Micro/small UK legal aid services and charities can now apply to the Funded Cyber Essentials Programme for free certification to help them put baseline cybersecurity controls in place. Credit: Metamorworks / Getty Images The UK’s National Cyber Security Centre (NCSC) is offering some small organisations in high-risk sectors free practical support to help them put essential, baseline cybersecurity controls in place. Small charities and legal aid firms are invited to take part in the Funded Cyber Essentials Programme, which extends cybersecurity assistance from leading experts to help them protect the vulnerable people they support, free of charge.The initiative will see eligible organisations receive 20 hours of support to help implement the five technical measures needed to gain Cyber Essentials certification, a government-backed scheme that helps UK companies guard against online threats and demonstrate a commitment to cyber security to customers, service users and stakeholders. The scheme will guide businesses through five key areas of cybersecurity – firewalls, secure settings, access controls, malware, and software updates – without the typical pricing structure for micro/small organisations of £300 and £400 + VAT, respectively.Funded Cyber Essentials Programme for sectors at greater risk of cyberattackIn a post, the NCSC wrote that the aim of the Funded Cyber Essentials Programme, delivered by the IASME Consortium, is to support sectors which are at relatively greater risk of cyberattack because of the sensitive information they handle and because organisations typically have a lower level of cyber maturity. “The NCSC’s focus is on supporting small organisations that have a low level of cyber maturity, and work with data that is sensitive and would have significant impact if disrupted. The programme will offer Cyber Essentials Plus to specific sectors that are at high risk of cyberattack, at no cost,” the NCSC stated. To qualify for the scheme, an organisation must either be:A micro or small business (one to 49 employees) that offers legal aid services.A micro or small charity that processes personal data, as defined under GDPR.Sarah Lyons, NCSC deputy director for economy and society resilience, stated that charities and legal aid firms do incredible work supporting vulnerable people when they need it most, and that’s why it is vital they take steps to protect sensitive data. “The new Funded Cyber Essentials Programme is a great opportunity for small organisations to gain free assistance with putting key cyber security protections in place. I strongly encourage organisations to register so they can boost their cyber resilience and help reduce the chances of falling victim to a potentially damaging cyberattack.” Launched in 2014, the Cyber Essentials scheme has helped organisations of varying size and from diverse sectors defend against cyberattacks and secure new business. More than 31,000 Cyber Essentials and Cyber Essentials Plus certificates were issued in 2022, according to the NCSC. Related content feature Top cybersecurity M&A deals for 2023 Fears of recession, rising interest rates, mass tech layoffs, and conservative spending trends are likely to make dealmakers cautious, but an ever-increasing need to defend against bigger and faster attacks will likely keep M&A activity steady in By CSO Staff Sep 22, 2023 24 mins Mergers and Acquisitions Mergers and Acquisitions Mergers and Acquisitions brandpost Unmasking ransomware threat clusters: Why it matters to defenders Similar patterns of behavior among ransomware treat groups can help security teams better understand and prepare for attacks By Joan Goodchild Sep 21, 2023 3 mins Cybercrime news analysis China’s offensive cyber operations support “soft power” agenda in Africa Researchers track Chinese cyber espionage intrusions targeting African industrial sectors. By Michael Hill Sep 21, 2023 5 mins Advanced Persistent Threats Cyberattacks Critical Infrastructure brandpost Proactive OT security requires visibility + prevention You cannot protect your operation by simply watching and waiting. It is essential to have a defense-in-depth approach. By Austen Byers Sep 21, 2023 4 mins Security Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe