You are on page 1of 4

CYBER SECURITY

ASSESSMENT
CYBER SECURITY ASSESSMENT

With cyber-attacks increasingly making the front page, what are you doing
to secure your business data?

In 2012, the 10 Steps to Cyber Security Xchanging’s Cyber Security Assessment


Guidance were issued by Governments uses the 10 Steps as a guide to work in Combining expert
Communication Headquarters (GCHQ), collaboration with customers to discover knowledge with a keen
as part of the UK Government’s Cyber their organisation’s cyber security interest to understand
Strategy. The report highlighted the structure and aligning it to their business
our customers’ business
importance of embedding Cyber requirements in order to quantify
Security, which is led from the board and possible vulnerabilities. requirements, Xchanging is
aided by a secure infrastructure, in a prime position to assist in
throughout an organisation. Exposure to Once assessed, the results would allow strengthening cyber security
unnecessary cyber risks could prove us to identify key areas of improvements
risks for proactive businesses.
detrimental to business critical systems, and actions that may be taken to
and crucially impact upon brand trust improve cyber security to reduce the
and reputation. cyber risks. The organisation can also be
awarded certification to Cyber Essentials
Xchanging recognises the importance of or Cyber Essentials Plus, which is also a
Cyber Security threats, to our customers part of the Cyber Strategy.
and also to our customers’ customers’.
To this end, we have developed an
Assessment to help businesses
understand the level of cyber risks they
are currently exposed to.

10 STEPS TO REDUCE YOUR CYBER RISK

INFORMATION RISK
MANAGEMENT REGIME

INCIDENT
MONITORING
MANAGEMENT

REMOVABLE MOBILE AND USER


MEDIA HOME WORKING EDUCATION

NETWORK MALWARE SECURE MANAGING USER


SECURITY PROTECTION CONFIGURATION PRIVILEDGES

TECHNOLOGY IS MANAGEMENT
TECHNOLOGY BUSINESS
RISKS RISKS
CONTROLS/AWARENESS IS GOVERNANCE

2 | CYBER SECURITY ASSESSMENT


WHY XCHANGING?

Xchanging’s experts have extensive


experience in the fields of audit, risk
management and cyber security. Our
significant client work includes, but not
limited, the following:
Providing Security Incident
Management to key National
Infrastructures and Insurance
Markets.
Working with clients to attain
ISO27001 accreditation.
Full risk assessment and
management of subsequent
programme to harden network
firewalls for National Infrastructures
Vulnerability assessment services
have been adopted on contracts
with key members of the insurance
market and government
departments.

CUSTOMER BENEFITS
DELIVERABLES • Clear visibilities of cyber security risks, provided through a clearly
An assessment report against defined assessment methodology.
the UK Government’s 10 Steps • Improved Stakeholder confidence, as it shows that cyber assurance is
to Cyber Security. considered seriously.
Suitable recommendations • Improved economic benefits, as loss through cyber risks can be
to reduce risks discovered and minimised.
Cyber Essentials Certificate • Alignment to Government requirement, as Cyber Essentials is a
(*if qualify) prerequisite for bidding in certain government contracts.
Optional: Cyber Essentials • Reduce costs of cyber insurance through the acquisition of Cyber
Plus Certificate Essentials Certificates
• Improved visibility to cyber security risks
• Greater ability to mitigate risks and improve customers’ risk
management regime.
• Peace of mind for your users and customers

xchanging.com CYBER SECURITY ASSESSMENT | 3


THE ASSESSMENT

Xchanging’s Cyber Security Assessment is split into four stages:


Indentify, Discover, Assess and Deliver.

Xchanging works with customers to identify the key personnel required for the assessment. A
STAGE 1: timetable for site visits is created based on each person’s availability. Where possible, an outline of
IDENTIFY the assessment areas is broken down and supplied before visits to allow suitable knowledge and
evidence to be gathered.

STAGE 2: Discussions take place with customers’ key personnel to understand their business needs and current
DISCOVER practices whilst gathering evidence where needed.

Evaluate the gathered information and evidence, collect any additional evidence required, and
STAGE 3: produce an interim report, which quantifies high level risks and improvements needed to qualify for
ASSESS the Cyber Essentials scheme.

A final assessment report will be provided. If the controls are determined to be sufficient, support to
STAGE 4: the Cyber Essential Certification process will be provided. After digesting the findings a convenient
DELIVER meeting will be organised, which will offer an opportunity to query any issues related to the
assessment report and recommendations.

The Walbrook Building • 25 Walbrook


London • EC4N 8AQ • UK

Telephone +44 (0)20 3604 3334


Email info@xchanging.com
Website xchanging.com

@XchTechnology
linkedin.com/company/xchanging
facebook.com/xchangingplc

© 2015 XCHANGING 0318/FEB.15

You might also like