# pera prometheus
> Experts in advising the Defence Industry
## Posts
- [The Canadian Program for Cyber Security Certification: How It Relates to UK Defence Requirements](https://pera-prometheus.com/the-canadian-program-for-cyber-security-certification-how-it-relates-to-uk-defence-requirements/): Gareth Shaw, CEO Pera Prometheus Key Takeaways Why This Matters Now With the Manitoba–UK Defence Summit taking place this week, cross-border defence collaboration is accelerating. UK organisations increasingly engage with Canadian primes, SMEs, and government programmes — and cyber assurance is now a central part of that cooperation. The question is no longer “What do […]
- [Is a Fractional Security Manager right for your Business](https://pera-prometheus.com/is-a-fractional-security-manager-right-for-your-business/): Gareth Shaw, CEO Pera Prometheus Key Takeaways You already know you need someone responsible for security. What you has to be decided is the appropriate level of commitment the role requires, the associated cost, and how to best structure support to meet the needs of the business. At Pera Prometheus, we provide Fractional Security Managers. […]
- [The Three Controls Behind DCC Level 0, Explained](https://pera-prometheus.com/the-three-controls-behind-dcc-level-0-explained/): Gareth Shaw, MD Pera Prometheus Key Takeaways Most suppliers have now heard the headline. The Ministry of Defence (MOD) has asked all industry partners to achieve Defence Cyber Certification (DCC) Level 0 by 31 December 2026, as confirmed on the Defence Digital blog. Fewer know what Level 0 actually contains. I hear the same assumption […]
- [Your 2026 Cyber Essentials Checklist: Before You Apply](https://pera-prometheus.com/your-2026-cyber-essentials-checklist-before-you-apply/): Key Takeaways Working for Pera Prometheus, who are a Cyber Essentials (CE) and Cyber Essentials Plus (CE+) certifying body, and through my experience working with organisations of all sizes, I can confidently say that CE failures are rarely caused by poor security. More often, they are caused by gaps the applicant didn’t know were there; […]
- [How to align your DCC Level with MOD contract expectations](https://pera-prometheus.com/how-to-align-your-dcc-level-with-mod-contract-expectations/): Key Takeaways Defence suppliers must be aware that although the DCC (beyond Level 0 after 31 December 2026) is currently optional, this is very likely to change in the near future, with every indication being that MOD will expect increasing numbers of organisations to achieve DCC. As much as organisations can choose any DCC level […]
- [Cyber Essentials: The Foundation of DCC Level 0](https://pera-prometheus.com/cyber-essentials-the-foundation-of-dcc-level-0/): Key Takeaways Do You Need Cyber Essentials Before DCC Level 0? Suppliers working towards Defence Cyber Certification (DCC) often ask the same question: do you need Cyber Essentials before achieving DCC Level 0? The answer is yes, it’s a mandatory requirement. Some organisations assume DCC replaces Cyber Essentials or that the two are separate options […]
- [MOD Requirement to Suppliers: “Achieve DCC Level 0 by 31 December 2026”](https://pera-prometheus.com/mod-requirement-to-suppliersachieve-dcc-level-0-by-31-december-2026/): Key Takeaways The Ministry of Defence (MOD) has asked all of its industry partners to achieve Defence Cyber Certification (DCC) Level 0 by 31 December 2026, which includes Cyber Essentials for the business-critical systems in scope. If you supply to the defence sector, or if you want to, that deadline now sits in your calendar. […]
- [Inside a Cyber Essentials Plus Audit: What Really Happens](https://pera-prometheus.com/inside-a-cyber-essentials-plus-audit-what-really-happens/): Key Takeaways Plenty of organisations pass the Cyber Essentials self-assessment and then feel uneasy about the next step. Cyber Essentials Plus adds an independent audit to the assessment process and for those business’ who have not experienced a CE+ assessment before, it can seem to be a confusing and difficult target to achieve. The reality […]
- [CMMC Phase 2 Suspended: What It Means for Your Supply Chain](https://pera-prometheus.com/cmmc-phase-2-suspended-what-it-means-for-your-supply-chain/): Key Takeaways Introduction The US has hit pause on the part of CMMC that most worried organisations in the supply chain. On 13 July 2026 it suspended Phase 2, the stage that would have forced mandatory independent assessment from 10 November 2026. A pause is not the same as the end, so it would be […]
- [The Cyber Security and Resilience Bill: Who It Impacts](https://pera-prometheus.com/the-cyber-security-and-resilience-bill-who-it-impacts/): Key Takeaways The rules that govern cyber security in the UK are about to cover far more organisations than they do today. Until now, legal duties fell only on operators of essential services, in sectors such as energy, transport, water, health and digital infrastructure, and on a small group of digital providers, namely online marketplaces, […]
- [Defence Cyber Certification: Certify Before You Bid ](https://pera-prometheus.com/defence-cyber-certification-certify-before-you-bid/): Key Takeaways With the demise of the UK MOD accreditation process, the ability to demonstrate a business conformed to MOD assurance requirements, was lost. This has had significant ramifications for UK businesses, resulting in an increase in due diligence activities to provide evidence of compliance with MOD requirements for every contract or collaboration activity a […]
- [Cloud Is In Scope: What Cyber Essentials Requires From You](https://pera-prometheus.com/cloud-is-in-scope-what-cyber-essentials-requires-from-you/): Amy Osborne, Head of Audit Services Key Takeaways Some organisations approach Cyber Essentials assuming that because their data sits in Microsoft 365 or another cloud platform that information security is largely someone else’s responsibility; however, that assumption can cause assessments to fail. Your cloud provider secures the infrastructure it runs but your organisation is responsible […]
- [Cyber Essentials Scoping: The Decision That Determines Whether You Pass or Fail](https://pera-prometheus.com/cyber-essentials-scoping-the-decision-that-determines-whether-you-pass-or-fail/): Key Takeaways Introduction Most organisations focus on the five technical controls when preparing for Cyber Essentials. Fewer give the same attention to scoping and that is where assessments are quietly lost before a single question has been answered. The scope defines exactly which systems, devices, and services are being assessed. Too broad, without the right […]
- [List X Is Now Facility Security Clearance (FSC): What Changed, What Didn't, and What It Means for Your Accreditation ](https://pera-prometheus.com/list-x-to-fsc-changes/): Key Takeaways Introduction The term “List X” is still relevant to other parts of HMG, but not MOD. MOD have now fully embraced FSC, replacing the List X approach to securing facilities. This said, you will often come across the term ‘List X’ being used in Defence related conversations and it is worth being cautious of this. Many well-meaning people refer to […]
- [Cybersecurity Maturity Model Certification 2.0: Requirement for UK Contractors in US Defence](https://pera-prometheus.com/cybersecurity-maturity-model-certification-2-0-requirement-for-uk-contractors-in-us-defence/): Key Takeaways If your organisation supplies components, software, services, or specialist expertise into the US defence market, the rules for doing so have changed. The US Department of Defence (DoD) Cybersecurity Maturity Model Certification (CMMC) 2.0 is no longer an aspiration. Phase 1 went live in November 2025, and Phase 2, mandatory third-party certification, arrives […]
