Practical cyber security for New Zealand SMEs

Know your gaps.
Protect what matters.

Cybertool helps small and medium businesses understand their cyber risks, protect their online assets and build a stronger security system—without the jargon.

Free to start   Built around ISO 27001   Designed for SMEs

IDENTIFYKnow your risks
PROTECTSecure your assets
IMPROVEBuild resilience
Security starts with clarity

BUILT FOR REAL-WORLD BUSINESS

Plain EnglishNo technical overload
Practical stepsKnow what to fix first
ISO-alignedA trusted framework

What we do

Cyber security that fits your business.

You don’t need an enterprise-sized IT team to take cyber security seriously. We turn recognised good practice into clear, manageable actions for SMEs.

01

FREE ONLINE TOOL

Cybertool Gap Analysis

Answer straightforward questions about your current controls. Get a clear view of strengths, gaps and priority actions based on ISO 27001.

Start the free analysis
YOUR READINESSClear next steps
02

ADVISORY

ISO 27001 Gap Review

A deeper, consultant-led review of your information security system, evidence and risks—with a practical improvement plan.

Discuss a review
03

IMPLEMENTATION

Policies & Risk Support

Help to build the policies, risk register, asset controls, incident planning and staff awareness your business actually needs.

Get practical support

A sensible place to start

From uncertainty to a clear action plan.

Cyber security can feel complicated. Our approach keeps it practical: understand what you have, identify the most important gaps and improve in manageable steps.

  1. 01

    Assess

    Complete the free Cybertool check to see where your business stands today.

  2. 02

    Prioritise

    Focus first on the gaps that could have the greatest impact on your operation.

  3. 03

    Improve

    Put sensible controls, policies and staff practices in place.

  4. 04

    Review

    Check progress and keep your security current as the business changes.

Free 10-question check

How ready is your business?

Try this practical 10-question starter assessment. It takes about two minutes and gives you an immediate indication of where to focus next.

Your answers stay private.This quick check runs in your browser and does not ask for business-sensitive information.

SELECT YES OR NOT YET — 0 OF 10 ANSWERED

1. We use multi-factor authentication for important accounts.
2. We regularly back up business data and test that it can be recovered.
3. Staff receive cyber security awareness and phishing training.
4. We have a documented plan for responding to a cyber incident.
5. We keep a current list of important information, devices and systems.
6. Staff access is removed promptly when someone leaves the business.
7. Our devices and software receive security updates promptly.
8. We assess the cyber security risks of suppliers with access to our data.
9. Sensitive information is protected when stored and when being sent.
10. A named person is responsible for cyber security and regularly reviews risks.

Why Cybertool

Security built for smaller teams.

ISO 27001 is a recognised framework for managing information security. Cybertool makes its core thinking accessible to SMEs: understand risk, assign responsibility, protect information and keep improving.

Our goal is not to bury you in paperwork. It is to help you make sound decisions, meet customer expectations and strengthen the way your business handles valuable information.

Take the first step

Start with clarity.
Build with confidence.

Use the free gap analysis today, then talk with us if you need a deeper review or hands-on ISO 27001 support.

Start the free Cybertool check