Cyber Security Services, risk assessment and management
This service provides an assessment of your Cyber Security practices. Focused on capabilities associated with technology services and environment to: strengthen cybersecurity capabilities, enable effective and consistent evaluation and benchmark of cybersecurity capabilities. We enable prioritisation of actions and investments to improve security.
Features
- Cyber Security Consultation, Framework, NIST, NCSC and NIS2
- Cyber Security remediation Services
- OWASP, CIS Benchmark implementation
- Managed Service provider (MSP)
- Penetration Testing and Vulnerability Assessment
- Cyber Security Manager
- Cyber Essentials Plus Certifications CE+
- Security Operations Centre
- Technical Consultation
- Cyber Security Risk assessment and Training
Benefits
- Review adequacy of existing cyber security Strategy
- Understand current state cyber maturity via C2M2 assessment
- Define Target State Cyber security maturity
- Agree Security Gap Analysis report with senior stakeholders
- Develop a Cybersecurity Roadmap
- Cyber Security Risk mitigation plans
- CREST certified penetration testers
- Cyber Essentials plus technical and infrastructure implementation
- Cyber Security desktop war games design and implementation
- On premise and cloud implementation to NIST standards
Pricing
£250 to £550 a unit a day
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
8 4 6 6 0 5 3 9 1 7 2 4 7 9 0
Contact
BEMA CYBER TECH LIMITED
Theron Lessey
Telephone: 07789647997
Email: theron.lessey@bemacybertech.com
Planning
- Planning service
- Yes
- How the planning service works
- Planning is an integral element of all of our G-Cloud services. We ensure that our customers agree the actions we will be taking, the priorities, and who holds is accountable for completion. We ensure clear, regular reporting of progress against plan, and appropriate risk management and mitigation strategy.
- Planning service works with specific services
- No
Training
- Training service provided
- Yes
- How the training service works
- Bespoke training, coaching and knowledge management to support the development of skills aligned with our services. Online and face to face
- Training is tied to specific services
- No
Setup and migration
- Setup or migration service available
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- Yes
- How the quality assurance and performance testing works
- Quality Assurance and performance testing is available within each of our services and is designed specifically to meet individual needs, based on the ISO9000 principles of QA
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security testing
- Security incident management
- Security audit services
- Certified security testers
- Yes
- Security testing certifications
-
- GBEST
- CHECK
- CREST
- Tigerscheme
- Cyber Scheme
Ongoing support
- Ongoing support service
- Yes
- Types of service supported
-
- Buyer hosting or software
- Hosting or software provided by your organisation
- Hosting or software provided by a third-party organisation
- How the support service works
- We provide managed services to support the SaaS platforms we implement, including ServiceNow, BMC Helix, and Digital.ai. We offer specific G-Cloud services for each of these with pricing plans
Service scope
- Service constraints
- None
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Support is available for each of our services. We design bespoke offerings to meet our clients specific needs, and offer attractive, tailored pricing.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.1 AA or EN 301 549
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Web chat
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- WCAG 2.1 AA or EN 301 549
- Web chat accessibility testing
- Messaging function via webform
- Support levels
- Support is available for each of our services. We design bespoke offerings to meet our clients specific needs, and offer attractive, tailored pricing.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Citation
- ISO/IEC 27001 accreditation date
- 02/03/21
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Equal opportunity
Fighting climate change
BCT is committed to reduce its carbon footprint each year and attain carbon-neutral status as soon as possible - at the latest by 2030. We have calculated our baseline emissions using the Carbon Trust’s SME Carbon Footprint Calculator and we have set out strategies to improve our current score, including waste management, business travel, employee commuting, staff engagement and education. Our commitment includes:
1. We have a written Environmental Policy and related strategy and targets to support our aims. This is reviewed and updated half-yearly and is fully communicated, understood and supported by all our staff,
2. We use a small, serviced office with average occupancy of 2-5 people, travel to the office is mostly by public transport or bicycle. The carbon footprint from this comprises our small share of heating and lighting.
3. Travel on company business and home to office is minimised and mostly by rail, foot, or bicycle, when it is necessary.
4. We have implemented hybrid working for all staff, supported by home equipment. We make extensive use of Teams and Zoom software for client and internal meetings and workshops minimising the need for travel.
5. We use only cloud-based software for customer work, internal technical work and administration. We have no fixed computing equipment other than personal laptops.
6. We operate a paper-free environment for all our assignments and internal administration, minimising waste and obviating the need for physical storage.
7. Laptops are recycled across employees and disposed of at end-of-life in line with current UK Environmental legislation.
8. We ensure our suppliers have a suitable environmental policy, actively targeting carbon-neutrality as soon as possible and before 2030.Equal opportunity
Equal opportunity
We strive to ensure BCT is an equitable, diverse and inclusive workplace and to provide a working environment that is free from discrimination at all times. We have a zero-tolerance approach to discrimination. Our aims are supported by our EDI Policy which applies to everyone who works for or acts on behalf of BCT and commits:
1. To provide equality fairness and respect for all staff and recognise and value differences and the contributions of all team members.
2. To not tolerate any form of intimidation, bullying or harassment, and to discipline those that breach this policy.
3. To make training, development, and progression opportunities fairly available to all staff.
4. To promote equality in the workplace not providing less favourable facilities or treatment on grounds of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, ethnic origin, colour, nationality, national origin, religion or belief, or sex and sexual orientation. We will identify and provide special equipment if needed to ensure equality.
5. To encourage anyone who feels they have been subject to discrimination to raise their concerns.
6. To regularly review employment practices so that fairness is always maintained.
This policy is communicated with all staff, associates, and subcontractors as part of formal onboarding to both the organisation. We collect data on EDI as part of onboarding. We measure and report quarterly against our EDI KPIs.
Policies, processes, and education are in place to support legal compliance. We audit compliance annually and take actions to correct and continuously improve. Our management training includes safeguarding awareness of signs of abuse based on SCIE guidelines. Staff are encouraged to report any concerns which are investigated, and action taken. Senior leaders and staff have responsibility to demonstrate diversity and inclusion behaviours in all engagements.
Pricing
- Price
- £250 to £550 a unit a day
- Discount for educational organisations
- Yes