orgs process sensitive data - yet they may lack the basic security measures that would make their sensitive data safer u We regulate this on the big scale: banks, healthcare or the gov need to adhere to standards. And they also have the resources to ask for help with their specific security problems. But smaller organisations don’t have these resources. u There are plenty of free resources out there (like the cyber essentials), which are a great start. But many remain stuck on the first implementation steps or implement incorrectly. think about the amount of sensitive private data that schools are entrusted with