What this Defence Cyber Certification purchase includes
This page is the checkout route for DCC Level 0 - Medium, for UK MOD suppliers with 50-249 staff. The price shown is the certification fee before VAT. It includes the IASME-licensed L0 assessment, three-year certificate validity and annual attestation support at the end of Year 1 and Year 2. Fig Compliance Ltd is an IASME-licensed Certification Body for DCC Levels 0 and 1.
What happens next
- After checkout, you receive your engagement intake template and book a 30-minute scoping call with your assigned Fig consultant.
- Fig confirms the in-scope estate, supplier list and Cyber Risk Profile.
- You assemble the evidence pack using the structured template; the Fig Technology platform pre-maps your evidence against the Level 0 control set.
- The IASME-licensed assessor reviews the evidence pack. On a favourable outcome the DCC Level 0 certificate is issued, valid for three years.
Eligibility and scope checks
- DCC Level 0 applies to MOD contracts where the contracting authority has assigned a Very Low Cyber Risk Profile (CRP).
- The L0 assessment is a documentation review of three controls drawn from Def Stan 05-138 issue 4; there is no on-site or remote technical inspection.
- The certificate is valid for three years from issue, subject to annual attestation at the end of Year 1 and Year 2 (included in the price).
- Engagement scope is one legal entity. Multi-site operations are supported where they share a common Cyber Risk Profile.
By purchasing, you agree to the Defence Cyber Certification terms and conditions. Contracting entity: Fig Compliance Ltd (Company No. 16857592, VAT No. 506692774).
Trust evidence
Verify Fig as your DCC certification body
Fig Compliance Ltd is IASME-licensed for DCC Levels 0 and 1. Each licence is independently verifiable on the IASME-operated Blockmark Tech registry, and our wider pricing, turnaround and review claims are sourced and dated on our trust page.