Sereno IT has reached a significant cybersecurity milestone: we’ve been awarded Cyber Essentials Plus (CE+) certification, a UK government-backed scheme administered by the National Cyber Security Centre (NCSC).
The certification, awarded by independent certifying body IASME, demonstrates that our policies, procedures, and technical controls are strong enough to protect against the most common cyber threats. CE+ goes beyond the standard Cyber Essentials scheme: it requires external verification, with an auditor conducting technical assessments across around 1,000 digital assets in our environment, spanning:
What the audit covered
-
Boundary firewalls
Perimeter defences configured to keep untrusted traffic out.
-
Secure asset configuration
Devices and systems hardened against common misconfigurations.
-
Patch management
Software kept current so known vulnerabilities are closed quickly.
-
User access controls
The right people with the right access, and nothing more.
-
Malware protection
Active defences against malicious software across the estate.
-
Mobile assets
Phones and tablets brought under the same security standard.
The accreditation is renewable annually and serves as a formal signal to our clients that we take the security of their data seriously.
Cyber-attacks are a daily risk in today’s world, and these attacks are becoming more sophisticated. The Cyber Essentials Plus certification demonstrates that we have robust procedures and protections in place, and shows our partners that we have taken the necessary steps to reduce cyber threats.
Director Michael Johnson added: “Cyber Essentials Plus is an excellent achievement for our company and shows our partners our commitment and credibility to help them be more cyber secure. This is a great steppingstone for our imminent ISO 27001 certification.”