- [Beyond the Questionnaire: What Real Supply Chain Assurance Looks Like for PRIMEs ](https://pera-prometheus.com/beyond-the-questionnaire-what-real-supply-chain-assurance-looks-like-for-primes/): Key Takeaways Every year, a swathe of SAQs are issued and respective suppliers fill them in. In effect, the box gets ticked. For many Prime’s, this has become the accepted standard for supply chain assurance, repeated without question year after year. This level of complacency is a problem and the regulatory environment is making it harder to ignore. Under CSMv4 and DEFCON 658, what Prime’s are now […]
- [Breach, Report, Recover: What Security Incidents Organisations must Report and how to do it](https://pera-prometheus.com/breach-report-recover-what-security-incidents-organisations-must-report-and-how-to-do-it/): Key Takeaways: When a security incident occurs, the instinct in many organisations is to delay, assess whether the magnitude of the incident and then judge whether or not to report the incident. This procrastination is itself a compliance failure. ISN 2025/03, issued by the Ministry of Defence in May 2025, removes any ambiguity. Defence suppliers are obligated to report all security incidents promptly. This blog sets out what that […]
- [Cyber Essentials vs Cyber Essentials Plus: Which One Does Your Business Actually Need?](https://pera-prometheus.com/cyber-essentials-vs-cyber-essentials-plus-which-one-does-your-business-actually-need/): Key Takeaways Most UK businesses that ask about Cyber Essentials already know they need it. What is not always clear is which level is needed. The answer is invariably driven by contractual expectation but it can also depend on who you’re supplying. This guide explains what separates the two levels, what each involves, and which […]
- [Under CSM v4, Cyber Essentials is Non-Negotiable ](https://pera-prometheus.com/under-csm-v4-cyber-essentials-is-non-negotiable/): Key Takeaways There is a persistent misconception across the UK defence supply chain that the Cyber Security Model (CSM v4) has replaced Cyber Essentials. It hasn’t. Since CSM v4 became mandatory in December 2025, some defence SMEs have quietly dropped their Cyber Essentials renewals on the assumption that the new framework covers the same ground. That assumption costs […]
- [FSC and the Defence Supply Chain: When It Applies to Subcontractors and What You Must Get Right ](https://pera-prometheus.com/fsc-subcontractors-defence-supply-chain/): Key Takeaways Before a Defence Supplier enters preliminary discussions, collaborates with, or places a subcontract with a Third-Party Defence Supplier for work involving material classified SECRET or above the MOD Delivery/Project Team must be consulted. This is achieved through the completion of a Form 1686 (F1686). The F1686 has two functions, it ensures that the […]
- [MOD Formally Confirms DCC as Proof of DEFCON 658 Conformance](https://pera-prometheus.com/mod-formally-confirms-dcc-as-proof-of-defcon-658-conformance/): Gareth Shaw, MD Pera Prometheus Key Takeaways Defence Cyber Certification (DCC) launched in May 2025, but its validity as proof of conformance with the Cyber Security Model (CSM) was not formally acknowledged by MOD until now (30 Mar 2026). In addition, there has been a degree of confusion as to the scope and breadth of […]
- [No Framework, No Safety: Information Security and Cyber Resilience for UK SMEs](https://pera-prometheus.com/no-framework-no-safety-information-security-and-cyber-resilience-for-uk-smes/): Key Takeaways Most businesses have some form of information and cybersecurity in place. Antivirus software, reasonably strong passwords, maybe a firewall. The problem is that having a handful of tools is not the same as having a plan. Without something to connect them, a framework, you end up with security that covers the obvious things […]
- [IPSA Is Not an HR Process, It’s Your First Line of Defence Against Insider Threat](https://pera-prometheus.com/ipsa-is-not-an-hr-process-its-your-first-line-of-defence-against-insider-threat/): Key Takeaways Picture this. A small defence contractor spends months earning their IPSA (Industry Personnel Security Assurance) accreditation. The processes in the PRF have been accepted by the Industry Security Assurance Centre (The Authority) and you can now manage your own security clearances. Then, twelve months later, a member of staff with security clearance leaves […]
- [ISO 27001 Checklist: Giving Information Assurance to potential Clients](https://pera-prometheus.com/https-pera-prometheus-com-iso-27001-checklist/): ISO 27001 is the internationally recognised standard for Information Security Management Systems (ISMS). In the defence supply chain, it can carry particular weight because the information you handle, technical drawings, project timelines, personnel data, classified correspondence etc. often have implications that go well beyond your own organisation. Your clients need to have confidence your business […]
- [Your Most Frequently Asked Questions Surrounding Cyber Essentials and the Upcoming Question Set Changes](https://pera-prometheus.com/your-most-frequently-asked-questions-surrounding-cyber-essentials-and-the-upcoming-question-set-changes/): As an IASME approved Certification Body for Cyber Essentials and Cyber Essentials Plus, Pera Prometheus has a duty to demystify the confusion surrounding scheme changes and ensure that the businesses we work with are always informed, prepared, and ahead of the curve. From the 27th of April 2026, all new Cyber Essentials assessments will be […]
- [Lock the Door” - Why the UK Government's New Cyber Security Campaign Is a Wake-Up Call](https://pera-prometheus.com/lock-the-door-why-the-uk-governments-new-cyber-security-campaign-is-a-wake-up-call/): Key Takeaways Imagine leaving the front door of your business wide open every single day. No lock, no alarm, no one watching. That is, in effect, what thousands of UK businesses are doing on-line, and cyber criminals are walking straight in. The UK government has had enough. In early 2026, the Department for Science, Innovation […]
- [Cyber Essentials is Changing in April 2026: Is Your Organisation Ready?](https://pera-prometheus.com/cyber-essentials-is-changing-in-april-2026/): Key Takeaways Cyber Essentials has always been more than a box-ticking exercise. For organisations working within the UK Defence supply chain, it is a baseline contractual requirement and one of the first things a procurement team will check before a contract is awarded. But the scheme is not static. From 27 April 2026, a new […]
- [IPSA Requirements Explained: What MOD Contractors Must Demonstrate](https://pera-prometheus.com/ipsa-requirements-explained-what-mod-contractors-must-demonstrate/): Key Takeaways • People First: IPSA (Industry Personnel Security Assurance) focuses on the management and aftercare of vetted staff, distinct from physical security. • Mandatory Roles: You must appoint a Board Level Contact (BLC) and a Personnel Security Controller (PSC). • Prerequisite for FSC: If you require Facility Security Clearance to store assets, you must […]
- [CSM Version 4 Explained: What Defence Suppliers Need to Know in 2026](https://pera-prometheus.com/csm-version-4-explained-what-defence-suppliers-need-to-know-in-2026/): For defence suppliers, the landscape of cyber and supply chain security has shifted significantly. With the formal implementation of the Cyber Security Model version 4 (CSM v4), the Ministry of Defence (MOD) has moved away from temporary interim measures to a robust, risk managed evidence-based regime. If your organisation is part of the UK defence […]
