#CyberEssentials

αxel simon ↙︎↙︎↙︎axx@mstdn.fr
2026-02-06

Providing some helpful and constructive feedback on the UK's Cyber Essentials scheme, a set of controls to ensure organisation have a base level of IT security.

That's right kids, full disk encryption for laptops in not considered a bare minimum of #infosec for #CyberEssentials.

Screenshot of text:
12. Do you have any feedback or recommendations about the Cyber Essentials controls?
(clipped, complaining it's not adapted to…) cloud-first organisations, that don't run a traditional corporate firewall. It's also absolutely insane that it doesn't mandate full disk encryption for laptops.
Cool Waters Cybercoolwaterscyber
2026-02-05

Only 14% of UK businesses have reviewed the cyber security risks posed by their immediate suppliers in the past year.

Read more 👉 lttr.ai/An3id

Cool Waters Cybercoolwaterscyber
2026-02-04

Supply Chain Cyber Risk: The Threat You Can't Afford to Ignore: lttr.ai/An1P2

Cool Waters Cybercoolwaterscyber
2026-02-02

In this webinar, we’ll show you how to use Cyber Essentials as the backbone of a supply chain programme that’s realistic for SMEs, but still credible for larger organisations with tougher expectations.

Read more 👉 lttr.ai/AnwEd

Cool Waters Cybercoolwaterscyber
2026-01-30

Supply chain security isn’t just about having a policy — it’s about having a scalable method to raise standards across dozens (or hundreds) of suppliers without creating a procurement traffic jam.

Read more 👉 lttr.ai/AnqeN

Cool Waters Cybercoolwaterscyber
2026-01-30

If you’re tired of supply chain security being a vague worry, a painful spreadsheet exercise, or a contractual panic at tender time — this webinar will give you a practical, modern way to take control.

Read more 👉 lttr.ai/AnqGG

Cool Waters Cybercoolwaterscyber
2026-01-29

Webinar: Secure your supply chain with Cyber Essentials and Cyber Swift
lttr.ai/AnoKZ

Fabio Natalifnat@social.coop
2026-01-28

To all my UK infosec fedi-friends, I've been thinking of upgrading my company's Cyber Essentials certification to the Plus version.

The auditing company I reached out to would be expecting us to install a proprietary end-point monitoring application, which I'm really not keen to do.

Anyone knows of a company that would carry out the auditing in any different way, e.g. via an open source app?

#uk #infosec #CyberEssentials

Fabio Natalifnat@social.coop
2025-12-20

I've been enquiring about upgrading my company's #CyberEssentials certification to CE Plus, which would involve undergoing an actual audit by a third-party organisation. The auditing company I spoke to said I would need to install a proprietary endpoint detection thingy (from Qualys...?), which I would be extremely reluctant to do. I wonder if I could use an open-source alternative instead, perhaps one of the Greenbone open-source products...

#InfoSec #CyberSecurity

Cool Waters Cybercoolwaterscyber
2025-12-05

Many organisations give little or no thought to the cyber resilience of the suppliers they depend on every day

Read more 👉 lttr.ai/AlxoO

Cool Waters Cybercoolwaterscyber
2025-11-21

Security questionnaires, if they exist at all, are often treated as a tick-box exercise — or based entirely on what the supplier says about themselves

Read more 👉 lttr.ai/AlSA4

Cool Waters Cybercoolwaterscyber
2025-11-14

When supermarket tills went down and factory lines halted, it wasn’t a software glitch — it was a cyber crisis.

Read more 👉 lttr.ai/AlBz5

Cool Waters Cybercoolwaterscyber
2025-11-13

Through our managed services, certification support, and our Cyber Swift supply-chain portal, we help businesses take control of their cyber security and compliance with confidence.

Read more 👉 lttr.ai/Ak9Sw

Cool Waters Cybercoolwaterscyber
2025-11-13

Every year, the National Cyber Security Centre (NCSC) publishes its annual review — part state-of-the-nation report, part wake-up call.

Read more 👉 lttr.ai/Ak9Ok

Cool Waters Cybercoolwaterscyber
2025-11-12

At Cool Waters Cyber, we’re helping UK businesses take that next step — from awareness to action.

Read more 👉 lttr.ai/Ak6kG

Cool Waters Cybercoolwaterscyber
2025-11-11

The NCSC says this as “the new normal” — a world where cyber attacks don’t just hit individual companies, but cascade through the suppliers and service providers that keep them running.

Read more 👉 lttr.ai/Ak4B8

Cool Waters Cybercoolwaterscyber
2025-11-10

As the NCSC points out, the government is now calling on large organisations to lead by example — improving the adoption of Cyber Essentials throughout their supply chains.

Read more 👉 lttr.ai/Ak1Wp

Cool Waters Cybercoolwaterscyber
2025-11-06

If your IT support provider is compromised, the attacker may gain a pathway straight into your network — effectively breaching your defences from the inside.

Read more 👉 lttr.ai/Akq7o

BergerodeCyberbergerode_cyber
2025-10-29

@BergerodeCyber are at the Lancaster District Business Support Expo 2025 hosted at the Platform in Morecambe via Lancaster City Council & Lancaster and Morecambe District Chamber of Commerce

Come & see us & our new banners & get some free swag


Cool Waters Cybercoolwaterscyber
2025-10-24

Your cyber security is only as strong as your weakest supplier.

Read more 👉 lttr.ai/AkL4i

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst