SOCI Act: Practical approaches to performing positive security obligations

  • Australia
  • New Zealand
  • Cybersecurity
  • Type Brochures

Meeting the requirements of the Security of Critical Infrastructure Act 2018 (SOCI Act), including Positive and Enhanced Security Obligations, can be complex. This brochure outlines practical approaches to help organisations understand their obligations, align stakeholders and build an effective, compliant security programme.

SOCI Act: Practical Approaches to Performing Positive Security Obligations

© 123RF

This brochure provides practical guidance to support organisations subject to the SOCI Act in meeting Positive Security Obligations (PSOs) and Enhanced Security Obligations (ESOs). It highlights how these requirements can impact the wider enterprise, influencing not only cybersecurity but also personnel, physical security and supply chain risk management. A successful approach begins with clear stakeholder mapping and strong executive sponsorship to align security and business priorities. Understanding who the obligations apply to - from technical teams to senior leaders - is essential to delivering effective outcomes. 

The brochure also introduces supporting resources, including checklists, timelines and practical approaches, to help organisations prepare for upcoming attestations under Risk Management Program Rules or Enhanced Cybersecurity Obligations, and strengthen resilience and compliance.

Contact us for more information about our solutions