- [Facility Security Clearance: What It Is and When Your Organisation Needs It](https://pera-prometheus.com/facility-security-clearance-what-it-is-and-when-your-organisation-needs-it/): If you are navigating the UK defence supply chain in 2026, you have likely encountered a wall of acronyms. Among the most critical and often the most misunderstood is Facility Security Clearance (FSC), still often referred to as ‘List X’, which was the forerunner to FSC. For many suppliers, FSC is the key that allows […]
- [Why Business Impact Analysis and Gap Analysis are the Most Cost-Effective First Steps for Defence Compliance](https://pera-prometheus.com/why-business-impact-analysis-and-gap-analysis-are-the-most-cost-effective-first-steps-for-defence-compliance/): The UK defence sector is currently experiencing a period of intense activity. With the Ministry of Defence (MoD) committing to a sustained increase in spending to 2.6% of GDP by 2027, the opportunities for Small and Medium Enterprises (SMEs) are significant. However, for many business owners I speak with, this opportunity is accompanied by a […]
- [Preparing for DCC: A Step-By-Step Readiness Roadmap](https://pera-prometheus.com/preparing-for-dcc-a-step-by-step-readiness-roadmap/): IASME’s Defence Cyber Certification (DCC) was announced in May 2025, a certification scheme established by IASME with deep collaboration with UK MOD. Whereas previously it was not possible for a commercial organisation to meet MOD information assurance and supply chain resilience requirements until a contract had been put in place and the Cyber Security Model […]
- [Role of a Fractional Security Manager in the UK Defence Supply Chain](https://pera-prometheus.com/role-of-a-fractional-security-manager-in-the-uk-defence-supply-chain/): Key Take Aways: The UK Defence supply chain is complex and reliant upon many Small and Medium sized Enterprises (SMEs). In response to global tensions and increased capabilities and resources available to modern threat actors, SME’s have a growing responsibility to strengthen their defensive capabilities and security posture to protect the sensitive information they hold. […]
- [How a Security Management Plan can Prepare Defence SMEs?](https://pera-prometheus.com/security-management-plan-smes/): Working with the Ministry of Defence (MOD) is an exciting prospect for any growing businesses. Small and Medium-sized Enterprises (SMEs) make up about 95% of major UK Defence trade bodies, forming the essential foundation of national security. However, stepping into this sector means shifting from standard commercial habits, to a more disciplined and robust security […]
- [What Are the Most Common Pitfalls in Defence Cybersecurity and Resilience; How to Avoid Them?](https://pera-prometheus.com/defence-cybersecurity-and-resilience-pitfalls/): Defence cybersecurity and resilience is now a core expectation and contractual requirement, for any organisation working with or supporting the UK defence industry. The Ministry of Defence’s (MOD) DEFCON 658 (Cyber Flowdown) and the Cyber Security Model (CSM) set out how cyber risk should be assessed and managed across defence contracts, while broader best practice […]
- [Is BPSS the same as a Security Clearance? A Guide for HMG and Defence SMEs](https://pera-prometheus.com/is-bpss-the-same-as-a-security-clearance-a-guide-for-hmg-and-defence-smes/): If you run any type of business that operates, delivers services to, or bids within the HMG or MOD environment, you have almost certainly asked this question at least once: “Is BPSS actually a security clearance?” The short answer is NO and getting this wrong can cost you contracts, delay onboarding, or even land you […]
- [Business Impact Analysis: Aligning Information Assurance with Operational Risk enabling Secure Decision-Making](https://pera-prometheus.com/business-impact-analysis-aligning-information-assurance-with-operational-risk-enabling-secure-decision-making/): What would happen to your business if you lost access to your critical information or customer data for just 72 hrs? For most UK Small and Medium Enterprises (SMEs) in defence, aerospace, or professional services, the answer is lost revenue, damaged reputation, and possible exclusion from government contracts. Yet many business owners still treat information […]
- [The Role of FSC in Protecting Classified Defence Data](https://pera-prometheus.com/the-role-of-fsc-in-protecting-classified-defence-data/): In the defence environment, a place where cutting-edge technology often intersects with national security, protecting classified information is paramount. From advanced weapon systems to strategic intelligence, the data driving these projects is a prime target for sabotage and espionage. The UK’s ability to protect its national interests and those of its allies depends on maintaining […]
- [Secure by Design: Embedding Resilience into Defence Supply Chains](https://pera-prometheus.com/secure-by-design-embedding-resilience-into-defence-supply-chains/): Secure by Design (SbD) applies to the definition, acquisition, development, maintenance and disposal of information-based capabilities for MOD. This includes but is not limited to networks, applications, services, information technology, operational technology, platforms and weapons systems. In essence, Secure by Design is about delivering secure Products, Services and Solutions (PSS) which are fit for purpose […]
- [From DCC to FSC: Navigating Defence Cyber Compliance Frameworks](https://pera-prometheus.com/from-dcc-to-fsc-navigating-defence-cyber-compliance-frameworks/): – Gareth Shaw, MD Pera Prometheus For many small and medium sized businesses, working with the UK Ministry of Defence (MOD) can open valuable opportunities. Supplying goods or services to defence contracts can raise your profile, strengthen partnerships, and increase credibility. However, it also means that businesses will need to meet the security standard set […]
- [Understanding DEFSTAN 05-138: Are you ready for Issue 4?](https://pera-prometheus.com/understanding-defstan-05-138-are-you-ready-for-issue-4/): – Gareth Shaw, MD Pera Prometheus For UK small and medium-sized enterprises (SMEs) working in the defence sector, staying ahead of information assurance and cybersecurity requirements is essential to securing contracts and protecting sensitive operations. The UK Ministry of Defence (MOD) has recognised that a single weak link in its supply chain can expose critical […]
- [Data Residency vs Data Sovereignty – Do You Know the Difference?](https://pera-prometheus.com/data-residency-vs-data-sovereignty-do-you-know-the-difference/): – Gareth Shaw, MD Pera Prometheus Data is the raw resource that, once structured, contextualised, analysed and interpreted leads to valuable information and intelligence. Without data, there is no digital advantage. Today’s digital economy runs entirely on data, which is precisely why concepts such as data residency and data sovereignty have become so important. As […]
- [Cybersecurity Compliance: Navigating the Maze of Regulations](https://pera-prometheus.com/cybersecurity-compliance-navigating-the-maze-of-regulations/): – Gareth Shaw, MD Pera Prometheus Cybersecurity regulations can feel overwhelming for UK businesses, from small enterprises to defence sector partners. With rising cyber threats and mounting compliance requirements, the stakes are high, but this guide simplifies the journey. It explains key frameworks like GDPR, ISO 27001, Cyber Essentials, Defence Cyber Certifications and NIS (Network […]
