assures advisors to give small and medium organisations help implementing the Cyber Essentials technical controls. An individual qualifies by passing an IASME assessment of their knowledge of the controls, their implementation competence, and their ability to work with smaller organisations, and receives a Certificate of Competence in Cyber Essentials Implementation.

How is NCSC assurance different from ISO 27001 or Cyber Essentials certification?

They check different things. The Cyber Advisor assurance confirms the competence of the person advising you on implementing the Cyber Essentials controls. Cyber Essentials certification confirms the controls are in place in an IT estate, and we are a certification body for it. ISO 27001, where we are certified by a UKAS-accredited certification body, certifies that we run a documented information security management system. All three are independently checked.

Does NCSC assurance mean you can help with government or regulated contracts?

The Cyber Advisor assurance is about Cyber Essentials implementation support for small and medium organisations, which is exactly what many tenders and supply-chain requirements ask for. It is not a general government-consultancy credential.

Large, complex or nationally significant work, including GovAssure engagements, sits under a separate, higher-tier scheme, the Assured Cyber Security Consultancy scheme, which is distinct from Cyber Advisor. If you are unsure which your contract needs, ask us.

How do I verify Dead Simple Computing's NCSC assured status?

Check IASME's directory of assured providers (opens in new tab), which lists organisations assured under the Cyber Advisor scheme, or ask us and we will confirm it directly. We would rather you verified it independently, that is the point of the scheme.

Speak to our qualified Cyber Advisor

Tell us what you need to satisfy, a tender, a supply-chain requirement, or simply getting the basics right, and we will set out what the assurance covers and how our Cyber Essentials, ISO 27001 and ISO 9001 credentials fit around it.

Reading, Berkshire  /  NCSC Assured Service Provider, Cyber Advisor scheme  /  reply within one working day