The policies certification asks for, written — so you customise, not start from a blank page.
A library of cyber security policy templates — password management, access control, incident response, business continuity and more — written to align with SMB1001 and ready to customise with your company name and details.
They are the documented processes an assessor looks for, drafted by people who do this for a living rather than pulled from a generic template site.
SMB1001 is not only technical controls — it asks you to have written policies and to follow them. For most small businesses that paperwork is the part that stalls certification.
A policy you wrote from a blank page at 11pm is worth less than one drafted by practitioners and tailored to you. This gets you the second, quickly.
Written policies are required from SMB1001 Silver, and the policy library is included in every certification plan.
They are drafted to align with SMB1001 specifically and written by practitioners — but you still customise them to your business, which is exactly what an assessor expects.
Use the ones relevant to your business and your certification level. We guide you on which apply.
Backed by our 90-day money-back guarantee. If you're not happy, we refund everything you've paid.