assure

Prove it to the people who ask, buyers, regulators, the board. Get certified and stay certified, certification that's backed by real testing, not a tick-box.

Cyber Essentials

The government-backed baseline that proves you have the core security controls in place. As one of the UK's first Cyber Essentials Certification Bodies, we certify you directly and take you from readiness to certificate quickly, so you can bid for the contracts and pass the security questionnaires that require it.

Cyber EssentialsIASME Certification BodyNCSC

Cyber Essentials Plus

The hands-on, audited version of Cyber Essentials, where an assessor verifies your controls actually work. As a long-standing IASME Certification Body, we run the readiness, the technical audit and any remediation ourselves, so you pass first time and stay certified. It is increasingly what customers and procurement demand.

Cyber Essentials PlusIASME Certification BodyNCSCAudited

Defence Cyber Certification

The Ministry of Defence's cyber assurance scheme for its supply chain. As an accredited DCC Certification Body, we assess defence suppliers against Def Stan 05-138 and issue the certificate ourselves, so you can reach Level 0 before the MOD's 31 December 2026 deadline.

DCCDef Stan 05-138MODIASME

ISO 27001

Gap analysis, ISMS implementation, internal audit and ongoing support for ISO/IEC 27001:2022. We prepare you for the certification audit and help you run an ISMS that keeps working after it, from a team that holds ISO 27001 itself.

ISO/IEC 27001:2022ISMSAnnex AInternal Audit

CAF / GovAssure Readiness

Readiness for the NCSC Cyber Assessment Framework (CAF) and GovAssure, the government scheme that assesses departments against the CAF every year. We score you against all 14 principles, evidence the technical controls and give you a clear plan to close the gaps before your independent review.

NCSC CAFGovAssureCAF v4.0NIS

Supply Chain Assurance

Prove your security to the customers and primes who audit you, and find the weak links in your own supply chain before they become your breach. Built on the NCSC Cyber Assessment Framework and Secure by Design principles.

NCSC CAFSupplier RiskSecure by DesignThird-party
Why this shape

We've got you covered.

secureassuremanage

A firm that tests but can't certify hands you a problem. One that certifies but doesn't watch hands you a snapshot. We do all three - secure, assure, manage, you decide where to start.

Buy security the usual way and you're stitching together separate suppliers who never speak. Our specialists work under one roof and share the same context: the people who find a gap help close it, certify it and watch it stays closed, so there's a team that can actually answer the questions your auditors ask.

Let's talk

Not sure where to start?

Tell us where you are, a brief, a renewal, or a gap you're worried about, and we'll talk you through which of these services fit and how we'd run them.