Skip to main content

Why you should get Cyber Essentials certified

Has your business seen an increase in cyber attacks, hacking attempts and phishing scams? If so, you’re not alone; according to government research in 2025, ‘20% of businesses and 14% of charities have been the victim of at least one cyber crime in the last 12 months, accounting for approximately 283,000 businesses and 29,000 registered charities’. 

We spoke to Transcendit IT support engineer Dave Kennedy about Cyber Essentials, and why organisations need to seriously consider getting certified in 2026. 

What is Cyber Essentials?

‘Cyber Essentials is a government approved standard for security in technology through businesses,’ says Dave. ‘It covers both the technology that a business uses, and how that technology is used and processed.’

‘Within the processing policy, Cyber Essentials ensures that a business has appropriate documentation on how staff should use technology, how they approve things that are administration related, the steps that employees go through for certain processes. Cyber Essentials considers how the technology that businesses are using relates to these processes; for example, network security, multi-factor authentication, and software and hardware operating systems.’

‘There are two different levels, one which is self-assessed, and another which is externally assessed. You answer some questions about your organisation and how it operates, and then your answers are reviewed by someone from the Cyber Essentials team. From there, you’re certified, and you’re searchable on their website.’

Will being Cyber Essentials certified keep your business safe?

‘Unfortunately, there is no ‘safe’ any more when we’re talking about cyber security; there’s only safer,’ says Dave. ‘However, getting a Cyber Essentials certification means that you’ve met the government minimum standard to protect your business. And everything that Cyber Essentials ensures that you have in place will provide a strong defence against things like phishing attempts, cyber attacks, ransomware and hacking attempts.’

‘Where businesses can get themselves into trouble are with old systems and outdated software,’ says Dave. ‘Some organisations will be really used to using a certain piece of hardware, or be very familiar with an application. They might only use it once every couple of weeks, and so it doesn’t really feel that important if the manufacturer isn’t updating it any more, or the security is lacking.’

Dave says that it’s these applications, software and hardware that can lead to phishing and hacking attempts, ‘You’re only as strong as your weakest link. A scammer is going to find the easiest way into your systems, and the easiest way to do that is through an old machine that’s connected to your central network, or a system that doesn’t have multi-factor authentication set up.’ 

It’s a good standard to make sure that your business is as protected as it can be, for what is good common practice. At this point, businesses that aren’t following Cyber Essentials guidelines are going to be those who aren’t updating software, or who aren’t using multi-factor authentication. Cyber Essentials certification is a way to make sure that you’re meeting current best practices throughout your business, to make sure that the business is as secure as it can be.’ 

Is Cyber Essentials mandatory for businesses?

‘It’s not mandatory, but there's a caveat,’ says Dave. ‘If you want to work with the NHS, or any government service, they are all currently asking for Cyber Essentials certification as a minimum. And even for organisations who aren’t interested in working with government services, these are best practice guidelines. So it isn’t mandatory, but it is highly, highly recommended, regardless of the size of your business.’

‘This isn’t something that Transcendit is recommending solely from our experience,’ says Dave. ‘It’s a government-backed baseline.’ 

How can Transcendit help?

‘This isn’t something organisations need to do alone,’ says Dave. ‘Drop us an email, or give us a call, and we can talk you through the process and help your organisation answer the questions. We can also support businesses by setting up anything that they’re missing that will prevent a certification, whether that’s systems updates, hardware upgrades or documentation.’

‘For most organisations, the investment is the cost of the assessment, and a couple of hours going through the questions with one of our IT support engineers. And the benefit is that you know that you’re making your business safer, and getting a certification too. Unfortunately, organisations that aren’t following these guidelines are vulnerable. But there are easy fixes, and when the fixes are trickier, we can help.’

Give us a call on 0191 482 0444 to talk about Cyber Essentials

The Transcendit Way

Transcendit understand that when you choose to work with us, whether we're taking care of your IT, app or web development, you're trusting us with part of your business. So whether we're looking after your computers, phone systems or servers we always do things 'the Transcendit way'.

The whole of our team adhere to the same values, beliefs and policies - the principles that were written when Transcendit first formed in 2000. Whether you come to us for cloud services or recovery backup you can be confident that you'll always receive the same excellent service.

The Transcendit way outlines how we do business; following the same straightforward principles with every client and customer, regardless of how big or small they may be.

That means we get to know you and your business. We offer you a friendly, professional and efficient service, and we'll always be honest with you.
We understand that not everybody speaks fluent IT, so we try to explain things in a way that is simple and clear. We always spend as much time as is necessary explaining things to you.
If you need to talk to us about something, no matter how insignificant, we are only ever a phone call away – and we’re never too busy to make you a cup of tea and have a sit down with you in person.
We understand how frustrating it can be when things are late. When we schedule an appointment with you, we are there when you’re expecting us. If something prevents us from getting there, we always call you in advance to let you know.
Sometimes things can go wrong, but we never lie to you or try to cover something up. If things go askew we tell you what’s happened and how we plan to prevent it affecting your business.
We want you to continuously benefit from working with us. We regularly discuss your business and make suggestions for improving systems and processes wherever we can – but we never try to push you into a purchase.
When we quote a fixed price, that's always the amount we charge – you won’t find any nasty surprises on a bill from us. If you are paying by time and materials, we inform you if our approximations could change.
We understand the importance of privacy for your business and your customers. We respect the confidentiality of your data, and we will never pass on your information to third parties.
We appreciate it when you take the time to give us feedback. A system called CustomerSure records our client's responses, so you can trust that our reviews are from real people.
Find out what they're saying here .
Ivo was very helpful and patient, despite having to chase me up to resolve this a few times. Thank you! Laura

Based on 13148 reviews our customers rate us 9.8/10. Reviews and ratings by Customersure. 07-November-2025

Transcendit are proud sponsors of CHUF, the Children's Heart Unit Fund.

Transcendit is a Living Wage employer
Transcendit is a Microsoft Solutions Partner
Vipre partner
IPCortex partner
WithSecure partner
DELL partner
Barracuda partner
Veeam partner
N-Able partner