SMB1001:2025

The global cyber security standard built for small and medium businesses

OVERVIEW

SMB1001:2025 is the first global cyber security standard created specifically for small and medium businesses (SMBs).

Unlike frameworks such as ISO 27001 or NIST CSF, which were designed with large enterprises in mind, SMB1001 is practical, outcome-focused, and tailored to the real-world risks SMBs face every day.

By adopting SMB1001, businesses can demonstrate a recognised level of cyber maturity, strengthen trust with customers and partners, and meet growing regulatory and insurance requirements.

The standard defines a baseline of essential controls across:

Identity and access management

Email security and phishing protection

Backup and business continuity

Patch and vulnerability management

Supplier and third-party risk management

Get Certified

Our SMB1001 Solutions:

SMBs are the most targeted organisations in today’s threat landscape, but often the least prepared.

With SMB1001 certification, you gain independent recognition of your cyber security posture and alignment with a trusted global benchmark for SMBs. 

You’ll reduce the risk of attack through practical, layered controls while also strengthening your compliance posture for contracts, tenders, and insurance. Most importantly, the certification sets you up for long-term resilience through a process of continuous improvement.

CyberGrape is a CyberCert-approved partner for SMB1001:2025. We help businesses:

Perform SMB1001 readiness assessments

Identify gaps against the SMB1001 framework

Build a prioritised roadmap for compliance

Provide ongoing governance and managed services aligned to SMB1001 controls

Support businesses through SMB1001 certification readiness and audits

With SMB1001, You’ll Gain

A clear, achievable framework for cyber security maturity

Recognition under a global standard designed for SMBs

Confidence with customers, partners, and insurers who need assurance of strong cyber practices

A stepping stone to ISO 27001 or other frameworks without unnecessary cost or complexity

Get recognised for doing cyber security right.

CyberGrape makes SMB1001 achievable, practical, and valuable for your business.