- [Cybersecurity Myths That Are Putting Your Business at Risk](https://pera-prometheus.com/cybersecurity-myths-that-are-putting-your-business-at-risk/): – Gareth Shaw, MD Pera Prometheus Have you ever thought that “it won’t happen to me” when it comes to cyberattacks? In 2024-25, UK businesses are being hit harder than ever. The UK Government’s Cyber Security Breaches Survey 2025 found that phishing remains the most common cyber crime, with an estimated 8.58 million cyber crimes […]
- [The Expanding Attack Surface: IoT, 5G, and Remote Work](https://pera-prometheus.com/the-expanding-attack-surface-iot-5g-and-remote-work/): – Gareth Shaw, MD Pera Prometheus As a security consultant working with UK businesses, particularly in the defence industry, I’ve seen how technology is transforming the way we do business operations at a staggering pace. The rise of the Internet of Things (IoT), 5G networks, and remote work has revolutionised operations but also opened new […]
- [The Human Firewall: Why Employee Training Is Your First Line of Defence](https://pera-prometheus.com/the-human-firewall-why-employee-training-is-your-first-line-of-defence/): – Gareth Shaw, MD Pera Prometheus Throughout my military career and now as a security consultant, I’ve witnessed the relentless evolution of information and cyber threats. While technology has advanced, bringing sophisticated defences to counter increasingly complex attacks, one vulnerability remains constant: the human element. For businesses in the UK Defence Industry supply chain, employees […]
- [Security challenges for the industry partners working with MOD on AI projects — My thoughts](https://pera-prometheus.com/security-challenges-for-the-industry-partners-working-with-mod-on-ai-projects-my-thoughts/): – Gareth Shaw, MD Pera Prometheus Artificial Intelligence (AI) is no longer just a research topic for the UK Ministry of Defence (MOD). It is beginning to be embedded into live programmes that analyse intelligence at scale, optimise logistics, and support complex decision-making. The Defence Artificial Intelligence Strategy (2022) sets the ambitions to leverage AI […]
- [Implementing Information and Cyber Security Governance for Small and Medium Enterprises (SMEs)](https://pera-prometheus.com/implementing-information-and-cyber-security-governance-for-small-and-medium-enterprises-smes/): Key Takeaways Why Cyber Security Governance Matters When people hear “information and cyber security governance”, it often sounds like something designed for giant corporations with entire IT departments at their disposal. For Small and Medium Enterprises (SMEs), the prospect of introducing your own security and governance systems and processes can feel intimidating, potentially expensive, and […]
- [Ransomware‑as‑a‑Service (RaaS): Every Business is a Target](https://pera-prometheus.com/ransomware%e2%80%91as%e2%80%91a%e2%80%91service-raas-every-business-is-a-target/): By Gareth Shaw, Managing Director, Pera Prometheus The Growing Threat of RaaS Ransomware is a type of malware designed to either steal data from a system, or deny access by locking users out of their data until a ransom is paid. Once deployed, software will either attempt to export or encrypt (or both) critical data, […]
- [Information and Cybersecurity Certifications: Which One Do You Need ](https://pera-prometheus.com/information-and-cybersecurity-certifications-which-one-do-you-need/): By Gareth Shaw, Managing Director, Pera Prometheus I understand that the sheer number of information and cybersecurity certifications available to businesses can be overwhelming, but each certificate does actually lend itself to certain requirements and add value. The challenge is – How do you choose which certificate, or more likely, which certificates, are best suited […]
- [The Benefits of Security Within Your Business ](https://pera-prometheus.com/the-benefits-of-security-within-your-business/): As a business owner, you might view comprehensive security measures as a costly, complex, or even unnecessary expense. Why invest in something that seems like a “just in case” precaution when profits and growth are your focus? You might also be thinking “I know security is important but I don’t know where to start and […]
- [Passkeys: Your Simple, Secure Path to a Password-Free Future ](https://pera-prometheus.com/passkeys-your-simple-secure-path-to-a-password-free-future/): – By Gareth Shaw, Managing Director, Pera Prometheus For non-technical leaders and small to medium enterprise (SME) owners, navigating the complexities of information & cybersecurity can feel daunting. Passwords have been the default way of protecting online accounts, but recently their reliability faces increasing challenges leaving businesses vulnerable. To counter it, Passkeys emerged, a modern, […]
- [Facility Security Clearance (FSC): Your Top Questions Answered](https://pera-prometheus.com/facility-security-clearance-fsc-your-top-questions-answered/): – by Gareth Shaw, Founder of Pera Prometheus It is useful for any company aiming to work with the UK Ministry of Defence (MOD), or other sensitive UK Government Departments, to understand the definition and requirements of Facility Security Clearance (FSC). FSC accreditation assures Contracting Authorities that your Organisation is capable of supporting high-value contracts […]
- [Choosing the Right Security Consultant to Meet Defence Assurance Standards](https://pera-prometheus.com/choosing-the-right-security-consultant-to-meet-defence-assurance-standards/): The defence industry operates in a world where security isn’t just a priority, it’s the foundation of every operation. To ensure this, the UK Ministry of Defence (MOD) and other sensitive government entities require strict security conformance from businesses aiming to work with them. The modern supply chain’s complexity, with the defence industry’s reliance on […]
- [ISO/IEC 42001:2023 – Framework for Artificial Intelligence Management Systems (AIMS)](https://pera-prometheus.com/iso-iec-420012023-framework-for-artificial-intelligence-management-systems-aims/): by Gareth Shaw, Founder of Pera Prometheus Introduction Artificial Intelligence (AI) is transforming industries, from defence to healthcare, by driving innovation in automation, analytics, and decision-making. However, as AI adoption surges, so do concerns about the security implications of incorporating AI into the working environment. The ISO/IEC 42001:2023 standard has emerged as the first globally […]
- [Countering Social Engineering in the Defence Industry ](https://pera-prometheus.com/countering-social-engineering-in-the-defence-industry/): In May 2024, the UK Ministry of Defence (MOD) faced a significant social engineering attack targeting its payroll system, compromising the sensitive data of up to 270,000 serving personnel, reservists, and veterans. This exposed personal identifiable information, including names, bank details, and some addresses. Attackers, believed to be state sponsored, exploited a third-party contractor’s system […]
- [Security and Business Resilience through Awareness](https://pera-prometheus.com/security-and-business-resilience-through-awareness/): Security threats are not limited to the cyber environment, but it is certainly appealing to threat actors and one of the rising concerns for Industry and Governments due to the large attack surface the prevalence of digitisation has created. The threat is not just a cause of concern to the Industry Primes and larger companies […]
- [Physical Security](https://pera-prometheus.com/physical-security/): Key Takeaway Points Why Physical Security Still Matters? It’s easy to get caught up in the furore of cybersecurity which, in light of recent media updates seems to be at the forefront of everyone’s attention. However, physical security is just as crucial, and businesses should bear in mind that the two areas are very much […]
