Contact Us

Items in red are required

Many businesses take cybersecurity seriously.

Far fewer can prove it.

Netcare helps Australian businesses implement, manage, and maintain the cybersecurity controls required to achieve SMB1001 certification, providing independent assurance to clients, insurers, and business partners.

The Challenge Isn't Knowing Cybersecurity Matters

Most business owners already understand cybersecurity is important.

The problem is knowing when you've done enough.

You are responsible for protecting the business.


But unless cybersecurity is your profession, it can be difficult to know:

  • Whether your controls are appropriate
  • Whether important gaps exist
  • Whether your insurer's expectations are being met
  • Whether your clients would be satisfied with your answers
  • Whether your current approach will stand up to scrutiny

That's why many businesses look for an objective benchmark rather than relying on assumptions. SMB1001 provides a recognised framework designed specifically for small and medium-sized businesses.

Cybersecurity Should Work Like a Roadworthy Inspection

You don't need to understand every component inside your vehicle.

You simply want confidence that it has been maintained, inspected, and certified against a recognised standard.

Cybersecurity should work the same way.

The SMB1001 Cyber Roadworthy

Roadworthy Model

Your Organisation

Driver

You own the business and make risk decisions

Mechanic

Netcare implements and manages cybersecurity controls

Inspector

CyberCert independently verifies compliance

Roadworthy Certificate

SMB1001 Certification


The goal is not to turn business leaders into cybersecurity experts.

The goal is to provide confidence that the business is protected, compliant, and independently verified.

Why Businesses Are Turning to SMB1001

Increasingly, it is a business requirement.

Clients, insurers, project partners, and supply chain participants want evidence that cybersecurity risks are being managed appropriately.

Questions appearing more frequently include:

  • How do you protect sensitive information?
  • Do you use multi-factor authentication?
  • Are staff trained in cybersecurity awareness?
  • What would happen if a cyber incident occurred?
  • Can you demonstrate compliance with a recognised cybersecurity framework?

For many businesses, providing confident answers is difficult, not because they have done nothing, but because they have no structured way to demonstrate what they are already doing.

Why SMB1001 Matters for AEC Firms

AEC organisations manage:

  • Project information
  • Intellectual property
  • Client information
  • Financial information
  • Complex project ecosystems and supply chains

A significant cyber incident can affect:

  • Project delivery
  • Client confidence
  • Collaboration
  • Contractual obligations
  • Future business opportunities

That's why many AEC firms are using SMB1001 as a practical way to strengthen cybersecurity and demonstrate that strength to clients, insurers, and project partners.

Learn More: Why AEC Firms Are Turning to SMB1001 to Win Work and Reduce Risk

A Simple Three-Step Plan

Step 1: Understand Your Current Position

We assess your current cybersecurity maturity and identify any gaps against the SMB1001 standard.

Most organisations already have controls in place. The objective is to understand what's working, what's missing, and what matters most.

Step 2: Implement and Manage the Required Controls

Netcare implements, operates, and maintains the controls required for your selected SMB1001 level.

Cybersecurity is treated as an ongoing operational service rather than a one-off project.

Step 3: Achieve Independent Certification

Netcare prepares and manages your organisation for certification.

Certification is independently issued by CyberCert, providing objective verification that your organisation meets the required standard. Annual reassessment helps maintain compliance over time.

Choose the Right SMB1001 Level

Bronze | Essential Protection

Designed for businesses establishing a secure cybersecurity foundation.

Includes

  • Managed firewall
  • Endpoint protection
  • Patch management
  • Secure cloud backup
  • Security awareness training

Best Suited For

Businesses beginning their cybersecurity improvement journey.

Business Outcome

A secure and independently verifiable cybersecurity baseline.


Silver | Insurance Ready

Builds on Bronze by strengthening identity security and governance.

Includes

Everything in Bronze, plus:

  • Multi-factor authentication
  • Password management
  • Least-privilege access
  • Microsoft 365 security hardening
  • SPF, DKIM and DMARC
  • Core cybersecurity policies

Best Suited For

Businesses handling customer information or seeking alignment with insurer expectations.

Business Outcome

Reduced identity-related cyber risk and stronger assurance capability.


Gold | Business Critical

Provides advanced monitoring, governance, and resilience capabilities.

Includes

Everything in Silver, plus:

  • 24×7 Managed Detection and Response (MDR)
  • Identity threat monitoring
  • Incident response planning
  • Cybersecurity policy framework
  • Risk register
  • Digital asset register
  • Backup recovery testing

Best Suited For

Organisations with contractual, regulatory, or supply-chain cybersecurity obligations.

Business Outcome

Demonstrates a mature cybersecurity capability for organisations where cybersecurity is business critical.

What Success Looks Like

The goal is not to collect another certificate.

The goal is to build a stronger business.


When SMB1001 is implemented successfully, organisations often achieve:

  • Greater confidence during tender submissions
  • Improved cyber resilience
  • Better alignment with insurer expectations
  • Increased trust with clients and partners
  • Clear visibility of cybersecurity risks
  • Independent evidence of cybersecurity maturity

Most importantly, the business moves:

From:  saying "We take cybersecurity seriously."

To:       Being able to prove it.

Typical Monthly Investment

Pricing depends on whether you are an existing Technology Success client or engaging Netcare under an OnDemand arrangement.

Technology Success Clients

Level

Typical Investment

Bronze

$30 per user/month

Silver

$60 per user/month

Gold

$80 per user/month


OnDemand Clients

Level

Typical Investment

Bronze

$50 per user/month

Silver

$80 per user/month

Gold

$100 per user/month


Additional certification fees, audit fees, third-party licensing, major remediation projects, or infrastructure upgrades may apply where required.

Who This Is For

This service is ideal for:

  • Businesses with 20-100 staff
  • AEC businesses
  • Professional services firms
  • Organisations handling client information
  • Businesses pursuing cyber insurance
  • Organisations facing security questionnaires
  • Companies participating in tenders or supply chains
  • Leadership teams seeking confidence rather than uncertainty

Particularly those asking:

"How do we know whether we've done enough?"

Frequently Asked Questions

The Best Time to Improve Your Cybersecurity Is Before Someone Asks for Proof

Cybersecurity expectations are increasing.

Clients want assurance.

Insurers want evidence.

Project partners want confidence.

The question isn't whether cybersecurity matters.

The question is whether you can demonstrate that your organisation is managing it appropriately.

Learn more: Why AEC Firms Are Turning to SMB1001 to Win Work and Reduce Risk.


Schedule a Cybersecurity Compliance Discovery Call and discover whether SMB1001 is the right cybersecurity roadmap for your business.

We promise you will be more productive and more secure within 90 days or your money back.