
Cyber security for Norwich and Norfolk organisations
We’re a Norwich cyber security team and an IASME-accredited Cyber Essentials Certification Body. We certify Cyber Essentials and DCC Level 0, and help organisations across Norfolk put the right controls in place.

What we certify, and what we help with.
Certification bodies are licensed scheme by scheme, and for DCC it’s level by level. Here’s where we assess you ourselves and where we get you ready for an independent assessment.
We certify
Cyber Essentials
IASME accredits us as a Cyber Essentials Certification Body. We mark your submission and issue the certificate ourselves.
How Cyber Essentials certification worksDefence Cyber Certification Level 0
We assess and certify DCC Level 0 for other organisations in the MOD supply chain. If we’ve put your controls in place or manage them, a different certification body has to assess you.
Defence Cyber Certification Level 0
We help you get ready
Cyber Essentials Plus
We prepare your devices and accounts for the independent technical audit. We don’t carry out the Plus audit ourselves.
DCC Levels 1 to 3
We help put the controls in place for your level. A certification body licensed at that level carries out the assessment.
Our cyber security services.
Most organisations start with Cyber Essentials and build from there. We’ll help you choose what fits your risks and do it in a sensible order.
Speak to a cyber specialistCyber Essentials
We’re an IASME-accredited Certification Body, so we mark your submission and issue the certificate. If you’d like a check first, our Cyber Advisor reviews your setup before you submit.
Cyber Essentials certification in NorwichDefence Cyber Certification
DCC is the MOD’s cyber scheme for its supply chain. We’re an IASME-assured Certification Body at Level 0, so we assess your submission and issue the certificate.
DCC Level 0 certificationCyber Essentials Plus
We get your devices and accounts ready for the independent technical audit. We don’t carry out the audit ourselves.
Prepare for Cyber Essentials PlusCyber security audits
We find the gaps in your security and work out what each would cost to close. You get a written report in plain English that your board can act on.
How our audits workEndpoint and email security
Protection for the devices and inboxes where most attacks land, using EDR and email filtering. Conditional access controls who can sign in, and we keep the settings tuned as your organisation changes.
Discuss managed protectionAwareness training
Short, sector-aware training for your staff, with phishing simulations built in. The reports feed into your cyber insurance evidence.
Discuss awareness trainingInsurance and compliance readiness
We help you get cyber insurance renewals over the line. We can also map your controls to ISO 27001 or to a framework of your own.
Discuss assurance servicesIncident response
Containment, investigation, and recovery when your systems are compromised, with senior consultants on the call within the hour.
Discuss incident responseDigital forensics
We preserve the evidence after an incident and work out what happened. The findings are written to hold up with insurers and regulators.
Discuss digital forensics
How we work with you.
- 01
Assess
We review your current setup and the gaps in your controls. Each gap comes with the business risk behind it, in language your board can read.
- 02
Protect
We close the gaps in priority order through certification, hardening, tooling and training.
- 03
Respond
If something gets through, we help you contain it and find out what happened.
- 04
Recover
We help restore operations and write up what we learned. Then we strengthen the controls that let it happen.
Cyber security audits in Norwich.
An audit shows you where your security gaps are and which to fix first. We write it up so your board can weigh each risk by what it could cost and how long recovery would take.
What we look at
- How your systems and accounts are set up today
- The threats you’re most exposed to
- Gaps in your security controls
- The business risk behind each gap
What you get
- A written report in plain English that your board can act on
- Each gap with what it’d cost to close, in the order we’d fix them
If Cyber Essentials is the goal, start with our readiness review, which checks your setup against the five controls. If you’d rather check yourself first, our guide covers how to pass Cyber Essentials, control by control.
Working across Norfolk.
We’re based at White Lodge Business Park in Norwich, and we work on site or remotely, whichever the job needs. Cyber Essentials and DCC Level 0 assessments run through the IASME portal, so we certify organisations anywhere in the UK.
Charities and nonprofits
Cyber Essentials and data protection sized for charity budgets, and ready for trustees and funders to scrutinise.
Cyber security for charitiesSchools and academy trusts
Cyber Essentials and ransomware-ready backups, with help meeting the DfE cyber security standards.
Cyber security for schoolsBusinesses
Cyber Essentials and ongoing protection for organisations where downtime means lost revenue.
Cyber security for businessesMOD suppliers
DCC Level 0 assessment, with Cyber Essentials first if you don’t hold it yet.
Defence Cyber Certification
Cyber security case studies.
Both are anonymised until we have permission to name the clients.

Ransomware at an equine charity. Operational again within a week.
An equine welfare charity was hit by ransomware and lost access to the systems it depends on. We led the recovery, and the charity was back up and operational within a week.
Read the case study
A nonprofit guided to Cyber Essentials, then Cyber Essentials Plus.
We helped a nonprofit achieve Cyber Essentials and then step up to the audited Cyber Essentials Plus, preparing the organisation for each stage and supporting it through to certification.
Read the case study
Cyber security questions.
Questions about the schemes themselves are answered on our Cyber Essentials and Defence Cyber Certification pages.
What do you certify, and what do you help with?
We certify Cyber Essentials as an IASME-accredited Certification Body, and we assess and certify DCC Level 0 for other organisations. For Cyber Essentials Plus and DCC Levels 1 to 3, we help you get ready and an independent certification body carries out the assessment.
Where should a small organisation start with cyber security?
Cyber Essentials is usually the best first step. Its five controls protect against the most common attacks, and customers and insurers often ask for it.
Is Cyber Essentials enough on its own?
It’s a good baseline, and it leaves some things out. Backups aren’t one of its technical requirements (the NCSC recommends them strongly), and neither is staff training.
What’s in a cyber security audit?
We look at how your systems and accounts are set up and where the gaps in your controls are. You get a written report that prices up each gap and puts them in the order we’d fix them.
Can you help with our cyber insurance renewal?
Yes, we help organisations get cyber insurance renewals over the line. That means answering the insurer’s security questions accurately and fixing anything that would count against you.
Do you work on site, or remotely?
Both, depending on the work. We’re based at White Lodge Business Park in Norwich, and certification runs through the IASME portal, so it works the same wherever you are.
Don't fill the form. Call us.
If systems are compromised or you've seen suspicious activity, time matters. Talk to a senior consultant straight away, on the phone, before anything else.