COMPLIANCE & CERTIFICATION

IASME Cyber Assurance Certification (ICA)

Achieve IASME Cyber Assurance certification. Our experts guide organizations through the two-level assessment process to demonstrate comprehensive cyber resilience across all fourteen security themes.

Overview

IASME Cyber Assurance (ICA) is a comprehensive, risk-based cybersecurity standard that replaced IASME Cyber Baseline. It demonstrates that an organization has implemented a broad range of controls covering cyber security and data protection across fourteen structured themes. Cyberkov's IASME Cyber Assurance services guide organizations through both Level One (Verified Assessment) and Level Two (Audited) certification. The standard is tailored to organizational size — from sole traders to large enterprises — and requires a valid Cyber Essentials certification as a prerequisite. ICA is recognized across industry sectors as evidence of appropriate controls to mitigate cyber risk within the supply chain, and aligns with GDPR requirements and the UK Government's Cyber Governance Code of Practice.

Quick Facts
CategoryCompliance & Certification
Service TypeSPS
EngagementCertification Advisory Engagement

Need help choosing?

Key Benefits

Achieve comprehensive, recognized cyber resilience certification
Demonstrate compliance with UK Government Cyber Governance Code of Practice
Meet supply chain security requirements across all sectors
Implement controls across all fourteen ICA security themes
Satisfy GDPR data protection obligations through structured controls
Build customer and partner confidence with independently verified assurance
Choose Level One (annual self-assessment) or Level Two (three-year audit)
Tailored compliance burden based on your organization's size

Scope of Work

Cyber Essentials prerequisite gap assessment and readiness
ICA fourteen-theme gap analysis (Identify & Classify, Protect, Deter & Detect, Respond & Recover)
Risk assessment and risk treatment planning
Policy, procedure, and documentation development
Technical control implementation and remediation guidance
Level One verified assessment preparation and submission support
Level Two audit preparation (documentation, staff interviews, evidence packs)
Annual recertification and ongoing compliance maintenance

Methodology

01

Prerequisite Check

Verify or obtain valid Cyber Essentials certification

02

Gap Assessment

Fourteen-theme ICA requirements analysis against current controls

03

Risk Assessment

Identify, classify, and treat information security risks

04

Remediation Planning

Prioritised implementation roadmap by theme and org size

05

Implementation

Control deployment, documentation, and policy development

06

Assessment Preparation

Readiness verification and portal submission support

07

Certification Support

Assessor liaison for Level One review or Level Two audit

08

Maintenance

Annual recertification support and continuous compliance guidance

Key Deliverables

Cyber Essentials readiness report (if required)
ICA fourteen-theme gap assessment report
Risk assessment and risk register
Implementation and remediation plan
Policy and procedure documentation pack
Technical remediation guidance and evidence templates
Level One assessment portal submission support
Level Two audit evidence pack and interview preparation
Annual recertification maintenance guide

Engagement Models

Certification Advisory Engagement

Ready to Strengthen Your Security?

Our experts are ready to help you assess your needs and build a robust defense strategy. Schedule a free, no-obligation consultation today.

IASME Cyber Assurance Certification (ICA)

Achieve IASME Cyber Assurance (ICA) certification. Cyberkov guides organisations through Level 1 and Level 2 assessment across all 14 ICA themes.

Key page topics

  • IASME Cyber Assurance (ICA) Certification
  • ICA Level 1 & Level 2 Assessment Support
  • 14-Theme Gap Analysis & Remediation
  • Cyber Essentials Prerequisite Verification

Related services and pages