- [Defence Cyber Certification (DCC)](https://pera-prometheus.com/defence-cyber-certification-dcc/): What is DCC? The complexity of cyber security threats are particularly affecting critical sectors like the defence industry. Consequently the UK Ministry of Defence has partnered with Information Assurance for Small and Medium Enterprise (IASME) and launched the new comprehensive, cyber security certification framework for UK defence suppliers; the Defence Cyber Certification (DCC). The DCC […]
- [Defence Industry Related Frequently Asked Questions (FAQs)](https://pera-prometheus.com/defence-industry-related-frequently-asked-questions-faqs/): What is Facility Security Clearance (FSC)? Facility Security Clearance (FSC) is an accreditation that confirms an organisation can safeguard UK government assets classified as SECRET or above, or International Partners’ assets classified CONFIDENTIAL or above (hereafter referred to as ‘classified above OFFICIAL’), held on their premises. Read more: Facility Security Clearance (FSC) How do you […]
- [Site Co-ordinating Infrastructure Design Authority (SCIDA) Services](https://pera-prometheus.com/site-co-ordinating-infrastructure-design-authority-scida-services/): by Gareth Shaw, Founder of Pera Prometheus If your organisation is involved in communications or IT infrastructure for the UK Ministry of Defence (MOD), you’ve likely come across the term SCIDA—the Site Coordinating Infrastructure Design Authority. It is a critical part of how infrastructure work is reviewed, approved, and delivered on MOD sites. According to the […]
- [Facility Security Clearance (FSC)](https://pera-prometheus.com/facility-security-clearance-fsc/): by Gareth Shaw, Founder of Pera Prometheus It is useful for any company aiming to work with the UK Ministry of Defence (MOD), or other sensitive UK Government Departments, to understand the definition and requirements of Facility Security Clearance (FSC). FSC accreditation assures Contracting Authorities that your Organisation is capable of supporting high-value contracts that […]
- [Industry Personnel Security Assurance in the UK Defence Industry](https://pera-prometheus.com/industry-personnel-security-assurance-in-the-uk-defence-industry/): By Gareth Shaw, Founder, Pera Prometheus As part of our ongoing blog series on information and cybersecurity within the UK Defence Industry, we’ve previously explored the DEFSTAN 05-138 & Cyber Security Model and Secure by Design. These frameworks focus on securing information systems and data throughout the supply chain. Now, we turn our attention to […]
- [Secure by Design](https://pera-prometheus.com/secure-by-design/): –Gareth Shaw, Founder of Pera Prometheus Consulting Ltd If your business is hoping to fulfil a contract in the Defence Industry you will need to understand the information assurance requirements of HMG and, more specifically MOD. Last week’s blog discussed DEFSTAN 05-138, now let us consider Secure by Design. Since the founding of Pera Prometheus, we […]
- [Cyber Security Model & DEFSTAN 05-138 in Defence Industry](https://pera-prometheus.com/cyber-security-model-defstan-05-138-in-defence-industry/): Gareth Shaw, Founder of Pera Prometheus Consulting Ltd Securing contracts with the UK Ministry of Defence (MOD) offers significant opportunities for businesses within the Defence Industry. However, understanding and adhering to the MOD’s information and cyber security requirements are essential for successfully securing and maintaining these contracts. UK Defence Industry operates in a high-stakes environment where […]
- [Governance Risk and Compliance in Information and Cyber Security: A Simple Guide](https://pera-prometheus.com/governance-risk-and-compliance-in-information-and-cyber-security-a-simple-guide/): –Gareth Shaw, Founder of Pera Prometheus Consulting Ltd My career has always revolved around keeping information safe. Now, as the founder of Pera Prometheus Consulting, I help organisations protect their valuable reputations and data. Today, I want to share some insights on Governance, Risk, and Compliance (GRC) in the UK, focusing on information and cyber […]
- [Penetration Testing as a Service](https://pera-prometheus.com/penetration-testing-as-a-service/): By Gareth Shaw, Founder of Pera Prometheus Consulting Ltd. At Pera Prometheus Consulting Ltd, we are dedicated to helping businesses stay secure in a world where threats evolve daily, both online and in the physical realm. I am proud to lead a team that offers penetration testing services designed to pinpoint vulnerabilities and reinforce your […]
- [Security as a Service - Fractional Ciso And Security Managers](https://pera-prometheus.com/security-as-a-service-fractional-ciso-and-security-manager/): At Pera Prometheus, we understand the evolving challenges businesses face in securing their digital assets. Maintaining information security is becoming more challenging as threats continue to evolve, become more sophisticated. Not all businesses have the resources to attain an in-house security team who will ensure that your business is protected and that you are meeting […]
- [Incident Management in Information and Cyber Security](https://pera-prometheus.com/incident-management-in-information-and-cyber-security/): Introduction No defence is 100% guaranteed and at the early stages of an organisation’s information and cybersecurity roadmap all are vulnerable but, knowing how to respond to an incident can minimise its impact. An organisation that responds well to an incident may be viewed positively by external observers. This is why effective incident management processes […]
- [Everyone Matters in Staying Safe and Compliant- The Critical Role of Information and Cyber Security Awareness and Training](https://pera-prometheus.com/everyone-matters-in-staying-safe-and-compliant-the-critical-role-of-information-and-cyber-security-awareness-and-training/): As founder of Pera Prometheus, I’ve encountered businesses of all sizes, each with varying degrees of security awareness. One common issue I often see is the confusion between Information Security and Cyber Security. While they are closely related, they are not the same thing, in fact Cyber Security is an element of Information Security. However, […]
- [Insider Risk Threat: Strengthening Your Organisation’s Defences](https://pera-prometheus.com/insider-risk-threat-strengthening-your-organisations-defences/): Information and cyber threats are an ever-present danger to organisations, and while external attacks from hackers and malware often make the news, one of the most damaging risks comes from within—“Insider threats.” Whether intentional or unintentional, these threats can significantly impact business operations, data security, and an organisation’s reputation. Understanding Insider Threats An insider threat […]
- [Business Impact Analysis: Building Resilience in Uncertain Times](https://pera-prometheus.com/business-impact-analysis-building-resilience-in-uncertain-times/): Businesses must prepare for possible disruptions in the near or distant future as there is uncertainty everywhere in today’s digital economy. Continuing to operate during disruption and restoring to normal service is a huge challenge for today’s digital bound organisation and it requires forward planning. This forward-thinking approach is the foundation of Business Impact Analysis […]
