Free Tool

Cyber Essentials Plus Readiness Assessment

Assess your organisation’s readiness for Cyber Essentials Plus certification across all five technical controls and get a prioritised action plan.

Your Technical Controls

Firewalls & Internet Gateways

Secure Configuration

User Access Control

Malware Protection

Patch Management

Cyber Essentials Plus — Five Technical Controls

Control AreaWhat’s AssessedCommon Fail PointsCE+ Requirement Level
Firewalls & Internet GatewaysBoundary firewalls, rules, default denyOpen ports, default rulesAll rules documented and justified
Secure ConfigurationDefault passwords, unnecessary servicesFactory defaults, bloatwareCIS benchmarked or equivalent
User Access ControlAdmin privileges, user accountsShared accounts, no MFAIndividual accounts, MFA, least privilege
Malware ProtectionAntivirus, endpoint protectionOutdated signatures, no EDRReal-time protection, current signatures
Patch ManagementOS updates, third-party apps, EOLDelayed patches, EOL softwareCritical patches within 14 days, no EOL

Based on the NCSC Cyber Essentials scheme requirements. This tool is for guidance only and does not replace an official certification assessment. Contact Cloudswitched to start your Cyber Essentials Plus certification journey.

More Free Tools

Try our other free security assessments and IT planning tools.