IASME 
Cyber Baseline

The IASME Cyber Baseline is an international certification scheme designed to address essential cyber security measures for organisations outside the UK. This standard provides a standardised and respected certification for global supply chains, demonstrating that these organisations have implemented crucial cyber hygiene practices.

The IASME Cyber Baseline aligns with several international cyber standards and best practices. Previously, there was no method to demonstrate compliance with these standards due to the lack of associated assessments and certifications.

For organisations outside the UK, the IASME Cyber Baseline can serve as a prerequisite for the more comprehensive IASME Cyber Assurance certification, which is risk-based and policy-driven. For UK-based organisations, Cyber Essentials is the recommended minimum certification.

What is IASME Cyber Baseline?

IASME Cyber Baseline consists of a verified self-assessment reviewed by an independent Assessor. After registering for certification, you are given access to the secure assessment platform where you will answer the verified self-assessment questions. A senior member of the board or equivalent from your organisation must e-sign a document to verify that all the answers are true and then our Assessment team will mark your answers.

We offer Emailed guided support packages to ensure a smooth first Time pass.

Cyber Baseline helps an organisation to

Why Certify With us?

Human Support
Our friendly and helpful team of experts will be on hand with insights and useful advice to help boost your chances of a first-time pass.

Best Price In UK
Cyber Tec offers a best-price guarantee on like-for-like Cyber Essentials packages – so you’re sure to find one that works for your budget.

Assured Pass
Our guided certification packages are designed to assure your business obtains a first-time pass, giving you added peace of mind.

Speedy Turnaround
We understand that getting certified is a matter of urgency. That’s why we strive to help businesses achieve certification within 24 hours.

Remote Auditing
We complete all auditing remotely, so you can get on with business as usual – without the extra hassle of arranging on-site visits.

Business Benefits

The Eight Themes Of IASME Cyber Baseline

The IASME Cyber Baseline scheme allows every size of organisation in every sector to start their cyber security journey with simple cyber security measures set out across eight themes.

Organisation
Track all third-party engagements, including IT products, services, and personnel. A security gap in any third-party system can compromise your own security, no matter how robust it is.

Identifying and protecting assets
Understand your key information assets to know what to protect. Maintain an asset register for all information assets, including hardware, software, and cloud services. This helps clarify your attack surface and what’s at risk.

Secure Architecture
Systems are not secure by default, so it’s crucial to understand their configuration and integration. Apply technical controls to your devices to reduce the risk of cyber attacks.

People
Your greatest allies in protecting your organization’s information are your colleagues and suppliers. They play a crucial role in system protection but also pose a risk due to their privileged access.

Technical Intrusion
Device configurations, including the operating system, firewalls, and malware protection, create layers of defence against unauthorized access.

Backup and Restore
Regular backups and the ability to restore them are crucial for protecting your business from data loss due to accidental or malicious actions, hardware failure, or ransomware.

Managing Access
Grant users only the resources and data necessary for their roles, both digitally and physical.

Resilience: Business Continuity, Incident Management, and Disaster Recovery
Prepare to maintain operations and recover from deliberate attacks, accidental damage, and natural disasters, as no security measures are fool proof.

Why Work With Us

Being the top third Certification Body in the UK, we pride ourselves on our Consultative, hands-on approach—there are no pre–populated dashboards or AI when working with us!

Don’t take our word for it, though –  our clients will tell you:

IASME Cyber Baseline Certification Packages

Reseller rates also available. Ask about reseller pricing.

* Assured pass assumes you follow our consultant’s advice and ensure that all the required controls are put in place.

Keep in constant Compliance with our Monthly Vulnerability Assessments at only £100/$130

Our Complementary Security Services

Cyber Insurance

A specialist cyber insurance policy can give your business maximum protection. Choose from a range of flexible options from market-leading providers.

Penetration Testing

Our monthly or one-off penetration tests simulate an attack on your systems to see how far hackers could go, followed by a detailed report and recommended remedies.

Vulnerability Assessment

Uncover potential gaps and weaknesses in your cybersecurity infrastructure before they can be exploited by online criminals with a vulnerability assessment. Use to stay compliant with cyber certificates such as CE and ICA

Managed Threat Detection

Our threat detection software protects your business against cyberattacks 24/7, with real-time monitoring, SOC analysis and CE Plus alignment.

Incident Response

By using the services of our CREST accredited incident response delivery partner, Pen Test Partners LLP, the impact of any breach or incident can be minimised and business continuity maintained by the provision of services in line with your company’s specific needs, regardless of your cyber maturity level.

Lets get Secure together

Frequently Asked Questions

Here’s a combined list of frequently asked questions that cover both the general and technical aspects of the IASME Cyber Baseline Certification. These FAQs provide a comprehensive understanding of the certification, suitable for organizations seeking to bolster their cybersecurity practices on an international scale.

International Cyber Baseline Certification is designed to standardize cybersecurity practices across organizations operating outside the UK, ensuring they adhere to fundamental cyber hygiene in line with international standards.

This certification is ideal for any organization operating internationally that needs to demonstrate a commitment to cybersecurity to partners, regulators, and customers, especially those involved in global supply chains or industries where security compliance is critical.

The certification covers eight crucial themes: Device Security, Data Security, Staff Awareness, Physical Security, Network Security, Malware and Virus Protection, Backup and Recovery, and Incident Management.

It helps standardize cybersecurity practices across international operations, enhances global compliance and interoperability, and builds trust with international stakeholders by demonstrating a proactive approach to cyber hygiene.

Yes, it is designed to be internationally recognized, providing a standardized approach to cybersecurity that facilitates business and regulatory compliance across borders.

The certification requires the use of encryption for data at rest and in transit, adhering to best practices for secure data storage and communications.

Organizations must implement robust network security measures, including firewalls, intrusion detection systems, and secure VPNs for remote access, along with regular security assessments to identify and mitigate vulnerabilities.

The certification mandates the deployment of comprehensive anti-malware and antivirus solutions that are regularly updated, along with training for employees to recognize and handle potential malware threats.

An up-to-date asset register must be maintained, listing all physical and information assets, their locations, ownership details, and security measures in place to protect these assets.

Organizations must establish and maintain effective incident management procedures, including the identification, reporting, management, and resolution of security incidents, with an emphasis on minimizing impact and learning from each incident to prevent future occurrences.

The process typically involves a self-assessment against the Cyber Baseline standards, followed by an external audit to verify compliance. This ensures that all security measures are properly implemented and effective.

The timeframe can vary but generally involves several weeks to a few months, depending on the existing level of cybersecurity maturity within the organization.

Similar to other cybersecurity certifications, it is recommended to review and renew the International Cyber Baseline Certification annually to ensure ongoing compliance and to adapt to any new security threats.

Organizations should look for accredited certification bodies that offer the International Cyber Baseline Certification. These providers are often listed on official cybersecurity and standards websites, or they can be recommended through industry associations.