国民彩票

Strategy & governance

Learn about the services provided by the team.
Personalise
Cybersecurity and privacy concepts to protect data. Lock icon and internet network security technology. Businessmen protecting personal data on tablets and virtual interfaces.

国民彩票 IT Cyber Security help protect our University community as well as inform, educate, and support your understanding of safe online behaviour, practices, and obligations around information security.

Cyber Security Strategy & Governance

Our team

Our Risk Advisory team provides a solution review of 国民彩票 projects integrated with the Portfolio and Project Management Office (PPMO) processes. Our services include a formalised review process incorporating a risk and impact assessment called Cyber Security Risk Assessment (CSRA).

Our Governance and Risk Management team is responsible for the development, delivery, and oversight of University-wide cyber security policies, standards, and procedures. This includes ensuring compliance with policies and standards as well as ongoing cyber security risk management.

  • 2024
    • June -听.
    • May -听听
      Refer to the听听or view this听.
    • May -听听(introduction of CyberPolicyHub)
    • May -听听reminder.
    • May -听听(includes听听and links to register)
    • March -听

Our services

Strategy and Governance services, listed below, are provided via the听听portal. If you need help with any of the services, please either submit a general request for听听or contact the IT Service Centre on for assistance.

    • Refer to the听听webpage.
    • Refer to the听听function within the MyCyberHub platform to听听for Cyber Security Policy and Standards clauses relating to your role.
    • Raise a听.
    • Manage a听.
    • Raise an听.听
    • Submit a听.
    • Add a听听(asset, application, etc.).
    • Update听听(asset, application, etc.).
    • Complete a听听if requested to do so.
    • Submit an听.
    • Submit a听.
    • Submit a听.
    • Refer to the听.

    • Submit a听.
    • Submit a听.
    • Register a听.
    • Update听.
    • Submit a听.听
    • Submit a听.
    • Submit a听.
    • Submit a听.
    • Submit a听.
    • Submit a听.
    • Submit a听.

Our achievements

国民彩票 achieves ISO/IEC 27001:2022 certification

In response to the increasing demand for robust and verifiable information security for sensitive research data, in 2024 国民彩票 achieved the globally recognised听ISO/IEC 27001:2022 certification for its Information Security Management System (ISMS).听Our achievements.

The ISO/IEC 27001:2022 standard outlines requirements for establishing, implementing, and continuously improving an ISMS within the context of an organisation鈥檚 business objectives and risks. By adhering to these requirements, 国民彩票 strengthens its information security risk management framework while enabling continuous improvement and maturity of its cyber security practices.

The certification applies to information security within the provision, operational management, and support of IT systems for the following in-scope services:

  • O365 email and Azure storage services (Outlook, OneDrive, SharePoint, and Teams).
  • 国民彩票 Research data archive.
  • Storage services provided by 国民彩票 shared drives.
  • Secure Email Gateway services.
  • 国民彩票 IT managed endpoints.

The certification applies to the above in-scope services managed from 国民彩票's main campus in Kensington, Sydney, as well as 国民彩票 Canberra at the Australian Defence Force Academy.

  • The ISO/IEC 27001:2022 standard outlines requirements for establishing, implementing, and continuously improving an ISMS within the context of an organisation鈥檚 business objectives and risks.

    By adhering to these requirements, 国民彩票 strengthens its information security risk management framework while enabling continuous improvement and maturity of its cyber security practices.

  • This certification underscores 国民彩票鈥檚 commitment to robust cyber security risk management standards, directly supporting eligibility for research grants by ensuring compliance with stringent requirements set by research sponsors.听It also fosters customer and partner trust and enables growth in Student Experience, Lifelong Learning and Societal Impact.

    Driving Innovation and collaboration

    The certification also contributes to 国民彩票 innovation and engagement through expanded partnerships and knowledge exchange.听Through this achievement, 国民彩票 reinforces its position as an Australian education sector leader in cyber security, demonstrating its ability to:

    • Safeguard critical systems and data.
    • Support academic excellence and research innovation.
    • Deliver meaningful societal impact.

    For more information about the certification and its benefits, please email us.听

  • An ISMS is a structured framework designed to safeguard an organisation's valuable information assets. It involves coordinating processes, technology, and resources to manage the risks associated with information security effectively.听

    The University's ISMS encompasses the protection of information stored within it and the operational management of research storage services to ensure the confidentiality, integrity, and availability of this information. It is designed to comply with the ISO/IEC 27001:2022 standard and is committed to providing a secure environment for research and defense-related activities.

  • All individuals (employees, contractors, suppliers, and other third parties) using and managing 国民彩票 information are responsible for:

    • Complying with the ISMS together with any supporting policies, standards, and procedures.
    • Complying with all established security controls.
    • Reporting security breaches and taking necessary corrective actions.
    • Using information assets only as authorised and intended by the System Owner.
    • Completing (where appropriate) the听听training as required.

Reporting cyber incidents

It is important to report any cyber security incidents as quickly as possible so that the 国民彩票 IT Cyber Security team can address any issues and mitigate risk exposure.

Incidents that staff and students should report:

  • Suspecting your computer or account has been compromised.
  • Having evidence on how technology or University data may be vulnerable.
  • Noticing a colleague inappropriately sharing Highly Sensitive or Sensitive data.
  • Losing a University asset containing sensitive information.
Contact the听IT Service Centre听for urgent matters or use the button above to report an incident.

Cyber security is everyone鈥檚 responsibility and by learning a听few rules, simple steps, and following guidelines, we can protect our University from cyber security threats and keep data safe.听

"Enhancing cyber security, including protecting information and privacy, is of paramount importance to our core functions of education and research. We all play a part in being cyber smart."听

Professor Attila Brungs, Vice-Chancellor and President, 国民彩票 Sydney