Cyber Essentials readiness

Prepare your external perimeter for Cyber Essentials.

PerimAssure helps teams identify internet-facing exposure and configuration gaps, organise supporting evidence and monitor public-perimeter changes between assessment points.

What we can evidence externally

Readiness support for the internet-facing parts of three controls.

Cyber Essentials covers five technical control themes. PerimAssure provides partial, externally observable evidence for three of them; it does not determine whether the full requirements are met.

Firewalls

Partial external evidence from publicly reachable services, exposed ports and observable perimeter filtering.

Secure configuration

Partial external evidence from TLS, certificates, security headers, DNS posture and exposed public paths.

Security update management

Partial external evidence from observed technology versions and evidence-bound CVE matching.

Use the evidence in preparation

Move from external observation to a better-informed self-assessment.

PerimAssure helps you find and track public-perimeter issues before you submit. Your organisation remains responsible for defining scope, checking internal controls and answering the official questions accurately.

01

Find visible gaps

Review exposed services, TLS, DNS, headers and version-supported vulnerability evidence.

02

Prioritise action

Use evidence-led findings and remediation guidance to focus engineering work.

03

Prepare supporting evidence

Retain protected reports, captured observations and measured change history for your preparation records.

04

Complete the official route

Use the current NCSC and IASME requirements, then work with the appropriate assessor or Certification Body.

Official scheme resources

Certification starts with the current official requirements.

The NCSC defines the five controls and IASME operates the certification ecosystem. Use their current requirements and readiness material for scope, assessment questions and certification decisions.