Is your business really gold-standard secure?
SMB1001:2026 raises the bar for small business cybersecurity. Here are the 10 controls assessors check for — and where Little IT Co can close the gaps.

How the gap check works
Free Gap Check
Plain-English Report
Fast Remediation
SMB1001:2026 Gold (Level 3)
The 10 Gold Control Areas
This is the checklist your business is measured against under the new SMB1001:2026 framework.
Managed IT Provider Engaged
Contracted MSP / qualified IT support team in place
MFA Everywhere
Enforced across all emails, cloud systems, and admin accounts
Password Manager Deployed
Enterprise password vault mandated for all employees
Endpoint Protection (EDR)
Active antivirus / EDR installed across all endpoints
Firewall Management
Perimeter and device firewalls active and monitored
Patch Management SLA
Critical security patches deployed within 14 days
Secure Backups & Testing
Encrypted, immutable/offline copies with regular restore tests
Incident Response Plan
Documented, tested breach escalation and response playbook
Staff Security & Phishing Training
Ongoing awareness programs and simulated drills active
Cybersecurity Policies Documented
Core policies signed, including new SMB1001:2026 AI Policy
Book your free Gold Control assessment
Little IT Co will benchmark your business against all 10 controls and hand you a clear action plan — no jargon, no pressure.
Free, no obligation
Request your free gap check
Tell us a little about your business and we'll benchmark you against all 10 Gold controls. No cost, no obligation, and no sales pressure afterwards.
- A one-page report showing what's covered and what's missing
- A prioritised action plan you can action with any provider
- A Perth-based team you can actually call
Common questions
What Gold Level 3 Means
And what it takes to get there.