Assessment framework · Cybersecurity

NCSC CAF assessment

The NCSC Cyber Assessment Framework (CAF) is the UK framework for assessing cyber resilience of essential and critical services, organised into 14 principles across four objectives. It underpins NIS-regulated sectors.

Assess against the 14 CAF principles for NIS-regulated and critical services.

What it covers

Inside a NCSC Cyber Assessment Framework assessment.

Celeredge assesses the client against the 14 CAF principles using the Indicators of Good Practice, scores each contributing outcome, and ranks remediation for NIS-regulated services.

  • Scored on NCSC Cyber Assessment Framework's own scale — not a generic rubric
  • Every score traceable to the client's own evidence
  • Gaps ranked by severity, ready to become the plan
  • A board-ready slide deck and detailed report, generated automatically
How evidence is scored →
A scored NCSC Cyber Assessment Framework assessment with evidence-linked scores and ranked gaps

How it works

From the client's documents to a board-ready deck.

1 · Evidence in

Upload the client's documents — policies, reports, data. An AI interviewer asks targeted follow-ups to fill anything missing.

2 · Scored on the standard

Every dimension is scored on the framework's own scale, with each score traceable to the evidence behind it — gaps ranked by severity.

3 · Board-ready out

A board-ready slide deck and HTML report are generated automatically — executive summary, maturity landscape and a sequenced plan.

Questions

NCSC Cyber Assessment Framework assessment — FAQ

What is NCSC Cyber Assessment Framework?

The NCSC Cyber Assessment Framework (CAF) is the UK framework for assessing cyber resilience of essential and critical services, organised into 14 principles across four objectives. It underpins NIS-regulated sectors.

What does a Celeredge NCSC Cyber Assessment Framework assessment deliver?

An evidence-based maturity or readiness assessment scored on NCSC Cyber Assessment Framework's own scale, with gaps ranked by severity and an auto-generated, board-ready slide deck and detailed report — every score traceable to the evidence behind it.

How does the NCSC Cyber Assessment Framework assessment work?

Clients upload their own evidence — policies, reports and data. An AI interviewer asks targeted follow-ups to fill anything missing, the platform scores against the framework, ranks the gaps, and generates the deliverables.

See a NCSC Cyber Assessment Framework assessment on real data.

We'll run NCSC Cyber Assessment Framework live and score it from a client's own documents.