Cyber, critical infrastructure & AI standards — all in one place.

The latest standards, laws and regulations, with curated metadata, mapped controls and expert guidance from 6clicks. Built for GRC, compliance and security teams.

Browse by industry

Browse by sector. Each page shows relevant standards, laws, regulations, and frameworks.

Explore all industries

Content Library

Showing 20 of 159

GRCLaw

Criminal Code Act 1995

The Criminal Code Act 1995 is an Australian federal law that establishes the legal framework for addressing criminal offenses. It outlines principles of criminal responsibility, specific offenses such as terrorism and espionage, and provisions for external and corporate liabilities.

Attorney-General's Department • Australia • vNo. 137, 17 February 2021

View details
PrivacyLaw

Copyright Act 1968

The Copyright Act 1968 is a foundational law in Australia governing copyrights and intellectual property rights in literary, artistic, dramatic, and musical works, as well as sound recordings, broadcasts, and published editions. It defines the rights and protections for creators and sets out provisions for infringement, fair dealing, and public access in specific scenarios such as education and disabilities.

Australian Government • Australia • vNo. 59, 18 December 2020

View details
PrivacyLaw

Child Support (Registration and Collection) Act 1988

The Child Support (Registration and Collection) Act 1988 sets the legal framework for registering and collecting child maintenance liabilities in Australia. It outlines processes for enforcing payments, managing registrable liabilities, and utilizing computer programs for certain decisions.

Australian Government • Australia • vNo. 61, 17 November 2016

View details
GRCLaw

BCI Act — Building and Construction Industry (Improving Productivity) Act 2016

The Building and Construction Industry (Improving Productivity) Act 2016 establishes a regulatory framework aimed at improving productivity and accountability within the building and construction sector in Australia. It provides for the creation of the Australian Building and Construction Commission and outlines rules governing industrial actions, security of payments, and compliance with workplace safety regulations.

Australian Government • Australia • vNo. 2, 17 February 2017

View details
CybersecurityGuideline

NIST SP 800-172 — Enhanced Security Requirements for Protecting Controlled Unclassified Information: A Supplement to NIST Special Publication 800-171

NIST SP 800-172 elaborates enhanced security requirements for protecting Controlled Unclassified Information (CUI) in nonfederal systems and organizations. It aims to mitigate risks posed by Advanced Persistent Threats (APT) through a defense-in-depth approach, building on the foundational requirements in NIST SP 800-171.

National Institute of Standards and Technology (NIST) • United States

View details
PrivacyLaw

Spam Act 2003

The Spam Act 2003 is an Australian law designed to regulate the sending of commercial electronic messages to ensure compliance with consent, sender identification, and unsubscribe requirements. It aims to prevent unsolicited messages and address harvesting practices.

Australian Government • Australia • vNo. 10, 10 March 2016

View details
GRCLaw

Environment Protection and Biodiversity Conservation Act 1999

The Environment Protection and Biodiversity Conservation Act 1999 (EPBC Act) is Australia's key environmental legislation. It provides a legal framework to protect and manage nationally and internationally significant flora, fauna, ecological communities, and heritage places.

Australian Government • Australia • vNo. 55, 16 December 2020

View details
CybersecurityRegulation

Dubai ISR — Dubai Government Information Security Regulation

The Dubai Government Information Security Regulation (ISR) provides standards to ensure the continuity of critical business processes and minimize information security risks for Dubai Government Entities. It defines minimum requirements for information security controls and aims to maintain confidentiality, integrity, and availability of government information.

Dubai Government • Dubai • v3

View details
PrivacyLaw

Do Not Call Register Act 2006

The Do Not Call Register Act 2006 establishes a framework to prevent unsolicited telemarketing calls and faxes to individuals and organizations who register their numbers on the Do Not Call Register. It includes rules for telemarketers and penalties for violations.

Australian Government • Australia • vNo. 15, 12 December 2019

View details
CybersecurityFramework

DSPF — Defence Security Principles Framework

The Defence Security Principles Framework (DSPF) is the Australian Department of Defence's principles-based security framework that provides governance, security principles, and controls to help Defence personnel manage risks and protect Defence people, information, assets, and operations in alignment with the PSPF.

