Which assessment should I choose?+
Choose Cyber Essentials when you are preparing for that certification. Choose NIST CSF 2.0 when you want a broader posture review across Govern, Identify, Protect, Detect, Respond and Recover.
Do I need a RightCyber account?+
No RightCyber account is required to start a free report. A work email is required so the secure report link can be delivered.
Do I need to upload evidence or provide an organisation name?+
No. The assessment does not request evidence-file uploads or your organisation's name. Do not put names, credentials, keys, network identifiers, raw logs, configuration exports, personal data or exploitable incident details into optional notes.
How is the result calculated?+
A deterministic scoring engine calculates a self-reported planning indicator from the submitted answers before AI writes anything. It is not an official marking method, pass probability, compliance percentage, maturity rating or risk measurement.
Where is AI used?+
OpenAI processes the supplied business context, assessment answers, optional notes, deterministic scores and report instructions to generate the report wording. The delivery email is not sent to OpenAI.
Is this an official assessment or certification decision?+
No. RightCyber Analysis is an automated self-assessment aid. It does not perform an audit, certification or attestation, and it cannot guarantee an external assessment outcome.
What is included in the £49 advanced report?+
The advanced report adds framework-specific evidence-focused follow-up checks, deeper evidence examples, area-level actions and a clearer 30-day and 90-day improvement plan.
How long is the report link available?+
Free report links remain available for 30 days. Advanced report links remain available for 90 days.