Who's behind this

About CAF Assessment

CAF Assessment is a service operated by CyPro Consulting Ltd with one remit: help government, defence and CNI suppliers meet their cyber assurance obligations against the NCSC Cyber Assessment Framework, and publish the indicative cost of doing so before anybody has to call.

This is consultancy, and CyPro Consulting Ltd delivers it. Our consultants run the internal gap analysis against the CAF, GovAssure or MOD Secure by Design bar that applies to you, write the remediation plan and roadmap, and work alongside your team implementing the controls that close the gaps. What sits outside our scope is any formal external assessment or audit: your own auditor, the reviewer appointed under GovAssure or a CHECK-accredited tester does that, once you are ready for them.

CyPro is a UK cyber security consultancy whose wider practice spans round-the-clock security operations, CREST-accredited penetration testing, incident response, virtual CISO cover and certification support. That bench matters here: the people on your engagement sit beside those who exploit the same weaknesses in authorised tests and clean up after them in real incidents, which keeps the findings grounded in what attackers actually do.

The relationship is stated plainly. This site is operated by CyPro, the programme names it references belong to the government schemes we work to rather than to us, and the consultants who scope your engagement are the ones who deliver it and stand behind it.

Accountable, by name

The CyPro partners behind the work

The CyPro partners who scope your engagement, put the consultants on it and answer for every report that leaves the building.

Jonny Pelter, Partner at CyPro

Jonny Pelter

Partner, CyPro

Jonny is a Founding Partner at CyPro and executive group level CISO who has worked closely with the British intelligence agencies NCSC and GCHQ.

  • CIPM
  • CIPP/E
  • CISSP
  • CISM
  • CRISC
  • ISO27001
  • Prince2
  • MSc
  • BSc
LinkedIn
Rob McBride, Partner at CyPro

Rob McBride

Partner, CyPro

Rob is a Founding Partner at CyPro and a highly experienced CISO. Beginning his career with a successful tenure at Deloitte, Rob has since amassed a wealth of experience, notably serving as a cyber security advisor to the UK government and spearheading cloud security transformations for several global banks.

  • CISSP
  • ACA Chartered Accountant
  • MPhil
  • BSc
  • SOC 2
  • ISO 27001
LinkedIn

Credentials held

  • CIPM
  • CIPP E
  • CISA
  • CISM
  • CISSP
  • CRISC
  • ISO 27001
  • Prince2

Organisations the team has worked with

az
bgi
british gas
cigna
deloitte
euroclear
jpm
kpmg
lme
m & g
ns & i
royal london
rsa
schroders
shell
ubs
virgin trains
william hill

The full CyPro picture

This site keeps to its lane: government and defence cyber assurance against the NCSC Cyber Assessment Framework. Penetration testing, incident response and everything else CyPro does lives at cypro.co.uk.

CyPro, the consultancy behind CAF Assessment
Rocket above the CAF Assessment call to action

Talk to us about your framework obligation

Find out what a CAF or GovAssure assessment involves for you

The scoping call is free, lasts 45 minutes and is taken by a consultant, not a salesperson. It covers which framework applies to you, the profile or stage you need to meet, and the indicative fixed-scope cost of the consultancy work to get you there.