Australian Government • Australian • v2 July 2018

View details
GRCLaw

Disability Discrimination Act 1992

The Disability Discrimination Act 1992 is an Australian law prohibiting discrimination based on disability across various areas, including employment, education, access to services, and public spaces. It aims to promote equal opportunity and eliminate unjustifiable hardship for individuals with disabilities.

Australian Government • Australia • vNo. 31, 1 July 2016

View details
PrivacyLaw

Charter of the United Nations Act 1945

The Charter of the United Nations Act 1945 provides a legal framework for implementing United Nations Security Council Resolutions in Australia. It regulates the application of sanctions, the listing and proscription of individuals or entities, and addresses offenses related to UN sanctions.

Australian Government • Australia • vNo. 14, 1 July 2016

View details
GRCLaw

Autonomous Sanctions Act 2011

The Autonomous Sanctions Act 2011 establishes the legal framework for imposing sanctions by the Australian Government as part of its foreign policy objectives. It includes provisions for sanction regulations, offences, and enforcement mechanisms.

Australian Government • Australia • v26 May 2011

View details
CybersecurityStandard

FedRAMP Controls — FedRAMP Security Controls Baseline rev 5

The FedRAMP Security Controls Baseline is a standardized set of cloud security requirements based on NIST SP 800-53 that defines the minimum security controls cloud service providers must implement to protect federal data and achieve FedRAMP authorization.

US Government • USA • vrev 5

View details
CybersecurityFramework

CPG 1.0 — Cross-Sector Cybersecurity Performance Goals

The Cross-Sector Cybersecurity Performance Goals (CPGs) are a set of baseline cybersecurity practices developed by CISA to help organizations of all sizes and sectors strengthen their resilience against common cyber threats. They provide prioritized, actionable measures that align with the NIST Cybersecurity Framework and are designed to be achievable, cost-effective, and impactful.

Cybersecurity and Infrastructure Security Agency (CISA) • United States • v1.0.1

View details
GRCLaw

ASIC Act — Australian Securities and Investments Commission Act 2001

This Act establishes the legal framework for the operation of the Australian Securities and Investments Commission (ASIC), which is responsible for regulating company, financial services, and consumer protection laws in Australia. It outlines ASIC's powers, functions, and responsibilities while detailing provisions for consumer protection and fair competition in financial services industries.

Australian Government • Australia • vNo. 91, 1 July 2023

View details
CybersecurityGuideline

WA Cyber Security Policy — Western Australian Government Cyber Security Policy

The 2024 WA Government Cyber Security Policy outlines the baseline requirements for cyber security practices within Western Australian Government entities. It aims to reduce cyber security risks through a comprehensive and systematic approach to safeguarding digital information, information systems, and assets.

Department of the Premier and Cabinet - Office of Digital Government • Western Australia • v2024

View details
CybersecurityFramework

CSA IoT Controls v2 — CSA IoT Security Controls Framework v2

The CSA IoT Security Controls Framework v2 provides a structured approach to securing enterprise IoT systems, including connected devices, cloud services, and networking technologies. It is suitable for systems ranging from low-impact data processes to highly sensitive critical services.

Cloud Security Alliance (CSA) • v2

View details
PrivacyLaw

Anti-Discrimination Act 1991 (Qld) — Queensland Anti-Discrimination Act 1991

The Anti-Discrimination Act 1991 is legislation enacted by the Queensland Government to promote equality of opportunity, prohibit discrimination, and encourage tolerance in the state of Queensland, Australia. It covers areas such as work, education, and the provision of goods and services.

Queensland Government • Queensland

View details
GRCGuideline

RG 132 — Regulatory Guide 132: Funds management: Compliance and oversight

This regulatory guide outlines compliance and oversight obligations for managed investment schemes, retail and wholesale corporate collective investment vehicles, and other related entities. It helps responsible entities understand their obligations under the Corporations Act and other relevant laws.

Australian Securities & Investments Commission (ASIC) • Australia

View details

Ready to manage these frameworks?

6clicks maps regulations to controls, evidence and risks — automatically.

Book your strategy call