Skip to main content
Assuresec Limited
Search the site Switch light or dark theme

Free self-assessment

How ready is your organisation?

Fourteen yes-or-no questions. Five minutes. An instant score and the five things to fix first.

Question 1 of 14 0%
Governance Do you have an information security policy that senior management has approved?
Governance Does one named person own information security and compliance?
Risk management Do you run a formal risk assessment at least once a year?
Access control Is multi-factor authentication required for email, remote access and admin accounts?
Access control Do you review who has access to systems, and remove leavers promptly?
Vulnerability management Do you scan for vulnerabilities regularly and fix serious ones within a set time?
Vulnerability management Has an independent party penetration-tested your key systems in the last 12 months?
Data protection Do you know what personal data you hold, where it is kept and why?
Data protection Is sensitive data encrypted when stored and when sent over networks?
Incident response Do you have a written incident response plan that you have practised?
Continuity Are backups taken, kept offline or protected, and restore-tested?
People Does every employee get security awareness training at least once a year?
Third parties Do you check the security of suppliers that handle your data?
Compliance Do you know which laws and standards apply to you, and track your status against them?
Almost done Where should we send your results?

You will see your score straight away, and we will email you a copy. A specialist may follow up once to offer help. No spam.

Your answers stay private to Assuresec.

This is an indicative self-assessment to help you plan. It is not an audit, a certification or legal advice.