Cyber Security News and Advice
Making sense of Cyber Security for business owners

ISO 27001: Why It’s Not Just for Large Corporations
Many small and medium-sized businesses (SMBs) believe that ISO 27001 certification is something only large corporations need. After all, isn’t cybersecurity just an issue for massive enterprises with thousands of employees and deep pockets?
The truth is, cyber threats don’t discriminate based on company size. In fact, the latest NCSC Annual Review 2024confirms that smaller businesses are prime targets for cybercriminals, particularly those handling sensitive data or sitting in the supply chain.

ISO 27001 Beyond Certification: The Importance of Continuous Compliance
Achieving ISO 27001 certification is a significant milestone for any business—it demonstrates a commitment to protecting sensitive information and managing cybersecurity risks. However, many organisations make a critical mistake: they view certification as the finish line rather than the beginning of an ongoing process.
Cyber threats are not static, and compliance should not be either. Without continuous compliance, businesses risk falling out of certification, exposing themselves to security breaches, and damaging their reputation.

Cyber News - February 2025
In today’s interconnected digital landscape, the importance of robust cybersecurity measures cannot be overstated. Recent events have highlighted vulnerabilities that, if left unaddressed, can have severe repercussions for businesses of all sizes. This article delves into three significant incidents, elucidating their implications and offering actionable steps for business leaders to fortify their organisations against similar threats.

Cyber Security for Business Leaders - our new podcast
Understand the risks and implications of the latest cyber security news - summarised and explained for business leaders

Cyber Essentials for St James’s Place Partners
In today’s hyper-connected world, cybersecurity is no longer optional—it’s an essential foundation for business resilience and trust. Recognizing this, St. James’s Place (SJP) has mandated its partners to obtain Cyber Essentials certification, reinforcing their commitment to safeguarding sensitive information and ensuring regulatory compliance.

New Cyber Security obligations for Colleges
This summer the EFSA announced new Cyber Security rules that will apply to colleges and special post-16 institutions (SPIs) in England from the 2024-2025 funding year.


Compliance-as-a-Service: How Cool Waters Cyber Helps Businesses Achieve ISO 27001 Certification
In this case study, we will look at how Cool Waters Cyber helped two of its customers, MindCraft and Zappit, achieve ISO 27001 certification, and how this benefited their businesses.

Avoid death by PowerPoint! Try Cyber Coach instead
The Cyber Coach recording studio is up and running again this week to record new security awareness training videos for 2024. These videos are available to our clients on our bespoke Cyber Coach training platform

Firewalls: The ins and outs of this essential security control
Most people have heard of a Firewall, but what exactly is one, and what do they do?

Secure your success in 2024
Investing in cybersecurity with the Cyber Essentials scheme is not just about protecting your business; it's about positioning your small business for growth and success in the digital age. As you make your business resolutions for the New Year, consider adding Cyber Essentials to your list. It’s an affordable, effective way to ensure your business is secure, reputable, and ready for the opportunities ahead.

Breakdown of a scam
Here’s a breakdown of a type of complicated telephone scam used against vulnerable people

How Safe is LinkedIn? Be Aware What You Share
LinkedIn have a Sales Navigator feature called LinkedIn Smart Links, that cyber criminals have been abusing to bypass security features and provide malicious links to their targets in phishing messages.

ISO 27001 – Why should you want it?
ISO 27001 is the gold standard for information security frameworks and is increasingly becoming required as a part of contracts with large businesses. That being said, what exactly is it? And why would you want it? I’m here to tell you exactly that!

Cyber Criminals Are Constantly Adapting ... Are you?
Cyber criminals quickly react to changes in situation. How can you be sure that your business is protected, especially when the risks you’re facing could change suddenly due to a change in how the cyber criminals are operating?

What is a Cyber Advisor?
We are Cyber Advisors - helping small-medium sized firms improve their cyber security.

Responding to a Cyber Incident
Only 21% of businesses have a formal incident response plan for how to act when a cyber incident does occur. It’s all well and good to say you will take action following a cyber incident, but what actions will you take?

We’re recruiting
Doughnuts on your birthday is just one of the many benefits of working at Cool Waters Cyber as an apprentice

How to secure your charity
How to secure your charity and pick the right level of cyber security based on your size and the types of risk unique to your charity’s work

Solving the Cyber Skills Gap
Half of all UK organisations lack the basic cyber security skills to protect themselves according to a new government survey.