Risk ManagementAustralia
Security of Critical Infrastructure Act 2018 (SOCI)
Australian legislation mandating security obligations for owners and operators of critical infrastructure assets across 11 sectors, including cyber incident reporting, risk management programs, and enhanced cyber security obligations for systems of national significance..
Domains
Part 2C - Enhanced Cyber Security Obligations (Systems of National Significance)
Critical Infrastructure Sectors
Part 2 - Register of Critical Infrastructure Assets
Part 3A - Government Assistance (Last Resort Powers)
Part 2A - Critical Infrastructure Risk Management Program (CIRMP)
Compare Security of Critical Infrastructure Act 2018 (SOCI)
Security of Critical Infrastructure Act 2018 (SOCI) vs ISO 27001:2022View comparison →Security of Critical Infrastructure Act 2018 (SOCI) vs SOC 2View comparison →Security of Critical Infrastructure Act 2018 (SOCI) vs NIST CSF 2.0View comparison →Security of Critical Infrastructure Act 2018 (SOCI) vs GDPRView comparison →Security of Critical Infrastructure Act 2018 (SOCI) vs HIPAAView comparison →Security of Critical Infrastructure Act 2018 (SOCI) vs PCI DSS 4.0View comparison →
Security of Critical Infrastructure Act 2018 (SOCI) by Industry
Security of Critical Infrastructure Act 2018 (SOCI) for Healthcare→Security of Critical Infrastructure Act 2018 (SOCI) for Financial Services→Security of Critical Infrastructure Act 2018 (SOCI) for Technology→Security of Critical Infrastructure Act 2018 (SOCI) for Government→Security of Critical Infrastructure Act 2018 (SOCI) for Manufacturing→Security of Critical Infrastructure Act 2018 (SOCI) for Energy→Security of Critical Infrastructure Act 2018 (SOCI) for Retail→Security of Critical Infrastructure Act 2018 (SOCI) for Education→
Security of Critical Infrastructure Act 2018 (SOCI) by Role
Security of Critical Infrastructure Act 2018 (SOCI) for CISOs→Security of Critical Infrastructure Act 2018 (SOCI) for Compliance Officers→Security of Critical Infrastructure Act 2018 (SOCI) for Risk Managers→Security of Critical Infrastructure Act 2018 (SOCI) for IT Directors→Security of Critical Infrastructure Act 2018 (SOCI) for DPOs→Security of Critical Infrastructure Act 2018 (SOCI) for Auditors→
Frequently Asked Questions
What is Security of Critical Infrastructure Act 2018?
Australian legislation mandating security obligations for owners and operators of critical infrastructure assets across 11 sectors, including cyber incident reporting, risk management programs, and enhanced cyber security obligations for systems of national significance..
How many controls does Security of Critical Infrastructure Act 2018 have?
Security of Critical Infrastructure Act 2018 contains 30 controls organized across 6 domains.
Where does Security of Critical Infrastructure Act 2018 apply?
Security of Critical Infrastructure Act 2018 is applicable in Australia. Organizations operating in or serving customers in this jurisdiction should evaluate its requirements.
What frameworks does Security of Critical Infrastructure Act 2018 map to?
Security of Critical Infrastructure Act 2018 has control-to-control mappings with 482 other compliance frameworks in our database. Use our compliance platform to explore these mappings interactively.
How do I get started with Security of Critical Infrastructure Act 2018 compliance?
Start by understanding the framework's key controls and domains. Our compliance platform provides AI-powered gap analysis and mapping tools to help you assess your current posture and build a remediation plan.
How ready are you for Security of Critical Infrastructure Act 2018 (SOCI)?
Answer 25 questions and get a professional readiness report with gap analysis, maturity scores, and prioritised action items. Results in 5 minutes.