Important is a CyberFundamentals assurance level within the CCB scheme. The framework provides progressively scoped measures and an assessment approach; use the official materials to determine the level appropriate to the organisation. See the CyberFundamentals 2025 overview and workbooks.
Use in a programme
Establish the business and technical scope and identify the applicable assurance requirements. Review implementation and documentation separately where the assessment method calls for them. Keep the reasoning behind exclusions and the evidence supporting each assessed measure.
The name of an assurance level should not be used alone to determine the organisation's legal classification. Record the basis for both decisions where they are relevant.
Use in CSFaaS
The reviewed library offers CyFUN IMPORTANT V2025 in English and French. Its dedicated summary identifies completeness, score thresholds and other checks that remain unresolved.
Use the matching level and language for workbook exchange. Preview all changes before applying an import, which creates a new draft version. Inspect Key Measures and excluded controls in the summary rather than relying only on an overall average.
Preserve the expected reference structure when using scheme-specific assessment tools. Complete the applicable external assurance process separately from internal version approval.