IT Security

IT Security

At Ashton Group, we place great importance on information security, including cyber security to protect both our organisation and our customers data. We are committed to maintaining the confidentiality, integrity and availability of all information we handle.

Cyber security and data protection are fundamental to our operations and form a key part of how we maintain the trust of our customers, suppliers and employees. We recognise that any information shared with us must be handled responsibly, securely and transparently.

How We Protect Your Data

We take a proactive and structured approach to IT security combining technology, processes and expert oversight to safeguard our systems and information.

  • Secure data handling
  • All data is processed in line with strict internal controls and industry best practices to prevent unauthorised access, loss, or misuse
  • Controlled data collection
  • We only collect and store information where necessary and with appropriate consent, in line with our privacy and cookie policies

24/7 monitoring and threat detection

Our systems are continuously monitored by a proactive, fully UK-based Security Operations Centre (SOC) team. This ensures potential threats are identified and addressed in real time across our endpoints and cloud environments

  • Our SOC team operates under recognised industry standards, including CREST and CHECK accreditations, ensuring a high level of technical assurance and best practice
  • Regular testing and updates
  • We continually review and improve our systems to ensure protection against evolving cyber risks

Restricted access controls

Access to systems and data is limited to authorised personnel only, ensuring information is handled securely at all times

Transparency & Your Rights

We believe in being clear about how your data is used and protected. We do not sell, share, or disclose personal data unless required to do so by law. You have the right to request access, updates, or deletion of your personal information Any data collected through our website (such as via forms or cookies) is used to improve our services and user experience, in line with your consent. This approach reflects our wider commitment to transparency, as outlined in our privacy and cookie policy.

Understanding Our Security Standards

CREST (Council of Registered Ethical Security Testers)
An internationally recognised accreditation body for organisations and professionals operating within the technical information security sector
CHECK (NCSC-approved testing standard)
A certification for penetration testing organisations approved by the UK’s National Cyber Security Centre (NCSC), ensuring rigorous and trusted security testing methodologies
SOC (Security Operations Centre)
A centralised function responsible for improving cyber security through the continuous prevention, detection and response to potential threats

The Ashton Group commitment

Cyber security is not a one-time activity it is an ongoing priority of ours.
We continuously invest in:

  • Advanced security technologies
  • Independent testing and monitoring
  • Staff awareness and best practices

Please contact us if you would like our IT policy in writing: ask@ashton-group.co.uk

You can be confident that your data is protected to the highest possible standards by The Ashton Group. ​