Cyber Essentials Certification

cyberEssentials

Safeguard your data

Demonstrate an ongoing commitment to security

Provide confidence for clients

Why Choose Demystify Security as your Cyber Essentials Assessor?

Certification Body

As an authorised certification body, receive ongoing expert guidance from our accredited assessors.

Adaptive Packages

We provide flexible certification options tailored to meet your organisation’s needs.

Continuous Security

We don’t treat certification as a tick box exercise; we ensure your organisation gains lasting value from it.

Easy to Achieve

We make certification straightforward and stress-free and can manage the entire process for you.

What is Cyber Essentials?

cyberEssentials

With the number of incidents affecting businesses of all sizes, it’s clear that no organisation is immune to cyber threats. That’s why achieving Cyber Essentials certification has never been more important.

Cyber Essentials is a UK Government-backed certification developed by the National Cyber Security Centre (NCSC). It helps organisations of all sizes protect against the most common and preventable cyber threats. It focuses on five key controls: firewalls, secure configuration, security update management, user access control and malware protection.

 

Primary Benefits of Certification

Safeguard Client Data

Financial records, legal documents, and personal information require essential security controls. Cyber Essentials provides assurance that these are in place to keep your clients’ data safe.

Gain a Competitive Edge

Certification provides confidence for clients and credibility for your organisation.

Protect Your Reputation

Data breaches and cyber incidents can seriously damage a firm’s reputation and erode client trust. Cyber Essentials helps to manage risks by emphasising the need for recognised security measures protecting your firm and the relationships you rely on.

Meet Mandatory Requirements and Regulations

Certification is increasingly recognised as a best-practice standard across industries and supply chains, helping organisations demonstrate compliance with data protection and security obligations.

Choose Your Cyber Essentials Package

DO IT YOURSELF

Starting from £320 + VAT
  • Access to the IASME self-assessment portal
  • Certification & IASME fee included
  • 30-minute consultation to help understand the self-assessment questionnaire
  • 1 free resubmission
  • Free cyber insurance (eligibility applies)
Popular

ASSESS AND ADVISE

Starting from £640 + VAT
  • Access to the IASME self-assessment portal
  • Certification & IASME fee included
  • Review of documents and controls with feedback
  • Guidance on the online assessment portal and question set
  • 1 free resubmission
  • Free cyber insurance (eligibility applies)
  • One cyber awareness session

DESIGN AND CERTIFY

Starting from £1230 + VAT
  • Access to the IASME self-assessment portal
  • Certification & IASME fee included
  • Creation of required documents
  • Guidance on implementing and configuring required controls
  • Guidance on the online assessment portal and question set
  • 1 free resubmission
  • Free cyber insurance (eligibility applies)
  • Two cyber awareness sessions

Not sure which package is right for you? Get in touch, and based on your current setup, we’ll help you choose the most suitable option.

Cyber Essentials Question Set

To help familiarise yourself with the Cyber Essentials question set, download the latest version from the IASME website using the below link.

FAQs

What is Cyber Essentials?

It's a UK Government–backed certification designed to help organisations of all sizes defend against the most common and preventable cyber threats. 

How does the process work?

Once you select the appropriate package for your organisation, we’ll send you login details for our assessment portal. Depending on your chosen package, you can either complete the assessment independently or receive the level of support included.

Once your answers are submitted, one of our qualified assessors will review your responses and aim to return the results within 3 days. If the assessment has been successful, the certification will be issued to you upon passing. If your assessment has not been successful, you’ll have 2 working days to review the assessor’s feedback and update your answers and resubmit. We’ll then re-assess your submission within 3 days.

How long does it take to achieve certification?

Certification can be achieved in just a few days if your systems already meet the requirements. However, if changes are required, the process may take longer, so we recommend starting early.

How long do we have to complete the assessment?

You have six months from your account creation date to complete your self-assessment before your account expires.

How many of the questions do we need to get right to pass?

To achieve certification, you must be compliant with nearly all of the questions. In particular, you cannot pass the assessment if any unsupported software is in use within the scope of the assessment.

What happens if we fail?

If you fail, you’ll have 2 working days to review the assessor’s feedback and update your answers to address any issues. We’ll then re-assess your submission within 3 days. However, if you still fail after this submission, you’ll need to reapply.

How long is the certification valid for?

Each certificate is valid for 12 months, after which renewal is required. If you have chosen us as your certification partner, we will send you a reminder one month prior to the renewal date.

What is the difference between Cyber Essentials and Cyber Essentials plus?

Cyber Essentials is a verified self-assessment scheme, through which organisations assert their own compliance with the Cyber Essentials requirements.

Cyber Essentials Plus starts with the Cyber Essentials verified self-assessment questionnaire but also includes a technical audit of the organisation’s systems to verify that the controls are in place.