Australia Consumer Data Right - Banking (CDR)
What is Australia Consumer Data Right - Banking (CDR)?
The Australian Consumer Data Right (CDR) for banking, mandated under the Competition and Consumer Act 2010 (amended by the Treasury Laws Amendment), gives consumers the right to share their banking data with accredited third parties. Administered by the ACCC (accreditation), OAIC (privacy), and Data Standards Body (technical standards). It comprises 28 controls organised across 3 domains, and applies in Australia.
How Australia Consumer Data Right - Banking (CDR) maps to other frameworks
All 28 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 3 domains Australia Consumer Data Right - Banking (CDR) groups its controls into
Where Australia Consumer Data Right - Banking (CDR) overlaps with the standards you already hold
What Australia Consumer Data Right - Banking (CDR) means in your sector
What Australia Consumer Data Right - Banking (CDR) means for your job
Questions people ask about Australia Consumer Data Right - Banking (CDR)
What is Australia Consumer Data Right - Banking?
How many controls does Australia Consumer Data Right - Banking have?
Where does Australia Consumer Data Right - Banking apply?
What frameworks does Australia Consumer Data Right - Banking map to?
How do I get started with Australia Consumer Data Right - Banking compliance?
Query Australia Consumer Data Right - Banking (CDR) programmatically
Australia Consumer Data Right - Banking (CDR), its 28 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
Australia Consumer Data Right - Banking (CDR) API reference and MCP config →What Australia Consumer Data Right - Banking (CDR) requires, control by control
Each page carries the requirement text for one Australia Consumer Data Right - Banking (CDR) control and what an assessor expects to see as evidence.
- AUCDR-IS-1 Limit risk of unauthorised access to the CDR data environment
- AUCDR-IS-2 Secure the network and systems within the data environment
- AUCDR-IS-3 Securely manage information assets over their lifecycle
- AUCDR-IS-4 Formal vulnerability management program
- AUCDR-IS-5 Limit, prevent, detect and remove malware
- AUCDR-IS-6 Information security training and awareness program
- AUCDR-IS-STEP1 Step 1 - Define and implement security governance for CDR data
- AUCDR-IS-STEP2 Step 2 - Define the boundaries of the CDR data environment
- AUCDR-IS-STEP3 Step 3 - Have and maintain an information security capability
- AUCDR-IS-STEP4 Step 4 - Implement a formal controls assessment program
How much of another standard Australia Consumer Data Right - Banking (CDR) already covers
Each crosswalk is judged control by control, and the mappings that were rejected are kept alongside the ones that held.
- APEC Cross-Border Privacy Rules (CBPR) System to Australia Consumer Data Right - Banking (CDR) crosswalk
- AWS Well-Architected Security Pillar to Australia Consumer Data Right - Banking (CDR) crosswalk
- Australia Consumer Data Right - Banking (CDR) to Azure Security Benchmark crosswalk
- C5 (Germany) to Australia Consumer Data Right - Banking (CDR) crosswalk
- Australia Consumer Data Right - Banking (CDR) to CIS Controls v8 crosswalk
- Australia Consumer Data Right - Banking (CDR) to Cloud Security Alliance Cloud Controls Matrix (CCM) v4.0.1 crosswalk
- Australia Consumer Data Right - Banking (CDR) to CMMC 2.0 crosswalk
- Australia Consumer Data Right - Banking (CDR) to FedRAMP Moderate crosswalk
How ready are you for Australia Consumer Data Right - Banking (CDR)?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.