
The IASME Cyber Assurance Level Two Audited standard is IASME’s highest level of certification. It offers small and medium sized organisations a legitimate way to prove their compliance with a comprehensive but affordable alternative to other international standards.
The standard includes important security measures such as:

Risk assessment and management

Monitoring

Change management

Training and managing people

Backup

Incident response and business continuity
By gaining the Audited IASME Cyber Assurance Level Two certificate your organisation is achieving IASME’s highest level of certification and providing assurance to customers and suppliers that your organisation’s security has been audited by a skilled, independent third-party.
WHERE IS THE IASME CYBER ASSURANCE LEVEL TWO STANDARD USED?
A wide range of UK and International industry sectors now accept the Level Two audited IASME Cyber Assurance certification as an alternative to other international standards. Examples are the UK Ministry of Justice and the Government of Jersey. This is a significant step towards reducing barriers to entry for smaller organisations in a supply chain as IASME Cyber Assurance gives SMEs a legitimate way to prove their compliance.
HOW IS THE ASSESSMENT CARRIED OUT?
IASME Cyber Assurance Level Two involves an audit of your processes, procedures and controls required by the standard. The audit is independent and conducted by an IASME Certification Body and Assessor. You will need to have completed the IASME Cyber Assurance Level One certification before you can progress to the Level 2 audit.
To get a quote for your Level Two certification, please speak to your Certification Body.
Your chosen Certification Body will discuss with you the scope of the assessment and arrange a mutually convenient time to visit your organisation’s head office to carry out an audit of your policies and process. This audit usually involves interviews with members of staff and a review of documentation and system configuration.
It does not involve a technical assessment unless you are being assessed to Cyber Essentials PLUS at the same time, although it may be helpful to have technical staff available to provide evidence to the assessor of your system configuration.
The assessor may also wish to visit branch offices or other locations in order to satisfy themselves that your good security practice is reflected across the organisation.
There is a prerequisite to applying for IASME Cyber Assurance; you must hold a valid Cyber Essentials certificate throughout your IASME Cyber Assurance certification.
RENEWAL
The audited certification is renewed at the end of years 1 and 2 by simply renewing the online IASME Cyber Assurance (Level One) verified assessment.
At the end of year 3 a full (Level Two) audit, as described above, is required again to renew the certification.
Find Out More
Have a look at our Frequently Asked Questions or speak to our team