Skip to main content
DEFENCE CYBER READINESS CHECK

Where do you sit against DCC and prime expectations?

Twelve questions, about five minutes, and you get an indicative risk profile, a six-domain scorecard and the frameworks your position calls for.

Calibrated against the inputs Def Stan 05-138 uses to drive risk profile.

  • Calibrated against DEFSTAN 05-138, DEFCON 658, Cyber Essentials Plus, ISO 27001:2022 and JOSCAR Stage 2 expectations
  • Six-domain RAG scorecard: Profile Position, Technical Controls, ISMS, Supplier Risk, Personnel Security, Evidence Maturity
  • 5-minute completion; full PDF profile sent by email
  • Senior practitioner-calibrated; no consumer-grade gamification

Common questions

Want the answer checked by a person?

Forty five minutes, free, with the practitioner who would deliver the work. Bring the questionnaire, the clause or the customer email. You leave with a written note the same day, whether or not you buy anything.

NEXT TOOLISO 27001 Cost CalculatorWhere a prime asks for ISO 27001 alongside the defence requirement, see the price band in four questions.

How this works. The profile follows the inputs Def Stan 05-138 uses, with mandatory overrides for SECRET or above information handling and Critical National Infrastructure impact. It is indicative only. The contracting prime issues the binding profile, and the figure is an estimate rather than a quotation.

We use cookies and similar technologies to measure how this site is used, to see which organisations visit, and to measure our advertising. If you accept, we load Plausible, Google Analytics and Google Ads, Microsoft Clarity, which records session replays, and Apollo. Nothing loads until you accept. Read our Cookies policy.