We are pleased to announce we have successfully passed our Cyber Essentials certification for another year. As an IT Managed Service Provider with access to many client’s systems, we take security very seriously.
Cyber Essentials is a Government-backed scheme that can help you better secure your business against many of the most common Cyber Security threats. The current assessment covers Secure Business Operations (firewalls, configuration, patching), Access Control (user and administrator accounts), and Malware and Technical Intrusion (malware protection).
From 24th January 2022, there are some significant changes being made to the Cyber Essentials certification.
The main changes are detailed below:
- Home worker devices are in scope, but home routers are not
- All Cloud Services are in scope
- MFA must be used for accessing Cloud Services
- Thin Clients are in scope
- All Servers are in scope
- New Sub-Set definition
- All Smart Phones and Tablets are in scope
- Device Locking
- Account Separation
- Scope must include end-user devices
- Guidance on Backing up
Further information can be found on the following official resources:
The January Changes to the Cyber Essentials Scheme Reflect the Changing Cyber Threats in Today’s Digital Environment
https://iasme.co.uk/cyber-blog/the-january-changes-to-the-cyber-essentials-scheme-reflect-the-changing-cyber-threats-in-todays-digital-environment/
Cyber Essentials v3 (Evendine) Question Set
https://iasme.co.uk/wp-content/uploads/2021/11/Question-Set-Cyber-Essentials-only-vEvendine.xlsx
Cyber Essentials: Requirements for IT infrastructure v3.0
https://www.ncsc.gov.uk/files/Cyber-Essentials-Requirements-for-IT-infrastructure-3-0.pdf
Finally, there is a new pricing structure in place that varies the price depending on the size of your organisiation. This is to take into account the complexities of larger environments.
As one of our services to our clients, Kriston Technology can help you work through the process of obtaining Cyber Essentials certification. Please contact us for more information.
For a full list of our Cyber Security Services, please visit https://ktecltd.com/cyber-security/.
For further information on the Cyber Essentials scheme, visit https://ktecltd.com/cyber-essentials/.
Comments are closed