- [Tackling Ransomware: Government's New Proposals to Protect the UK Government's Proposal](https://pera-prometheus.com/tackling-ransomware-governments-new-proposals-to-protect-the-uk-governments-proposal/): The UK government has recently announced a public consultation seeking views on three proposals aimed at striking a significant blow to the ransomware criminal business model. As outlined by the National Cyber Security Centre (NCSC), the consultation will consider three proposals: The ultimate goal is to protect UK CNI and the broader economy from the […]
- [NCSC Guidance: Building Resilient Operational Technology with Secure by Demand and Secure by Design Principles](https://pera-prometheus.com/ncsc-guidance-building-resilient-operational-technology-with-secure-by-demand-and-secure-by-design-principles/): Imagine trying to secure your home with a state-of-the-art alarm system while leaving a window open. This is the reality for many organisations today when it comes to their Operational Technology (OT) networks. Hackers have identified this gap and are increasingly exploiting OT systems, which are essential to industries such as energy, manufacturing, and transportation. […]
- [UK and EU Cybersecurity Legislation for 2025](https://pera-prometheus.com/uk-and-eu-cybersecurity-legislation-for-2025/): 2025 is shaping up to be a pivotal year for cybersecurity compliance in the UK and the EU. Businesses must prepare to align with new regulations designed to counter the evolving cyber threat landscape. With stricter requirements on the horizon, it’s essential to understand what these changes mean and how they will impact your operations. […]
- [Netflix Fined for Data Privacy Violation: A Warning for Data-Driven Businesses](https://pera-prometheus.com/netflix-fined-for-data-privacy-violation-a-warning-for-data-driven-businesses/): Recent headlines have highlighted a significant privacy violation involving Netflix, resulting in a €4.75 million fine by the Dutch Data Protection Authority (DPA). The issue stemmed from Netflix’s failure to provide clear and sufficient information about how users’ personal data was processed between 2018 and 2020. The investigation revealed vague explanations of data use, sharing […]
- [The Widening Gap Between UK Cyber Risks and Preparedness: A Risk that Concerns the Nation's Cyber Security Chief](https://pera-prometheus.com/the-widening-gap-between-uk-cyber-risks-and-preparedness-a-risk-that-concerns-the-nations-cyber-security-chief/): Richard Horne, the head of the UK’s National Cyber Security Centre (NCSC), warned that the threats to the UK are wildly underestimated by both individuals and organisations. He stated that a sharp rise in severe cyber incidents, including attacks on healthcare, transportation, and other critical sectors, has become more frequent, sophisticated, and intense, as highlighted […]
- [The End of Passwords: Why Businesses Must Embrace Passkeys for Cybersecurity](https://pera-prometheus.com/the-end-of-passwords-why-businesses-must-embrace-passkeys-for-cybersecurity/): Microsoft recently announced its intention to eliminate passwords for over a billion users worldwide, marking a pivotal shift toward secure, passwordless authentication. In light of this, businesses need to recognise the importance of modernising their security systems, as traditional passwords are no longer sufficient to combat evolving cyber threats. In 2024, password breaches surged by […]
- [The Silent Danger: Prolonged Cyber Attacks and Business Vulnerabilities](https://pera-prometheus.com/the-silent-danger-prolonged-cyber-attacks-and-business-vulnerabilities/): When most of us think about cyberattacks, we imagine sudden, chaotic events; a Company’s systems crashing, customer data being stolen, or ransomware demanding payment overnight. However, some of the most effective cyber threats are conducted by stealth, operating in the shadows for months without detection. These forms of attacks are often motivated by more capable […]
- [Chinese Researchers Claim Military Grade Encryption Broken by Quantum Computer: Challenges For The Current Cryptographic System.](https://pera-prometheus.com/chinese-researchers-claim-military-grade-encryption-broken-by-quantum-computer-challenges-for-the-current-cryptographic-system/): The Claim In the recent news, chinese researchers claim to have used a D-Wave Advantage quantum computer to break specific encryption algorithms based on the Substitution-Permutation Network (SPN), a common structure in encryption. SPNs secure data by repeatedly substituting (replacing) and permuting (reordering) parts of it, and they are foundational to widely used encryption systems […]
- [Over 2000 Palo Alto Network Firewalls Compromised in Recent Cyberattack – Businesses Be-aware!](https://pera-prometheus.com/over-2000-palo-alto-network-firewalls-compromised-in-recent-cyberattack-businesses-be-aware/): In a recent significant cyberattack, over 2000 Palo Alto Network firewalls have been compromised by attackers exploiting two recently patched vulnerabilities. Palo Alto provides cybersecurity services to enterprises, government and service providers. According to UK based Shadow server Foundation the number of breaches in US and India on Palo Alto network firewalls were in the […]
- [T-Mobile Suffers Another Cyberattack in a Series of Breaches](https://pera-prometheus.com/t-mobile-suffers-another-cyberattack-in-a-series-of-breaches/): On 15 Nov 2024, Wall Street Journal (WSJ) reported that T-Mobile has suffered from a recent cyberattack which has been linked to the Chinese state-sponsored hacking group called Salt Typhoon. The attackers exploited vulnerabilities in network infrastructure to access sensitive communication data. While the company claims no customer data was stolen, the breach has raised […]
- [A New Cyber Security Threat to IoT (Internet of Things) and Cloud Based Services Discovered](https://pera-prometheus.com/a-new-cyber-security-threat-to-iot-internet-of-things-and-cloud-based-services-discovered/): CloudSEK cybersecurity experts have recently discovered a significant threat with AndroxGh0st malware, which has now integrated the Mozi botnet to target IoT and cloud-based services. This combination expands AndroxGh0st’s reach, making it a powerful tool for cybercriminals to compromise various devices and networks, including cloud platforms like AWS and TwilioSendGrid. By merging with Mozi’s capabilities, […]
- [Social Engineering: Understanding Cybersecurity’s Human Element](https://pera-prometheus.com/social-engineering-understanding-cybersecuritys-human-element/): What is Social Engineering? Social engineering is among the most dangerous forms of cybersecurity attacks, often targeting psychological manipulation rather than technical systems. While advanced security systems protect software and hardware, these measures become ineffective when the human element is compromised. Social engineering is a cybersecurity concern for individuals and businesses alike, as it bypasses […]
- [How to Use Public Wi-Fi Safely: Top Security Tips & Common Risks](https://pera-prometheus.com/how-to-use-public-wi-fi-safely-top-security-tips-common-risks/): Internet is deeply ingrained in the way we interact and do business in the modern world. It is now a necessity and we expect to have internet connections everywhere we go. Hence, the availability of public Wi-Fi networks has also become essential, both in the UK and globally, millions rely on it daily for everything […]
- [How to Choose the Right Cybersecurity Consultant: 5 Things to Consider](https://pera-prometheus.com/how-to-choose-the-right-cybersecurity-consultant-5-things-to-consider/): Key Takeaways In the Defence industry, security is not merely a priority, it is the bedrock on which every operation is built. That is precisely why the UK Ministry of Defence (MOD) and Other Government Departments (OGD) demand strict security conformance, from any business that wants to work with them. The complexity of the modern […]
