When the ICO investigates, the question isn’t what happened — it’s what you can prove.

They’ll ask what evidence you have that you were managing it.

Your clients trust you with sensitive data. Regulators expect you to protect it. Cyber criminals are counting on you not to.

Can you actually prove your business is compliant?


Professional Services Firms Are a Prime Target

Solicitors. Accountants. Financial Advisors. HR Firms.

You handle some of the most sensitive data in existence — client finances, legal matters, personal records. That makes you valuable to cyber criminals and accountable to regulators.

The hard truth? Most firms your size are one phishing email away from a breach — and one breach away from an ICO investigation.

Three questions worth asking yourself:

  • If a client asked “how do you protect our data?” — could you prove it?
  • If your email domain was being spoofed to scam your clients right now — would you even know?
  • If HMRC, the SRA or the FCA asked for your cyber security policy tomorrow — do you have one?

If you’re not sure, you’re not alone. But you do need to act.


We Help You Get Compliant, Get Certified and Get Proof

Cyber Essentials Certification

The UK Government-backed standard that proves your business has the fundamentals in place. Increasingly required to win contracts — and a proven deterrent against the majority of cyber attacks.


Pillar 2 — GDPR

GDPR Compliance

GDPR isn’t a tick-box exercise — it’s an ongoing responsibility. We help you understand what data you hold, how it’s protected, and what to do when something goes wrong. Before the ICO comes knocking.


Pillar 3 — DMARC

DMARC Email Protection

If your email domain isn’t protected with DMARC, criminals can send emails pretending to be you — targeting your clients. We implement and monitor DMARC so your domain is locked down and your reputation is protected.


The Process

How It Works

No jargon. No lengthy contracts. Just a clear path to compliance.

StepWhat Happens
1. Free Compliance ReviewWe assess where you are today against Cyber Essentials, GDPR and DMARC
2. Gap AnalysisWe show you exactly what needs to be done — in plain English
3. ImplementationWe handle the technical work and guide you through the process
4. Certification & ProofYou get the certifications, documentation and confidence to prove it

We Don’t Just Advise on Compliance — We’re Certified Ourselves

We hold Cyber Essentials Plus certification and previously held ISO 27001:2013 certification. We are now working toward ISO 27001:2022 certification — because we believe you should never take compliance advice from someone who does not live by the same standards.

Where Is Your Proof? is delivered by vIT4u Ltd, helping businesses across Yorkshire since 2009.

Leeds & Bradford based — real people, not a call centre
Cyber Essentials Plus certified
Previously certified to ISO 27001:2013
Working toward ISO 27001:2022 certification
Supporting businesses since 2009

Proof Behind Our Advice

Cyber Essentials Plus certified 2026
ISO 27001:2013 certification badge, certificate 411282023
Simon Lewis, Director of vIT4u Ltd
Simon Lewis
Director, vIT4u Ltd

What Clients Say

“His knowledge and persistence shone through some difficult problems. Throughout the process he was calm, reassuring with his obvious expertise. Highly recommend.”

Peter Cruikshanks — Google review

5.0 ★★★★★ from 26 Google reviews. Read our Google reviews.

Ready to Get Your Proof?

Stop hoping your business is compliant. Start knowing it is.

Book a free, no-obligation Compliance Review and we’ll tell you exactly where you stand — and what it takes to get you there.


Scroll to Top