The problem
A regulated financial-services client had set Cyber Essentials certification as a hard precondition of onboarding. The firm's setup was patch-lagging laptops, no MFA on legacy admin accounts, no documented patching cadence, and no audit log for SharePoint access — four fails on the five Cyber Essentials technical controls.
What we did
Ran the free IT health check to baseline the gaps, then remediated: rolled out MFA across every account, tightened Microsoft 365 conditional access, brought OS patching inside a 48-hour cadence, and applied the Cyber Essentials technical controls (boundary firewalls, secure configuration, malware protection, access control, patch management). Submitted for certification on a fixed four-week timeline.
Result
Cyber Essentials certified in 4 weeks. 100% of staff enrolled in MFA, OS patch window cut from 30+ days to under 48 hours, regulated client onboarding completed on schedule. See Cybersecurity →