- [Information Security Management System (ISMS)](https://pera-prometheus.com/information-security-management-system-isms/): Information is one of the most valuable assets for any business. Whether its customer data, financial records, intellectual property, or confidential information, keeping this information secure is essential to maintaining trust and ensuring smooth business operations. However, managing the security of this information can be challenging, especially with the constant threats businesses face from cyber-attacks […]
- [Network Rail Wi-Fi Cyber Attack: What Happened and Why It Matters](https://pera-prometheus.com/network-rail-wi-fi-cyber-attack-what-happened-and-why-it-matters/): On 25 September 2024, a cyber security breach targeted the public Wi-Fi services at 19 major UK train stations, including London Euston, Manchester Piccadilly, Glasgow Central, and Birmingham New Street, which led to a temporary shutdown. The attack has been described as cyber vandalism, which appears to have been more of a system defacement than […]
- [Is your business safe from the increasing Software as a Service (SaaS) Attacks?](https://pera-prometheus.com/is-your-business-safe-from-the-increasing-software-as-a-service-saas-attacks/): Is your business safe from the increasing Software as a Service (SaaS) Attacks? If your company relies on cloud-based apps to manage day-to-day operations, you may unknowingly be sitting on a ticking time bomb. For many companies, it’s not a matter of if they’ll be attacked but when. Organisations utilising SaaS platforms to conduct their […]
- [An overview of the Cyber Assessment Framework for organisations for Enhanced Cybersecurity Resilience](https://pera-prometheus.com/an-overview-of-the-cyber-assessment-framework-for-organisations-for-enhanced-cybersecurity-resilience/): Why the necessity? In today’s digital age, cybersecurity is vital to keeping our Critical National Infrastructure (CNI) safe. The world today relies heavily on a well-functioning Network and Information System (NIS) which plays a vital role in our critical infrastructures like transport, energy supplies, logistics and healthcare. Time and time again, we have experienced numerous […]
- [NHS Ransomware Attack: Could a £6 Million Fine Have Been Prevented?](https://pera-prometheus.com/nhs-ransomware-attack-could-a-6-million-fine-have-been-prevented/): On 7 August, 2024, the Information Commissioner’s Office (ICO) announced a provisional £6 million fine for Advanced, a UK software provider for the NHS. This fine stems from initial findings that the company failed to adequately protect sensitive data, leading to major disruptions in NHS services. However, it’s important to note that these findings are […]
## Pages
- [DCC Level 0](https://pera-prometheus.com/dcc-level-0/): DCC Level 0 Your gateway to the UK Defence Supply Chain Achieve DCC Level 0 with expert guidance at every stage. We simplify Cyber Essentials, DCC evidence gathering and the assessment process, helping you certify efficiently and without unnecessary complexity Get Certified Contact Us Trusted by many brands What is DCC Level 0? Defence Cyber […]
- [Partner Reward Scheme](https://pera-prometheus.com/partner-reward-scheme/): New Partner Reward Scheme Success Starts Together with Our Partner Reward Scheme We believe in growing together A Partnership, Not Just a Transaction We believe in growing together, enabling our partners to benefit from the increasing demand for our certification services while building stronger, more meaningful relationships for the future Timely & Professional Delivering certifications to […]
- [The Intelligence Advantage](https://pera-prometheus.com/the-intelligence-advantage/)
- [Pricing](https://pera-prometheus.com/cyber-essentials-certification/pricing/): Home Page Pricing Transparent, fixed-fee packages designed around your organisation’s size — no hidden costs. Get in touch for a tailored quote. Supported VS Unsupported Supported Package Unsupported Package Feature Supported Package Unsupported Package Approach Expert-led, guided support throughout your certification journey Self-directed, streamlined process for confident users Best For Organisations wanting reassurance, clarity, and […]
- [Cyber Essentials and Cyber Essentials Plus](https://pera-prometheus.com/cyber-essentials-certification/cyber-essentials-and-cyber-essentials-plus/): Home Page Foundation What is Cyber Essentials ? Cyber Essentials and Cyber Essentials Plus are certifications that help organisations protect themselves against common cyber threats by implementing basic security controls Government-Backed Government-Backed Developed by the National Cyber Security Centre (NCSC), Cyber Essentials is widely recognised as a trusted standard across organisations of all types and […]
- [Cyber Essentials Certification](https://pera-prometheus.com/cyber-essentials-certification/): Cyber Essentials Certification Our experts guide you every step of the way, simplifying the process and strengthening your security so you achieve certification with confidence and ease. Partner Reward Scheme Pricing Trusted by many brands The Five Cyber Essential Control Every Cyber Essentials assessment covers five key areas — Pera Prometheus supports you through each […]
- [Cyber Security Model version 4 (CSM v4)](https://pera-prometheus.com/cyber-security-model-issue-4/): MOD Contracting X Stage 1 MOD Contracting – This is essentially the procurement stage where a suitable supplier is identified through a commercial tendering process to provide/deliver a Product, Service or Solution (PSS) MOD has a need for. As part of this process, a risk assessment is undertaken (A Risk Assessment Reference (RAR) number is […]
- [The Secure by Design Process](https://pera-prometheus.com/the-secure-by-design-process/): . Cyber Activity and Assurance Tracker (CAAT) X Stage 1 Cyber Activity and Assurance Tracker (CAAT) – This is where the Secure by Design approach, starts (What is Secure by Design?). It is useful to remember why Secure by Design is used to maintain focus and relevance through the development of Products, Services or Solutions […]
- [Process](https://pera-prometheus.com/process/): CSM V4 – The Flowdown Process Learn More The Secure by Design Process Learn More
- [HOME](https://pera-prometheus.com/home-2/): NO CRUMBS LEFT Peanut Crush X Peanut Crush Order Now Popup Title X cookies 1 Order Now Popup Title X cookies 1 Order Now Popup Title X cookies 1 Order Now GET THE COOKIES BAKED FRESH FAST DELIVERY Our Products Add to cart Arandos 3,90 € Add to cart Biscoff 3,90 € Add to cart Cheesecake 3,90 € […]
- [Multimedia](https://pera-prometheus.com/multimedia/): Playlist 28 Videos The Intelligence Advantage | Pera Prometheus 1:36 Are you truly secure or just complaint? 1:01 FAQ with Amy Osborne | Understanding Cyber Essentials 4:29 MOD’s ISN 2026/01 and ISN 2026/02 DCC Finally Acknowledged for Defence Suppliers 11:14 why Business Impact Analysis is essential for understanding 2:51 Information Security vs Cyber Security: What […]
- [Terms and Conditions](https://pera-prometheus.com/terms-and-conditions/): The small print in plain English. What is in these terms? These terms tell you the rules for using our website https://peraold.digigurkhas.com (our site). Who we are and how to contact us https://peraold.digigurkhas.com is a site operated by Pera Prometheus Consulting Ltd. We are registered in England and Wales under company number 12837340 and have […]
