Full staff training modules
Interactive security awareness training with completion tracking and scores. See outstanding learning and keep a record of staff policy acknowledgements.
Everything in Cyber Essentials, with broader framework coverage, full staff training, EDR across your devices, staff management and supplier and buyer third-party risk management.
EVERYTHING IN CYBER ESSENTIALS, AND MORE
Compliance Plus includes everything in the Cyber Essentials package, including daily security scanning, monthly emailed reports, daily posture reviews, policy generation, asset and risk registers, and retained evidence.
It adds a much broader set of tools for staff training, endpoint detection and response, staff management, and supplier and buyer third-party risk management, alongside coverage across all 15 Basic frameworks.
MORE THAN FRAMEWORK COVERAGE
Interactive security awareness training with completion tracking and scores. See outstanding learning and keep a record of staff policy acknowledgements.
Endpoint detection and response across mobile devices, computers and laptops. Bring connected EDR threat findings and endpoint posture into your security workflow.
Manage staff onboarding, role changes and offboarding. Track required actions and evidence so security responsibilities stay visible as your team changes.
Manage supplier due diligence, risk assessments and scheduled reviews. Keep ownership and review actions together, with follow-up tasks when reviews fall due.
Manage your buyer relationships alongside your third-party risk programme. Keep customer records, accountable owners, contacts and review notes organised in one place.
Retain training completion, policy acknowledgement and staff lifecycle evidence alongside your controls, reducing the effort needed to prepare for reviews.
BROADER FRAMEWORK COVERAGE
Manage security, privacy and governance requirements across all 15 Basic frameworks, including NIST CSF, ASD Essential Eight, UK GDPR and DCC Level 0.
Framework coverage supports compliance management. Certification and independent assessment are purchased separately where required.
BUILT BY THE PEOPLE WHO ASSESS YOU
The whole Fig platform has been designed and built by licensed Cyber Essentials assessors. Their experience of conducting assessments shapes how the platform analyses controls, collects evidence and presents your organisation’s security posture.
It is built around what an assessment body needs: clear scope, accurate information, evidence against the scheme’s requirements and visibility of gaps that need attention. Those assessment needs inform the whole workflow, from connecting your systems to preparing evidence for review and retaining it for renewal.
For your team, that means less time interpreting what an assessor needs and chasing information. For the assessment body, it means organised evidence that supports a thorough review.
Fig Compliance Ltd provides certification directly as an IASME-licensed certification body. Fig Technology Ltd supplies the platform.
View our certification credentialsYOUR PACKAGE
Compliance Plus includes Premium support. Your order form records your package, staff band, support tier and agreed payment schedule.
Read the support policyFramework coverage helps you manage compliance. Certification requires a separate assessment and is subject to passing. You can purchase Cyber Essentials or Cyber Essentials Plus through Fig Compliance Ltd.
Compare certification packages