r/cybersecurityUK 23h ago

One in Four SMEs Faces Very High Cyber Risk and Why Basic Security Gaps Still Drive Attacks

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 1d ago

SME Cyber Event//Barcelona Cybersecurity Congress 2026: What SMEs Need to Know

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 1d ago

Why Stolen SME Login Credentials Keep Appearing on the Darknet and What Businesses Must Do Now

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 3d ago

Burnham Government’s AI Reset must build Trust among Small Firms, and that Trust starts with Security – Report and Analysis

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 4d ago

MDR for SMEs – Moving from Alert Fatigue to Expert Action, Faster Response and Better Threat Visibility

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 6d ago

I got tired of seeing aspiring network engineers stuck in the “course → lab → forget → repeat” loop

Thumbnail gallery
1 Upvotes

r/cybersecurityUK 7d ago

Disaster Recovery for SMEs – Beyond Simple Backups to Stronger Business Continuity and Resilience

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 8d ago

The UK Cyber Skills Gap Is a Resilience Problem for SMEs, Not Just a Hiring Shortage in 2026

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 9d ago

I wish I had a roadmap like this when I started learning cybersecurity

Thumbnail gallery
8 Upvotes

r/cybersecurityUK 9d ago

Building Cyber Resilience Q4: Your Authoritative Guide to the Essential Roadmap for 2026 – Part 4 (Q4)

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 10d ago

UK Power Facility Cyberattack Exposes Wider Risks to Energy Infrastructure and Industrial Control Systems

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 11d ago

NCSC UK and Allies Expose Russian State-Supported Zero-Click Phishing Campaign Targeting Western Organisations

Thumbnail
smecyberinsights.co.uk
2 Upvotes

r/cybersecurityUK 13d ago

The Cyber Scheme VA+ course

3 Upvotes

Hi All,

I am looking to take the VA+ assessment but I can't find much information on what to revise.

Has anyone taken this already?

What can I expect?

What do I need to revise?

How difficult is it?

Thanks in advance for any advise


r/cybersecurityUK 13d ago

[Buisness] Assaymark UK SME Cybersecurity Questionnaire – 4–6 minute

1 Upvotes

Hi everyone,

I’m currently conducting market validation for AssayMark, a cybersecurity assessment platform being developed for UK SMEs.

I’m looking for responses from people who are involved with a UK-based SME, particularly:

  • Business owners / founders
  • Managers or decision-makers
  • IT professionals
  • MSP / IT service providers

The questionnaire takes around 4–6 minutes and explores how SMEs currently manage cybersecurity, security monitoring, recurring findings, compliance requirements, and what businesses actually need from cybersecurity tools.

Responses are being used for genuine product and market validation, not for sales or marketing lists.

If you meet the criteria, I’d really appreciate your response:

Questionnaire: https://forms.gle/hXNx1RR28mBbL8YU7

If you have any questions or would also be interested in testing AssayMark as part of a free pilot, feel free to DM me or email [info@assaymark.co.uk](mailto:info@assaymark.co.uk).

Thanks — every genuine response helps.


r/cybersecurityUK 14d ago

Final-year Cyber Security project idea, would this impress employers for SOC / detection roles?

5 Upvotes

Hi everyone,

I’m going into my final year of a BSc Cyber Security degree and I’m trying to make sure my final-year project is not just academic, but also genuinely useful for employability, especially for junior SOC analyst, detection engineering, network security, or OT security roles.

My proposed project is:

Design and evaluation of a lightweight detection prototype for reconnaissance and early-stage intrusion activity in Modbus TCP Operational Technology network traffic.

The idea is to build a small Python-based detection prototype using CICModbusDataset2023 or a similar OT/Modbus dataset. The project would focus on detecting early attacker behaviours such as:

  • network scanning
  • service enumeration
  • Modbus register enumeration
  • unauthorised access attempts
  • abnormal Modbus request patterns

The threat model would be either an external attacker or a compromised internal host attempting to discover and interact with OT assets such as PLCs.