- [Cookies](https://pera-prometheus.com/cookies/): Providing a better user experience We use cookies on our website. A cookie is a small text file that is placed on your computer to help the site provide a better user experience. Generally, we use cookies to help us administer this website and to improve the website’s usability. We may also use cookies to […]
- [Privacy Policy](https://pera-prometheus.com/privacy/): We take it seriously. Privacy matters, but it can be confusing. This page explains our approach to privacy and how it affects you. Short version We collect anonymous statistics about your visit, like which of our pages you viewed. Some third parties like Facebook may know you visited this website, if you use their services. […]
- [Meet The Team](https://pera-prometheus.com/teams/): Linkedin-in info@pera-prometheus.com Gareth Shaw Chief Executive Officer (CEO) During his impressive 23-year career in the British Army, Gareth was responsible for planning, deploying, sustaining, and assuring digital networks for the military. This experience led him to found Pera Prometheus in 2020, with a mission to provide tailored information and cybersecurity consulting services to both SMEs […]
- [Blogs](https://pera-prometheus.com/blogs/)
- [Certifications & Partners](https://pera-prometheus.com/certifications/): Certifications Membership Trusted by many brands
- [Defence Industry](https://pera-prometheus.com/services/defence-industry/): Our Services Navigating the specifics of UK MOD and other HMG Department Requirements Pera Prometheus recognise that when fulfilling UK Defence and OGD requirements, information and cyber security requirements may differ somewhat from your wider commercial experience. Pera Prometheus has consultants with extensive experience in the UK Military who are well versed in adapting your […]
- [Penetration Testing](https://pera-prometheus.com/services/penetration-testing/): Our Services Find your Vulnerabilities before the real Threat Actors Do Penetration Testing takes 2 forms; Physical Penetration Testing and Cyber Penetration Testing. Often referred to as Pen Tests they both ultimately improve security by conducting authorised simulated attacks used to identify weaknesses and vulnerabilities in an organisations security. Once identified, these vulnerabilities can by […]
- [Training and Awareness](https://pera-prometheus.com/training-and-awareness/): Home Page From globally recognised ISO Certifications to bespoke Awareness Scenarios and Training Packages Our Services Continually Improve your Information and Cyber Security Skillset Not all businesses want or need a full time CISO or Security Manager. It is also no secret that experienced security experts are in high demand and command high renumeration packages. […]
- [Information & Cyber Security Frameworks](https://pera-prometheus.com/services/information-cyber-security-frameworks/): Identify the appropriate Information and Cybersecurity Management Framework for your Business Our Services Selecting the Right Security Management Framework for your Business There are a whole range of Security Management Frameworks ranging from industry specific to globally applicable standards, which include: ISO27001 NIST NIST SP 800-53 NIST SP 800-171 GDPR CIS Controls Cyber Essentials CAF […]
- [Business Continuity and Incident Management](https://pera-prometheus.com/services/business-continuity-and-incident-management/): Ensure Business Continuity With Incident Management Solutions Adapted for Success Our Services Hope for the Best, Plan for the Worst and Expect to be Surprised None of us want to experience an information security incident or have to activate our Business Continuity Plans but the chances are that you will have to one day. To […]
- [Training and Awareness](https://pera-prometheus.com/services/training-and-awareness/): From globally recognised ISO Certifications to bespoke Awareness Scenarios and Training Packages Our Services Continually Improve your Information and Cyber Security Skillset It is widely accepted that heightened security awareness amongst your personnel can significantly enhance your information and cybersecurity defences. In fact, security awareness and incident management are the two areas that should be […]
- [Fractional Ciso And Security Managers](https://pera-prometheus.com/services/fractional-ciso-and-security-managers/): Benefit from Access to highly experienced Fractional CISOs and Security Managers on a Time and Scale that suits your Business Our Services Engage the Service of highly experienced Information and Cyber Security Experts Not all businesses want or need a full time CISO or Security Manager. It is also no secret that experienced security experts […]
- [Contact](https://pera-prometheus.com/contact/): Ready to take the next step? Contact us about your information security requirements. Facebook Instagram Linkedin Youtube
- [Governance Risk and Compliance](https://pera-prometheus.com/services/governance-risk-and-compliance/): Building Better Security Decisions Security incidents don’t happen because people forget the rules — they happen because attackers understand people better than people understand attackers. The Intelligence Advantage teaches leaders how threat actors think, operate and manipulate, so they can recognise targeting early and avoid becoming victims. Our Services Why TIA Matters and What Participants […]
- [Services](https://pera-prometheus.com/services/): Information Security Services for Dynamic Digital Protection Achieve optimal digital resilience and peace of mind, regardless of your industry At Pera Prometheus, we understand that one size doesn’t fit all when it comes to information security. That’s why we take a personalised approach to our services, tailoring each one to match your unique needs and […]
- [Overview](https://pera-prometheus.com/overview/): Information and Cybersecurity Explained Overview of Information Security What is Information Security? Information security is all about safeguarding sensitive information and data from unauthorised access, use, and potential harm. With data sharing and storage now an integral part of the world we live in, information security strategies are a non-negotiable component of any responsible organisation’s […]
- [About Us](https://pera-prometheus.com/about-us/): The people behind the company Achieve Information Security Excellence with the Pera Prometheus Advantage The Team Accreditations Personalised protection To safeguard your digital future Hoping to bridge the gap between complex compliance demands and your operational goals, our team is ready to help you navigate intricate regulations, develop custom strategies, and promote a culture of […]
- [Home](https://pera-prometheus.com/): Experts in advising the Defence Industry on safeguarding both their own and Ministry of Defence (MOD) information Our veteran information and cybersecurity consultants understand MOD requirements, as we have seen the challenges from both the Defence and Commercial side. From SMEs to Global organisations, Pera Prometheus can assist you in navigating the bespoke requirements of […]
- [Sample Page](https://pera-prometheus.com/sample-page/): This is an example page. It’s different from a blog post because it will stay in one place and will show up in your site navigation (in most themes). Most people start with an About page that introduces them to potential site visitors. It might say something like this: Hi there! I’m a bike messenger […]
## Optional
- [Agent (MCP protocol)](websites-agents.hostinger.com/pera-prometheus.com/mcp)
[comment]: # (Generated by Hostinger Tools Plugin)