Cyber Essentials Certification

Skillcast has earned the Cyber Essentials Plus certification, demonstrating our commitment to robust cybersecurity. This achievement shows that we have taken significant steps to protect customer data and secure our systems against evolving cyber threats.

The Cyber Essentials Plus certification involves rigorous testing and independent validation of our security controls, providing our customers with confidence in our cybersecurity measures.

This certification reinforces our commitment to maintaining strong data protection practices. We are dedicated to safeguarding our customers' information, and this certification is a clear indicator of our ongoing efforts to ensure their security and privacy.

Chevron Skillcast chevron graphic
businessman_computer_1200x627

What is Cyber Essentials?

Cyber Essentials is a government-endorsed scheme aimed at helping organisations of all sizes protect themselves against common cyber threats.

While cyber attacks can vary in complexity, most are fairly basic and are often perpetrated by individuals with limited technical expertise. Cyber Essentials provides a framework to help you implement fundamental cybersecurity measures to defend against such common threats.

Cyber Essentials Plus builds on the foundational Cyber Essentials certification by including more rigorous testing and verification processes.

Chevron Skillcast chevron graphic
skillcast-placeholder

Cyber Essentials Plus accreditation requirements:

  • Cyber Essentials Certification: Organisations seeking Cyber Essentials Plus accreditation must first achieve basic Cyber Essentials certification. This involves implementing fundamental cybersecurity measures such as secure configuration, boundary firewalls, access control, malware protection, and patch management.
  • External Vulnerability Testing:  Undergoing vulnerability testing is a critical component of Cyber Essentials Plus. This involves conducting scans and penetration tests from outside the organisation's network to identify potential vulnerabilities that cyber attackers could exploit.
  • Internal Vulnerability Testing: In addition to external testing, Cyber Essentials Plus requires internal vulnerability testing. This involves scanning and testing internal systems and networks to uncover any weaknesses that could pose a security risk.
  • Evidence Submission: Organisations must provide evidence demonstrating that they have implemented the necessary security controls and passed the required vulnerability tests. This evidence typically includes documentation, screenshots, configuration settings, and test results.
  • Verification of Security Controls: A qualified assessor or certification body verifies that the organisation has successfully implemented the required security controls and passed the vulnerability tests according to the Cyber Essentials Plus criteria.

 

Contact Us