logo

Cyber Essentials Plus in 2026: Strengthened Controls, UK Cyber Reality & How Qualys Supports Compliance

ID: 8eec99a3-657c-5fa0-b538-e181cf73ec44

STIX ID: report--8eec99a3-657c-5fa0-b538-e181cf73ec44

Feed Name: Qualys Blog

Date Published: 2026-03-02

Date Updated: 2026-04-28

Author: Ian Glennon

...
...

**Executive summary:** The post outlines the April 2026 CE+ (Danzell) changes that shift audits toward live, technical proof of control effectiveness—making MFA mandatory where supported, bringing cloud and identity into scope, enforcing a 14-day patch SLA, and enabling random re-sampling—and promotes the Qualys Enterprise TruRisk Platform (CSAM, VMDR, TruRisk Eliminate, Policy Audit, TotalCloud, TotalAppSec) as an integrated solution to discover assets, automate remediation, and produce audit-ready evidence to meet the new CE+ requirements.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.