London · Founded 2026

Cybersecurity and AI for businesses that can't afford to get it wrong.

Wardlight helps London small and medium businesses certify to Cyber Essentials, modernise their security, and adopt AI safely, without the cost or complexity of an enterprise consultancy.

Built for London firms in
Law Accountancy Private Medical Property Recruitment
Why Cyber Essentials

Three reasons it pays for itself.

Cyber Essentials is the UK government's foundational security standard, run by NCSC and delivered by IASME. It has become quietly essential for any small business that handles client data, bids for serious work, or wants its insurance to actually pay out.

80%

Stops the common attacks.

The five controls defend against up to 80% of internet-based cyber attacks affecting UK small businesses, including phishing, credential theft, ransomware, and known software exploits.

£25k

Free cyber liability insurance.

UK businesses with turnover under £20m receive £25,000 of cyber liability cover automatically with certification, including a 24/7 incident response helpline. Often worth more than the certification fee.

£20m

Contracts you couldn't bid for.

Increasingly required for UK government tenders, NHS supply chains, MoD work, and the procurement processes of larger enterprise clients. Any firm under £20m turnover qualifies for the scheme.

What we do

Three services. One practice. Quietly thorough.

We don't sell tools. We don't sell fear. We do the practical work that makes your business safer, smarter, and harder to disrupt.

01 / CYBER ESSENTIALS

Get certified, properly.

A fixed-fee readiness audit followed by the remediation work that gets your business through the Cyber Essentials assessment on first attempt. Most clients use software they already own.

02 / SAFE AI ADOPTION

AI without leaking your clients.

We help you choose, configure, and roll out AI tools that don't expose client data, breach UK GDPR, or create new attack surfaces. Including bespoke workflows built for your firm.

03 / ONGOING PARTNERSHIP

Quiet vigilance, every month.

Monthly external scanning, quarterly security reviews, phishing simulations, and steady AI improvement work. The kind of partnership that means you sleep easier.

How it works

A practical engagement, always.

Most security and AI work fails because it stays abstract. Ours moves from conversation to certificate to ongoing partnership inside a single quarter.

FIRST

We listen, then audit.

A free 15-minute call, then a one-day audit at a fixed fee. You receive a written report, a prioritised plan, and a clear sense of what's working and what isn't.

NEXT

We do the work.

Two to four weeks of focused remediation: configuring what you already own, drafting the policies you need, and submitting your Cyber Essentials assessment on your behalf if you choose.

THEN

We stand watch.

For clients who choose to continue, an ongoing partnership: monthly scans, quarterly reviews, and steady improvement. No surprises, no scope creep.

Why Wardlight

The toolkit is free. The work is not.

NCSC publishes the standard. IASME provides the questionnaire. The free tools are real and they're useful, and we'll genuinely recommend them to anyone who can spare the time.

Most of our clients tried that route first. They came to us when their Microsoft 365 tenant wouldn't cooperate, when the questionnaire's 70 questions stopped feeling free, or when the deadline for a tender arrived faster than the configuration work.

01
We do the work, not just the assessment.

The questionnaire identifies gaps. Closing them, configuring M365, drafting policies, training staff, rolling out MFA, is the actual job. That's what you pay us for.

02
Two billable hours of your time, not twenty.

For a firm billing client hours at £200–£400, our fee is recovered in less than a day. Most clients save themselves three to four weeks of evening and weekend work.

03
We won't submit until you're ready.

Failed assessments cost the full fee again and put government tender deadlines at risk. We do the remediation work first, confirm every control is met, then submit. No surprises.

04
Safe AI adoption has no free equivalent.

NCSC doesn't have an AI readiness tool. Most "AI consultants" don't understand UK GDPR. We do both, security and AI, properly, by the same person, for the same firm.

About Wardlight

Practical security. Plain language. Earned trust.

Wardlight was founded by Yemi Sasonel, a cybersecurity professional with a background in hands-on security work and AI adoption consulting. The practice exists because the market for London small businesses is poorly served: IT firms that don't really do security, and enterprise consultancies that don't work below a £50,000 engagement.

Wardlight sits in the middle, built specifically for professional firms that handle real client data, face real regulatory pressure, and can't afford to get either security or AI wrong.

"We stand watch so the businesses we serve don't have to."

The first conversation is free.

A fifteen-minute call to confirm whether what we do fits what you need. No pitch, no obligation, no follow-up unless you ask.

Book a 15-minute call