Cyber Security Governance Principles | Version 2

Monday, 25 November 2024

Version 2 reflects developments in cyber security governance and emerging cyber threats since the Principles initial release in 2022.


Cyber threats are a critical risk for organisations of all sizes. With digital driven strategies, evolving regulation, and increasingly sophisticated cybercrime, cyber security remains a top board priority. 

Since 2022, the AICD and CSCRC’s Cyber Security Governance Principles (Principles) have set the standard for cyber governance in Australia. They offer a framework for better practice, enhanced resilience, and proactive board oversight. 

This Version 2 covers emerging issues such as digital supply chain risks, data governance and effective cyber incident response and recovery. The Principles feature case studies from corporate leaders including former Telstra CEO, Andy Penn AO and Ventia Services Group Chair, David Moffatt MAICD, along with insights from recent major cyber security incidents. To support directors, the Principles provide practical tools, including tailored questions, governance red flags, and checklists for NFPs and SMEs, helping boards strengthen cyber resilience, improve risk controls, and oversee supplier relationships effectively. 


Join us for the launch webinar

To launch the Principles, we invite you to attend a free webinar. This session will explore the Principles in detail, offering practical guidance on how boards can oversee cyber security, enhance resilience, and respond to emerging risks.

Cyber Security Governance Principles Update

Latest research

This is of of your complimentary pieces of content

This is exclusive content.

You have reached your limit for guest contents. The content you are trying to access is exclusive for AICD members. Please become a member for unlimited access.