Kaamos
All frameworks// framework reference

Cyber Essentials for EU B2B software companies.

Cyber Essentials is a UK certification, not an EU regulation. It becomes relevant for companies selling to UK public-sector or enterprise buyers that expect a baseline set of technical controls for secure configuration, access, malware protection, patching, and firewalls.

Information bankrecommendedLast updated May 12, 2026

Who it applies to

  • Companies selling to UK public-sector or enterprise customers.
  • Teams asked for Cyber Essentials or Cyber Essentials Plus in procurement.
  • Organizations that want a lightweight technical-control baseline.

What you need to do

  • Secure configuration, access control, malware protection, patch management, and firewall controls.
  • Evidence that technical basics are implemented and reviewed.
  • Repeatable ownership for maintaining baseline controls.

How to use this entry

  • Use this page to understand the buyer or regulatory pressure before it becomes a deadline.
  • Run the regulation checker to see whether this area is likely to matter for your company now.
  • If it becomes relevant, Kaamos can help you scope the gap and turn it into prioritized security work.