Your glossary for risk and compliance
Helpful definitions of all of the terms you need to know to better manage risk and compliance.
Trusted by the world’s leading organisations



















Terms
AFSL Authorised Representative AICPA Annex A Controls ASIC Attestation of Compliance (AOC) Business Continuity Management Compliance Automation Software Compliance Risk Management Cybersecurity Maturity Model Certification (CMMC) FedRAMP Governance Risk & Compliance (GRC) GPDR HIPAA HITRUST Incident Management Information Security Management System (ISMS) ISMS Governing Body ISO 27001 Notifiable Data Breach OAIC Policy Management SOC 1 SOC 2 SOC 3 SOC Reports SOC Trust Services Criteria (TSC) SSAE 16 SSAE 18 Third Party Risk Management Vendor Assessment Vendor Management Policy Vendor Review Vulnerability Vulnerability Management
Compliance
Regulator
What is the OAIC?
The Office of the Australian Information Commissioner (OAIC) is an independent agency within the Attorney-General’s portfolio. The primary functions include privacy, freedom of information and government information policy and implementation. Their responsibilities include conducting investigations, reviewing decisions, handling complaints, and providing guidance.