Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Saturday, 6 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Bridewell Among First to Achieve Level 2 Defence Cyber Certification

by Guru Writer
April 21, 2026
in News
cyber defence
Share on FacebookShare on Twitter

Bridewell has become one of the first organisations to achieve Level 2 Defence Cyber Certification (DCC), marking a significant milestone in efforts to strengthen cyber security across the UK defence supply chain.

The Reading-based cyber security services provider is currently one of only two organisations accredited at this level, underscoring its role in supporting critical national infrastructure (CNI) and defence-sector organisations with robust security practices.

The DCC scheme, developed by the UK Ministry of Defence and delivered by IASME, aims to standardise cyber security requirements across the defence supply chain. By aligning with internationally recognised standards and existing best practices, the framework is designed to reduce administrative burden over time while ensuring suppliers can demonstrate consistent and verifiable security controls.

Level 2 certification represents a substantial achievement. Organisations must meet 139 controls and demonstrate a mature, proactive approach to cyber risk management. The level is intended for contracts with moderate to high cyber risk profiles, requiring strong protective measures alongside ongoing resilience against evolving threats.

Bridewell’s accreditation comes at a time when cyber attacks targeting defence organisations and their suppliers are increasing in both frequency and sophistication. The introduction of DCC is widely seen as a key step in improving supply chain assurance, helping to safeguard sensitive information, maintain operational continuity, and support national security.

Hannah Clarke-Dabson, Principal Consultant at Bridewell, described the certification as a “significant milestone” for the company and highlighted the broader industry impact of the scheme.

“The introduction of DCC provides a clear and structured approach to supply chain assurance,” she said. “We are proud to be among the first organisations to meet these requirements and to help drive higher standards across the ecosystem.”

The DCC framework consists of four levels, aligned to the cyber risk profile of defence contracts. Certification is valid for three years, with an annual attestation process, offering both assurance and stability for suppliers and their customers while reducing the need for repeated compliance exercises.

Bridewell has also been involved in the rollout of the scheme as an early certification body working alongside IASME and the Ministry of Defence. This experience positions the company to support organisations throughout the certification process, from initial gap analysis to ongoing compliance.

Clarke-Dabson added that DCC should be viewed as more than a compliance requirement.

“It is an opportunity for organisations to strengthen their resilience in a way that reflects the real-world threat landscape,” she said. “Our focus is on helping clients translate the framework into practical, effective security measures.”

With DCC expected to become an increasingly important requirement for suppliers working with the Ministry of Defence and prime contractors, early adoption could provide a competitive advantage. Bridewell’s achievement signals both its readiness to operate at this level and its capability to support others navigating the certification process.

ShareTweet
Previous Post

Forescout Uncovers New Security Risks in Widely Used Industrial Networking Devices

Next Post

CyberSmart Partners with Renaissance to Deliver Complete Cyber Confidence for SMEs

Recent News

Frontline Workers Twice as Likely to Use Unapproved AI

Frontline Workers Twice as Likely to Use Unapproved AI

June 4, 2026
Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
data-cloud-security

Building a Digital Fortress: Why Cyber Security Matters More Than Ever

June 5, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol