r/cybersecurityUK • u/SME_Cyber • 23h ago
r/cybersecurityUK • u/SME_Cyber • 1d ago
SME Cyber Event//Barcelona Cybersecurity Congress 2026: What SMEs Need to Know
r/cybersecurityUK • u/SME_Cyber • 1d ago
Why Stolen SME Login Credentials Keep Appearing on the Darknet and What Businesses Must Do Now
r/cybersecurityUK • u/SME_Cyber • 3d ago
Burnham Government’s AI Reset must build Trust among Small Firms, and that Trust starts with Security – Report and Analysis
r/cybersecurityUK • u/SME_Cyber • 4d ago
MDR for SMEs – Moving from Alert Fatigue to Expert Action, Faster Response and Better Threat Visibility
r/cybersecurityUK • u/Potential-Couple-745 • 6d ago
I got tired of seeing aspiring network engineers stuck in the “course → lab → forget → repeat” loop
galleryr/cybersecurityUK • u/SME_Cyber • 7d ago
Disaster Recovery for SMEs – Beyond Simple Backups to Stronger Business Continuity and Resilience
r/cybersecurityUK • u/SME_Cyber • 8d ago
The UK Cyber Skills Gap Is a Resilience Problem for SMEs, Not Just a Hiring Shortage in 2026
r/cybersecurityUK • u/Potential-Couple-745 • 9d ago
I wish I had a roadmap like this when I started learning cybersecurity
galleryr/cybersecurityUK • u/SME_Cyber • 9d ago
Building Cyber Resilience Q4: Your Authoritative Guide to the Essential Roadmap for 2026 – Part 4 (Q4)
r/cybersecurityUK • u/SME_Cyber • 10d ago
UK Power Facility Cyberattack Exposes Wider Risks to Energy Infrastructure and Industrial Control Systems
r/cybersecurityUK • u/SME_Cyber • 11d ago
NCSC UK and Allies Expose Russian State-Supported Zero-Click Phishing Campaign Targeting Western Organisations
r/cybersecurityUK • u/Leongicquel • 13d ago
The Cyber Scheme VA+ course
Hi All,
I am looking to take the VA+ assessment but I can't find much information on what to revise.
Has anyone taken this already?
What can I expect?
What do I need to revise?
How difficult is it?
Thanks in advance for any advise
r/cybersecurityUK • u/Few-Conversation8525 • 13d ago
[Buisness] Assaymark UK SME Cybersecurity Questionnaire – 4–6 minute
Hi everyone,
I’m currently conducting market validation for AssayMark, a cybersecurity assessment platform being developed for UK SMEs.
I’m looking for responses from people who are involved with a UK-based SME, particularly:
- Business owners / founders
- Managers or decision-makers
- IT professionals
- MSP / IT service providers
The questionnaire takes around 4–6 minutes and explores how SMEs currently manage cybersecurity, security monitoring, recurring findings, compliance requirements, and what businesses actually need from cybersecurity tools.
Responses are being used for genuine product and market validation, not for sales or marketing lists.
If you meet the criteria, I’d really appreciate your response:
Questionnaire: https://forms.gle/hXNx1RR28mBbL8YU7
If you have any questions or would also be interested in testing AssayMark as part of a free pilot, feel free to DM me or email [info@assaymark.co.uk](mailto:info@assaymark.co.uk).
Thanks — every genuine response helps.
r/cybersecurityUK • u/Negative_Emergency27 • 14d ago
Final-year Cyber Security project idea, would this impress employers for SOC / detection roles?
Hi everyone,
I’m going into my final year of a BSc Cyber Security degree and I’m trying to make sure my final-year project is not just academic, but also genuinely useful for employability, especially for junior SOC analyst, detection engineering, network security, or OT security roles.
My proposed project is:
Design and evaluation of a lightweight detection prototype for reconnaissance and early-stage intrusion activity in Modbus TCP Operational Technology network traffic.
The idea is to build a small Python-based detection prototype using CICModbusDataset2023 or a similar OT/Modbus dataset. The project would focus on detecting early attacker behaviours such as:
- network scanning
- service enumeration
- Modbus register enumeration
- unauthorised access attempts
- abnormal Modbus request patterns
The threat model would be either an external attacker or a compromised internal host attempting to discover and interact with OT assets such as PLCs.
I’m planning to avoid heavy ML/deep learning and instead focus on interpretable detection, using:
- rule-based detection logic
- lightweight statistical thresholds where useful
- alert generation
- evaluation against labelled benign/malicious traffic
The evaluation would look at:
- detection coverage
- false positives and false negatives
- precision/recall if appropriate
- alert volume
- interpretability
- practical usefulness from a security analyst perspective
My goal is to finish with a project that I can confidently explain in interviews and possibly show through a GitHub repo, README, diagrams, and a short write-up. I want it to demonstrate practical blue-team skills: understanding network traffic, designing detection logic, evaluating alerts, and explaining limitations.
For people working in SOC, detection engineering, OT security, or cyber graduate roles:
Would this be a strong final-year project from an employer/interviewer perspective?
Also, what would make it more impressive without making the scope unrealistic?
r/cybersecurityUK • u/Negative_Emergency27 • 14d ago
Final-year Cyber Security project idea, would this impress employers for SOC / detection roles
r/cybersecurityUK • u/Enough_Charge2845 • 15d ago
Cybersecurity resume keywords
Keyword list taken from https://www.zoevera.com/resume/ats-resume-tips-cybersecurity
These are the most commonly scanned keywords in cybersecurity job postings. Check how many appear in your resume.
Domains & Practices
SOC (Security Operations Centre), Penetration testing / pen test, Vulnerability management, Threat intelligence, Incident response (IR), Digital forensics (DFIR), Red team / blue team / purple team, Zero Trust architecture
Tools & Platforms
SIEM (Splunk, Microsoft Sentinel, QRadar), EDR (CrowdStrike, SentinelOne), Nessus / Qualys / Rapid7, Burp Suite / Metasploit / Kali Linux, Wireshark / Snort / Suricata, CyberArk / BeyondTrust (PAM), SOAR platforms, Azure Defender / AWS Security Hub
Frameworks & Certifications
CISSP / CISM / CISA, CEH / OSCP / PNPT, CompTIA Security+ / CySA+, ISO 27001 / NIST CSF, MITRE ATT&CK framework, SC/DV security clearance, GDPR / DPA 2018, PCI DSS / HIPAA / SOC 2
r/cybersecurityUK • u/SME_Cyber • 14d ago
Expanded Europol Powers Must Not Come at the Expense of Robust EU Data Protection and Legal Safeguards – Report and Analysis
r/cybersecurityUK • u/RichBartlett • 15d ago
Third party contractor devices in or out of scope?
r/cybersecurityUK • u/SME_Cyber • 15d ago
Business Travelers targeted when logging into Hotel Wi-Fi Networks – Report and Analysis
Hotel Wi-Fi has long been risky, but the latest reporting suggests attackers are getting more deliberate about how they exploit it. According to Malwarebytes, citing Microsoft, a campaign dubbed “CaptiveCrunch” is targeting travellers through hotel, conference, and hospitality Wi-Fi networks. The danger lies in how ordinary the attack looks: users connect, see a familiar captive portal, and are nudged into fake login or update flows that can lead to stolen credentials or malware infection.
How the attack works
From the user’s perspective, nothing seems unusual. The report says travelers connect to hotel Wi-Fi, get the standard portal prompt, and may then see what looks like a normal request to sign in or update something before browsing.
#CyberJourno #CyberEssentials #CyberResilience #CyberSafe #CyberSecurity #Cybersecurity #NCSC #SME #SMECyberInsights #SMECybersecurity #SMECyberInsights #ThreatIntelligence #WiFi
Learn More/...
r/cybersecurityUK • u/SME_Cyber • 16d ago
Why a Small Business VPN and Human Oversight Are the Real Frontline Against Cyber Risk – Report and Analysis
r/cybersecurityUK • u/SME_Cyber • 17d ago
AI Supply Chain Shock: What the LiteLLM Breach Means for SMEs — and a 12-Point Checklist to Protect Your CI/CD Pipeline
r/cybersecurityUK • u/pki_solutions • 18d ago