Book FREE Consultation

URM is pleased to provide a FREE 30 minute consultation on Transitioning to ISO 27001:2022 for any UK-based organisation. Once an enquiry form has been submitted, we will be in touch to understand the nature of your enquiry and to book a mutually convenient time for a 30-minute consultation slot with one of URM’s specialists.

Cyber Essentials PLUS Self-Managed

Achieve Cyber Essentials and Cyber Essentials Plus certification with our team of qualified experts.

Speak to a certified advisor

URM is an accredited Assured Service Provider under the NCSC Cyber Advisor scheme. We are able to provide you with practical, cost effective and reliable advice to improve your cyber security and achieve  ‘Cyber Essentials’ and ‘Cyber Essentials Plus’ certifications.

Speak to one of our experts for more information on how we can help you certify. Simply call 0118 206 5410 or request a call back using the form below.

Cyber Essentials PLUS Self-Managed

An assessment only route for organisations that already hold a valid CE certificate and now require the formal CE+ assessment.

This offering includes the CE+ assessment only.  It includes 1 retest in line with NCSC guidance and the Danzell remediation process.

It includes the required assessment prerequisites and instructions but excludes a CE offering, a scope verification workshop, any pre-assessment activity, advisory time, and access to the Abriska CE+ module.  The Abriska CE+ module provides monthly compliance scans alongside CE+ preparation and remediation scans.

This offering is available only to organisations that already hold a valid CE certificate and includes the mandatory Technical Scope Verification (TSV).  The purpose of the TSV process is to confirm that the declared CE scope matches the actual activities.

Technical Scope Verification (TSV)

In most cases, the TSV is conducted separately and must be passed at least 7 working days before the CE+ assessment start date.  This reduces the risk of booking assessment time that cannot be used if issues are identified with the declared scope.

If the TSV identifies issues that prevent the assessment from proceeding, you may need to revisit your CE scope and, in some cases, carry out a new CE assessment before continuing with CE+.

For some small or micro-organisations (e.g., where the entire organisation is in scope and only a very small number of devices are involved) it may be possible to agree that the TSV is performed at the start of the CE+ assessment rather than as a separate activity in advance.*

* Performing the TSV at the start of the CE+ assessment may reduce cost and administrative effort, but it increases risk. If issues are identified that cannot be immediately resolved, the CE+ assessment time will need to be either repositioned as advisory activity or postponed, and postponement charges will apply. By choosing this option, you acknowledge that passing the TSV is a prerequisite for proceeding with the formal CE+ assessment and that this approach carries a higher risk.

Retests

If the TSV passes but the CE+ assessment identifies failing items, you may book 1 retest in line with the Danzell scheme’s remediation process.

A 2nd sample set must be selected for the retest.  If the same vulnerabilities are identified in the retest, your CE certificate will be revoked in accordance with scheme rules.

To reduce this risk and to follow the smoothest path to CE and CE+ certification, it is strongly recommended that you consider the Cyber Essentials PLUS Assured offering. This is designed to identify and address potential issues earlier in the certification process.

Our assessor was really helpful – he didn't just tell us what to do but also explained everything to us, which was a real benefit, very happy.
Digital consultancy
Request Cyber Essentials review

Client Feedback

Trainer:
/
5
Course:
/
5
URM consulting were fantastic to work with. Their expert support and friendly efficiency made achieving our Cyber Essentials Plus accreditation smooth and stress-free. It's reassuring to know that we have a reliable local consultancy that we can count on for ongoing support.
Technology consultancy

Support request

If you are interested in URM’s support, please specify the subject in the form below.

Please note, we can only process business email addresses.

Why URM?

As an accredited certification body, URM has an unrivalled record in assisting organisations of all sizes achieve certification to Cyber Essentials and Cyber Essentials Plus. URM is also an accredited Assured Service Provider under the NCSC Cyber Advisor scheme  and  has a large team of experienced, pragmatic assessors who are here to support you and guide you through the process.

Not only do we bring a wealth of cyber security knowledge, but also a wide and varied experience of all the leading cyber and information security standards.

As such, you can be assured that you are getting advice that is right for you and your organisation, taking into account your sector, size and the information you are looking to protect. Our large team of assessors also enables us to guarantee a super-fast turnaround.

Cyber security has never been higher on our agenda. We’re very pleased to have gained our Cyber Essentials Plus Certification. We are committed to providing the most secure and robust solutions to our customers and partners. This certification helps to demonstrate this commitment – through independent vulnerability testing and to test the awareness of information security across our teams. We’re very pleased with the support and expertise provided by URM.
Speech recognition software provider
Information Security FAQISO 27001 FAQ
Everything on the assessment day ran really smoothly which made achieving Cyber Essentials Plus a painless process. URM’s Pen tester was polite with all members of staff he engaged with so everyone was happy to take the time out of their day.
Client

Understanding Defence Cyber Certification (DCC)

Published on
21/5/2026

URM’s blog explains how the DCC works, who needs it, the benefits of certification, with clear guidance on how to approach compliance and avoid common mistakes.

Read more
Thumbnail of the Blog Illustration
Cyber Security
Published on
21/5/2026
Cyber Security and the Board: The UK Cyber Resilience Pledge in Focus

URM’s blog explains the purpose, structure and content of the Government’s new Cyber Resilience Pledge, and what it means for organisations across the UK.

Read more
Thumbnail of the Blog Illustration
Cyber Security
Published on
26/3/2026
Cyber Essentials Update 2026

URM’s blog breaks down key changes to the Cyber Essentials scheme coming into force on 27 April 2026, including the new Danzell Question Set.

Read more
Thumbnail of the Blog Illustration
Cyber Security
Published on
10/3/2026
Cyber Security and the Board: A Sign of What’s to Come

URM’s blog explains recent amendments to the Cyber Security and Resilience Bill, how they align with broader regulatory shifts, & practical steps to prepare.

Read more
"
Without doubt, URM helped us to achieve our planned objectives a lot sooner than expected. The engagement was a huge success and couldn’t have gone any better.
Group IT Director, UK Mail
contact US

Let us help you

Let us help you in your compliance journey by completing the form and letting us know how we can best support you.