We are pleased to announce that we have successfully achieved Cyber Essentials Plus
Cyber Essentials Plus certification independently verifies the effectiveness of key security controls across our systems and devices.
This achievement builds on the security practices, policies and controls previously developed through ISO 27001, ensuring a strong foundation of information security while focusing on the practical measures that protect organisations from everyday cyber threats.
Unlike a self-assessment, Cyber Essentials Plus involves independent testing to verify that security controls are correctly implemented and operating as intended. The assessment covers areas such as:
- Secure configuration of devices and systems
- Vulnerability and patch management
- Access controls and user account security
- Malware protection
- Protection against common internet-based threats
The same security principles are applied when supporting clients. From securing Microsoft 365 environments and implementing multi-factor authentication to managing endpoints, applying security updates, monitoring for threats and maintaining reliable backup and recovery processes, these controls form part of a broader approach to reducing cyber risk.
Cyber security is not a one-time exercise. Threats continue to evolve, and maintaining recognised standards helps ensure that security remains an ongoing priority. Achieving Cyber Essentials Plus demonstrates a commitment to independent verification, continual improvement and following recognised best practices to help protect systems, data and people.