Frequently Asked Questions
Got questions about our services, approach, or how we work? Find answers to common inquiries below.
About Services
Independent Consultant: Strategic guidance on cybersecurity strategy, roadmaps, risk assessment, governance, third-party risk, and incident preparedness. Ideal for organizations looking to develop or refine their security posture.
CE/CE+ Auditor: Independent assessment and validation of conformity evaluation processes. We audit your controls, compliance frameworks, and security practices against established standards.
CE+ Lead Assessor: Principal-led assessments for certification bodies. We evaluate organizations seeking EU CE+ certification and provide sign-off for assessment programmes.
Three product lines:
- Cyber Essentials / CE+: assessment pathways, Lead Assessor sign-offs, readiness tools
- Platforms: security SaaS and desktop products (Consent, Pre-Audit Checker, and more)
- Cyber Ask Domains: domain registration, DNS, renewals, and web hosting via a client portal
It depends on readiness and scope. Rough guides:
- Lead Assessor sign-off only: often hours to a few days when evidence is prepared
- Endpoint readiness + prep: typically 1–3 weeks
- Full CE/CE+ pathway: commonly 2–8 weeks
We confirm timelines when we understand your scope and deadline.
Products & portals
Cyber Ask Domains is a self-serve portal: search and register domains, manage DNS and renewals, purchase hosting packages, and access cPanel when provisioned. Start at /domains (redirects to the Domains portal).
No. The CE product client portal on this website and the Domains & hosting portal are separate systems with separate accounts. Use Client Login for CE products, and the Domains portal login for hosting/domains.
Primarily UK SMBs and mid-market organisations needing CE/CE+, practical security tools, or secure domains and hosting. Offerings are productised and scoped so cost and deliverables stay clear.
Frameworks & Compliance
I have experience across major frameworks including:
- NIST Cybersecurity Framework
- ISO/IEC 27001 (Information Security Management)
- GDPR (and UK Data Protection Act 2018)
- HIPAA (Healthcare)
- PCI DSS (Payment Card Industry)
- CIS Controls
- COBIT (Governance)
- Zero Trust Architecture
- CE+ Certification Frameworks
I provide independent assessments against these frameworks. While I'm not a formal ISO auditor, I evaluate your alignment and readiness for formal audits. For complete ISO 27001 certification audits, I recommend engaging a certified audit body—but I can prepare you and validate readiness.
Absolutely. I conduct pre-audit assessments to identify gaps, recommend remediation, and prepare your team for formal audits. This reduces surprises and improves audit outcomes. It's a proactive approach many organizations find valuable.
Engagement & Pricing
Pricing varies based on scope, size, and complexity. Options include:
- Day rate: For shorter engagements or ad-hoc support
- Fixed project fee: For defined scope (assessments, strategy, etc.)
- Retainer: For ongoing advisory or interim leadership
Contact me for a discussion—I'll provide a tailored quote after understanding your needs.
Simple:
- Email [email protected] with a brief description of your challenges
- Call +44(0)7346 808791 for a quick conversation
- We'll schedule an initial consultation to understand your needs, agree on scope, and discuss next steps
Still Have Questions?
I'm happy to discuss your specific situation. Reach out anytime.