Why is Cyber Essentials Plus important?
You could well have heard about the Government’s ‘Cyber Essentials’ accreditation.
The Government’s National Cyber Security Centre (NCSC) promotes Cyber Essentials accreditation to businesses so that we can all guard against common cyber threats and demonstrate a commitment to cyber security.
Cyber Essentials gives five technical controls that a business should have in place, namely:
- Secure internet connection
- Secure devices and software
- Control access to data and services
- Protection from viruses and other malware
- Keeping devices and software up to date
Any business can apply for ‘Cyber Essentials’ accreditation which will allow them to:
- Reassure customers that they are working to secure their IT against cyber attack
- Attract new business with the promise that cyber security measures are in place
- Present a clear picture of the organisations cyber security level
- Apply for certain Government contracts that require accreditation
Now, Cyber Essentials is a great initiative, and one that we would fully endorse. However, it is worth pointing out that Cyber Essentials is ‘self-certified’ – in other words a business presents information to an accreditation body, and following the completion and checking of a questionnaire, the Cyber Essentials certificate is issued. Whilst we are not suggesting that there is anything wrong with the accreditation process, it is not as thorough as it could be, and this is where ‘Cyber Essentials Plus’ comes in…
So, why is Cyber Essentials Plus better than Cyber Essentials?
Cyber Essentials Plus requires a business to demonstrate the same five technical controls as Cyber Essentials, but rather than self-certification, an independent, outside expert is tasked with carrying out an onsite audit of the business requesting accreditation. Additionally, the business needs to comply with extra, more stringent and convoluted processes, as detailed by the NCSC. This ensures that the business is even better able to remain secure from the risk of more virulent threats, protecting itself and its customers from attack.
We’re delighted to announce that in March of this year Net Primates received confirmation that we are now Cyber Essentials Plus accredited!
Whilst undertaking this process we learnt even more about how to remain secure and are in the process of evaluating the best ways of rolling this out to our customers. Over the next few months we’ll keep you informed of developments and how your business will benefit, with the aim of going live in the Autumn.
And we’re also excited to see our name appear on the NCSC website 🙂. Take a look and see for yourselves here