Skip to content

Is the PSPF mandatory?


Yes, the Protective Security Policy Framework (PSPF) is mandatory for non-corporate Commonwealth entities. The PSPF outlines the minimum security requirements for the protection of Commonwealth assets, personnel, information and systems. The PSPF is developed and maintained by the Attorney-General's Department and applies to all non-corporate Commonwealth entities.

It is mandatory for all non-corporate Commonwealth entities to comply with the PSPF in order to protect Commonwealth assets, personnel, information and systems. The PSPF is supported by the Australian Government Security Vetting Agency, which provides security clearances to personnel within the Commonwealth and provides advice and guidance on the implementation of the PSPF.

In addition to the PSPF, non-corporate Commonwealth entities must also report to their portfolio minister and the Attorney-General's Department each financial year on security. This is to ensure that the security of Commonwealth assets, personnel, information and systems is maintained and that any breaches of the PSPF are reported and addressed.

General thought leadership and news

Mitigating cybersecurity risks: A guide to vendor risk management

Mitigating cybersecurity risks: A guide to vendor risk management

In today's digital landscape, cybersecurity risks have become a prevalent concern for organizations of all sizes. With businesses relying on multiple...

CMMC 2.0 is here: Key changes and what it means for your business

CMMC 2.0 is here: Key changes and what it means for your business

Last October 15, 2024, the final rule for the latest iteration of the Cybersecurity Maturity Model Certification (CMMC) was published by the US...

Configuring your 6clicks dashboard: Transform insights with Power BI

Configuring your 6clicks dashboard: Transform insights with Power BI

Governance, risk, and compliance (GRC) thrive on data. With today’s businesses running on digital ecosystems, visualization and interaction with data...

Explore the power of the 6clicks dashboard: A widget showcase

Explore the power of the 6clicks dashboard: A widget showcase

Dashboards are more than just data displays—they’re hubs for insight, action, and collaboration. We have recently released our configurable...

Introducing personalized dashboards for a smarter GRC experience

Introducing personalized dashboards for a smarter GRC experience

Hello everyone! We’re excited to announce a powerful new feature: configurable dashboards designed to enhance how you manage your GRC data on the...

The NIST Cybersecurity Framework: Best practices

The NIST Cybersecurity Framework: Best practices

When it comes to security compliance, the NIST Cybersecurity Framework (NIST CSF) has built a reputation for effectively guiding organizations toward...