Australia IRAP - Information Security Registered Assessors Program
What is Australia IRAP - Information Security Registered Assessors Program?
The Information Security Registered Assessors Program (IRAP) is an Australian Government initiative administered by the Australian Signals Directorate (ASD). IRAP provides a framework for assessing the implementation and effectiveness of security controls against the Australian Government Information Security Manual (ISM). It comprises 16 controls organised across 4 domains, and applies in Australia (ASD).
How Australia IRAP - Information Security Registered Assessors Program maps to other frameworks
All 16 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 4 domains Australia IRAP - Information Security Registered Assessors Program groups its controls into
Frameworks that share controls with Australia IRAP - Information Security Registered Assessors Program
Each of these has at least one control mapped to a control in Australia IRAP - Information Security Registered Assessors Program. The number is how many Australia IRAP - Information Security Registered Assessors Program controls are shared, counted from the mapping graph.
Implementation guides for frameworks that overlap Australia IRAP - Information Security Registered Assessors Program
Where Australia IRAP - Information Security Registered Assessors Program overlaps with the standards you already hold
What Australia IRAP - Information Security Registered Assessors Program means in your sector
What Australia IRAP - Information Security Registered Assessors Program means for your job
Questions people ask about Australia IRAP - Information Security Registered Assessors Program
What is Australia IRAP - Information Security Registered Assessors Program?
How many controls does Australia IRAP - Information Security Registered Assessors Program have?
Where does Australia IRAP - Information Security Registered Assessors Program apply?
What frameworks does Australia IRAP - Information Security Registered Assessors Program map to?
How do I get started with Australia IRAP - Information Security Registered Assessors Program compliance?
Query Australia IRAP - Information Security Registered Assessors Program programmatically
Australia IRAP - Information Security Registered Assessors Program, its 16 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
Australia IRAP - Information Security Registered Assessors Program API reference and MCP config →What Australia IRAP - Information Security Registered Assessors Program requires, control by control
Each page carries the requirement text for one Australia IRAP - Information Security Registered Assessors Program control and what an assessor expects to see as evidence.
- IRAP-AS-1 ASD endorsement as an IRAP assessor
- IRAP-AS-4 Independence and conflict of interest
- IRAP-AS-5 Objectivity and professional conduct
- IRAP-CAF-1 Stage 1 - Plan and prepare
- IRAP-CAF-2 Stage 2 - Define the assessment boundary
- IRAP-CAF-3 Stage 3 - Assess the controls
- IRAP-CAF-4 Stage 4 - Produce the IRAP assessment report
- IRAP-EV-1 Quality of evidence
- IRAP-EV-2 Evidence gathering and sampling
- IRAP-EV-3 Objectivity of findings
How ready are you for Australia IRAP - Information Security Registered Assessors Program?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.