Critical Infrastructure Risk Management Program (CIRMP) Rules 2023
What is Critical Infrastructure Risk Management Program (CIRMP) Rules 2023?
Made under Part 2A of the Security of Critical Infrastructure Act 2018, the Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 require responsible entities to develop, implement and maintain a risk management program that addresses cyber security, personnel security, supply chain security, physical security and other hazards. Entities must also report their risk management program and any significant incidents to the Australian Government in accordance with the Act.. It comprises 11 controls organised across 6 domains, and applies in Australia.
How Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 maps to other frameworks
All 11 controls, each one mapped to the equivalent requirement in other standards, with the evidence that carries across and the mappings that were judged and rejected shown alongside. No account needed to look.
See the control mappings →The 6 domains Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 groups its controls into
Where Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 overlaps with the standards you already hold
What Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 means in your sector
What Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 means for your job
Questions people ask about Critical Infrastructure Risk Management Program (CIRMP) Rules 2023
What is Critical Infrastructure Risk Management Program?
How many controls does Critical Infrastructure Risk Management Program have?
Where does Critical Infrastructure Risk Management Program apply?
What frameworks does Critical Infrastructure Risk Management Program map to?
How do I get started with Critical Infrastructure Risk Management Program compliance?
Query Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 programmatically
Critical Infrastructure Risk Management Program (CIRMP) Rules 2023, its 11 controls and every mapping into other standards are available over a REST endpoint and an MCP server, so an agent can read them directly. The free tier is 10 calls a day and needs no signup.
Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 API reference and MCP config →What Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 requires, control by control
Each page carries the requirement text for one Critical Infrastructure Risk Management Program (CIRMP) Rules 2023 control and what an assessor expects to see as evidence.
- CIRMP-GOV-REPORT Annual report to the Commonwealth regulator
- CIRMP-S10 Supply chain hazard management
- CIRMP-S6 Identification of material risks
- CIRMP-S7 General requirement - minimise, eliminate and mitigate all hazards
- CIRMP-S8 Cyber and information security hazard management
- CIRMP-S8-FW Adoption of a recognised cyber security framework
How ready are you for Critical Infrastructure Risk Management Program (CIRMP) Rules 2023?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.