- Security of Critical Infrastructure Act
Security of Critical Infrastructure Act Service Sheet
Critical Infrastructure Risk Management Program
-
juillet 08, 2024
TéléchargezDownload Service Sheet -
Australian critical infrastructure entities have until 18 August 2024 to adopt and comply with a Critical Infrastructure Risk Management Program (“CIRMP”) under the Security of Critical Infrastructure Act 2018 (SOCI Act). This legislation imposes obligations on critical infrastructure entities, with compliance activities already underway for selected assets. FTI Consulting can work with your organisation to ensure compliance with SOCI Act regulations.
Why Do I Need a CIRMP?
Designed to uplift Australia’s critical infrastructure protection, the SOCI Act was developed to enhance cybersecurity across 11 critical infrastructure sectors. A CIRMP helps entities responsible for critical infrastructure assets establish, maintain, and comply with a risk management program. This takes a holistic and proactive approach to identifying and mitigating hazards posing material risks to availability, integrity, reliability, and confidentiality of critical assets.
Next Steps for SOCI Compliance
Entities in scope will need to comply with the controls as defined in their CIRMP by 18 August 2024. They will then have until 28 September 2024 to submit a Board-approved annual report to the Department of Home Affairs. Compliance activities including trial audits have begun and are ongoing throughout 2024-25. Internal and independent audits of CIRMPs should be completed periodically. FTI’s Cybersecurity team can support SOCI preparedness and ongoing compliance.
How We Can Help
The experts at FTI Consulting will work with your organisation to define, implement and ensure compliance with the CIRMP obligations under the SOCI Act. Through a holistic and personalised approach, we help your organisation enhance security and resilience against the unique cybersecurity risks facing your organisation, whilst meeting your CIRMP obligations and maximising the return on investment.
A lire aussi
Related Information
Date
juillet 08, 2024
Contacts
Senior Managing Director, Head of Australia Cybersecurity
Managing Director
Senior Director