Select Page

Category: ISO 27k 5 Organisational Controls

Home » InfoSec Framework and Standards » ISO27k 2022 » ISO27k Theme » ISO 27k 5 Organisational Controls

Audit: Australian Senate Estimates reveals 435 Chinese-made surveillance devices found at defence sites

Defence Internal Audit Finding 31 May 2023: Australian Senate questioning reveals 435 Chinese-made surveillance devices found at defence sites. Defence initially claimed there was only one device.

Read More

Audit: Western Australia Auditor General’s Local Government Information Security Audit 2021-22 reports 324 control weaknesses

West Australian Councils Audit Report 29 March 2023: Western Australia Auditor General’s Local Government Information Security Audit 2021-22 reports 324 control weaknesses. Cyber security concerns as council’s network rack found in staff toilet.

Read More

Audit: Western Australia Auditor General’s State Government Information Systems Audit 2021-22

West Australian State Government Audit Report March 2023: Auditor General’s State Government Information Systems Audit 2021-22 566 control weaknesses 34 significant. Cases: malicious insiders no MFA, outage from an unauthorised device, former employee accessing finance system one month after termination.

Read More

Audit: Queensland Audit Office’s State Entities 2022 reports deficiencies in information systems

Queensland Audit Report 16 March 2023: Queensland Audit Office’s State Entities 2022 reports deficiencies in information systems. Only 33 per cent of departments have an effective system managing information security risks.

Read More

Incident: EnergyAustralia portal compromised, details of 323 customers leaked | iTWire

Australian Energy Utility Incident October 2022. Electricity and gas retailer EnergyAustralia has disclosed a breach of its MyAccount platform. The company says affected 323 small business and residential customers and was automated through use of a password bot.

Read More

Audit: Western Australia Auditor General’s Local Government Financial Audit 2020-21 reports 358 information system control weaknesses

West Australian Audit Report August 2022: Auditor General’s Local Government Financial Audit 2020-21 reports 358 information system control weaknesses. 12 of the 45 entities did not met expectations across all six control categories and 68% of the audit results were below the minimum benchmark.

Read More

Audit: WA Auditor General tables the 2021 Financial Audit Results for Universities and TAFEs

West Australian Audit Report July 2022: Western Australia Auditor General tables the 2021 Financial Audit Results for Universities and TAFEs. OAG identified 124 information systems control weaknesses, a 20% increase 2020, 67% of the weaknesses as rated as moderate.

Read More

Audit: Vic privacy watchdog uncovers third-party infosec risks at four agencies | iTnews

Australian Audit Report July 2022: Victorian privacy watchdog uncovers third-party infosec risks at four agencies. Agencies only partially effective at ensuring that third parties are securing public sector information.

Read More

Audit: West Australian Local Government Information Systems Audit Report “a significant area of concern”

Australian Audit Report June 2022: West Australian Local Government Information Systems Audit Report “a significant area of concern”. None of the 12 entities where we performed capability maturity assessments met benchmark.

Read More

Audit: Queensland Audit Office Education 2021 Report finds “all need to strengthen their security”

Australian Audit Report June 2022: Queensland Audit Office Education 2021 Report finds “all need to strengthen their security”. Deficiencies identified with user and privilege access management, audit log and user activity monitoring.

Read More

Audit: None of NSW’s lead cluster agencies have implemented all Essential Eight controls | ZDNet

Australian Audit Failure November 2021: None of New South Wales lead cluster agencies have implemented all Essential Eight controls – Premier and Cabinet, Communities and Justice, Customer Service, Education, Planning, Regional NSW, Health, Treasury, and Transport.

Read More
Loading

Home » InfoSec Framework and Standards » ISO27k 2022 » ISO27k Theme » ISO 27k 5 Organisational Controls

Please follow the Source link to the original article to support the content owner. We only provide a brief summary with metadata to assist in categorisation.

More Australian News

Health regulator AHPRA apologises for breaching doctor privacy in bulk email

The national healthcare watchdog has inadvertently identified more than 100 doctors, nurses and other practitioners who were offered addiction and … [...]

Always watching: Victorian state government targets spying bosses and online bullies

Victoria’s Labor government to introduce laws to unmask cyber bullies and stop bosses from spying on workers. • Mon, 20 Jul 2026 • … [...]

Exclusive: Alleged Top Education Group data breach could impact thousands

A prominent hacker is claiming to have breached the company behind the Australian National Institute of Management and Commerce, with student … [...]

Exclusive: Downies Collectables continues to respond to ransomware incident

Investigations by Aussie rare coin supplier remain ongoing, as cyber extortionists continue to apply pressure on the dark web. • Tue, 04 Aug 2026 • … [...]

Exclusive: 2019 allegedly hacks BestPriceTravel Australia

A notorious threat actor has claimed a cyber attack on an Australian online travel agency, listing the company on a dark web hacking forum, having … [...]

Exclusive: Partnered Health responds to INC Ransom data breach claims

Cyber extortion group INC Ransom has listed Australian GP network Partnered Health on its darknet leak site, with at least 21 clinics potentially … [...]

Patients deserve right to refuse AI scribes, watchdog warns

Australians should have a legal right to refuse the use of AI scribes during medical appointments without being denied care, as a digital rights … [...]

Exclusive: Qilin claims breach of Victoria-based flooring firm

Threat actors have claimed a cyber attack on a Victoria-based flooring specialist, allegedly having stolen data. • Mon, 03 Aug 2026 • … [...]

Australian Cyber Aware - As It Was 2607 - July 2026

Sat, 01 Aug 2026 The life of an information security chief just got a lot faster Subscribe to gift this article Gift 5 articles to anyone you choose … [...]

The life of an information security chief just got a lot faster

Subscribe to gift this article Gift 5 articles to anyone you choose each month when you subscribe. Already a subscriber? [...]

Privacy Commissioner publishes updated guidance on facial recognition in retail spaces

The Office of the Australian Information Commissioner (OAIC) has published updates to its guidance for Australian Privacy Principle (APP) entities … [...]

In brief: cyberthreat detection and reporting in Australia

Threat detection and reporting Internal policies and procedures What policies or procedures must organisations have in place to protect data or … [...]