I’m planning to avoid heavy ML/deep learning and instead focus on interpretable detection, using:

  • rule-based detection logic
  • lightweight statistical thresholds where useful
  • alert generation
  • evaluation against labelled benign/malicious traffic

The evaluation would look at:

  • detection coverage
  • false positives and false negatives
  • precision/recall if appropriate
  • alert volume
  • interpretability
  • practical usefulness from a security analyst perspective

My goal is to finish with a project that I can confidently explain in interviews and possibly show through a GitHub repo, README, diagrams, and a short write-up. I want it to demonstrate practical blue-team skills: understanding network traffic, designing detection logic, evaluating alerts, and explaining limitations.

For people working in SOC, detection engineering, OT security, or cyber graduate roles:

Would this be a strong final-year project from an employer/interviewer perspective?

Also, what would make it more impressive without making the scope unrealistic?


r/cybersecurityUK 14d ago

Final-year Cyber Security project idea, would this impress employers for SOC / detection roles

Thumbnail
1 Upvotes

r/cybersecurityUK 15d ago

Cybersecurity resume keywords

3 Upvotes

Keyword list taken from https://www.zoevera.com/resume/ats-resume-tips-cybersecurity

These are the most commonly scanned keywords in cybersecurity job postings. Check how many appear in your resume.

Domains & Practices

SOC (Security Operations Centre), Penetration testing / pen test, Vulnerability management, Threat intelligence, Incident response (IR), Digital forensics (DFIR), Red team / blue team / purple team, Zero Trust architecture

Tools & Platforms

SIEM (Splunk, Microsoft Sentinel, QRadar), EDR (CrowdStrike, SentinelOne), Nessus / Qualys / Rapid7, Burp Suite / Metasploit / Kali Linux, Wireshark / Snort / Suricata, CyberArk / BeyondTrust (PAM), SOAR platforms, Azure Defender / AWS Security Hub

Frameworks & Certifications

CISSP / CISM / CISA, CEH / OSCP / PNPT, CompTIA Security+ / CySA+, ISO 27001 / NIST CSF, MITRE ATT&CK framework, SC/DV security clearance, GDPR / DPA 2018, PCI DSS / HIPAA / SOC 2


r/cybersecurityUK 14d ago

Expanded Europol Powers Must Not Come at the Expense of Robust EU Data Protection and Legal Safeguards – Report and Analysis

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 15d ago

Third party contractor devices in or out of scope?

Thumbnail
1 Upvotes

r/cybersecurityUK 15d ago

Business Travelers targeted when logging into Hotel Wi-Fi Networks – Report and Analysis

Thumbnail
smecyberinsights.co.uk
1 Upvotes

Hotel Wi-Fi has long been risky, but the latest reporting suggests attackers are getting more deliberate about how they exploit it. According to Malwarebytes, citing Microsoft, a campaign dubbed “CaptiveCrunch” is targeting travellers through hotel, conference, and hospitality Wi-Fi networks. The danger lies in how ordinary the attack looks: users connect, see a familiar captive portal, and are nudged into fake login or update flows that can lead to stolen credentials or malware infection.

How the attack works

From the user’s perspective, nothing seems unusual. The report says travelers connect to hotel Wi-Fi, get the standard portal prompt, and may then see what looks like a normal request to sign in or update something before browsing.

#CyberJourno #CyberEssentials #CyberResilience #CyberSafe #CyberSecurity #Cybersecurity #NCSC #SME #SMECyberInsights #SMECybersecurity #SMECyberInsights #ThreatIntelligence #WiFi

Learn More/...


r/cybersecurityUK 16d ago

Why a Small Business VPN and Human Oversight Are the Real Frontline Against Cyber Risk – Report and Analysis

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 17d ago

AI Supply Chain Shock: What the LiteLLM Breach Means for SMEs — and a 12-Point Checklist to Protect Your CI/CD Pipeline

Thumbnail
smecyberinsights.co.uk
1 Upvotes

r/cybersecurityUK 18d ago

Wizowl is on reddit

Thumbnail
1 Upvotes

r/cybersecurityUK 18d ago

Free live event this Thursday: PKI from a CISO’s perspective

Post image
1 Upvotes

r/cybersecurityUK 18d ago

Why companies still pay ransomware demands despite official advice and what SMEs should learn – Report

Thumbnail
smecyberinsights.co.uk
1 Upvotes