Gold is the floor. Higher when you need it.
SMB1001:2026 is published by Dynamic Standards International for small and medium businesses. The levels are cumulative. We do not run clients to Bronze or Silver and call it done. We set Gold, Platinum, or Diamond from the clients you serve, the insurance you hold, and the data you keep.
SMB1001 Gold or higher, set from business requirements. Levels are cumulative. SMB1001:2026, published by Dynamic Standards International. We prepare the work. We do not issue the certificate.
Level 3
Gold
The floor for every One Plan client.
A managed program: written policies, staff training, incident response, an asset register, email authentication, endpoint detection, and a policy on AI use, on top of the controls beneath it.
A director self-attests through an independent certification body.
Level 4
Platinum
When a client, insurer, or supply chain needs someone else to check the work.
Everything in Gold, plus tested restores, vulnerability scanning, access reviews, and supplier checks.
Independent audit before a certificate is issued.
Level 5
Diamond
When the business requires the full standard, independently validated.
Everything in Platinum, plus application control, encryption, penetration testing, managed detection and response, and a rehearsed incident response.
Independent audit. Assertions at this level are not only self-attested.
SMB1001 is published by Dynamic Standards International. Certificates are issued by an independent certification body. Stride IT prepares controls and evidence. We do not issue the certificate. This is not an ACSC, ISO 27001, Microsoft, or government certification.
Our One Plan
One managed plan. No MSP package tiers. Security is prepared to SMB1001 Gold, or Platinum or Diamond when the business requires it. Projects are scoped separately.
See Our One Plan โRequired Security Stack
EDR, ITDR, SIEM, SAT, ESPM, and ISPM required for all clients. Included in One Plan for every client.
View the stack โ