Cyber, critical infrastructure & AI standards — all in one place.
The latest standards, laws and regulations, with curated metadata, mapped controls and expert guidance from 6clicks. Built for GRC, compliance and security teams.
Browse by industry
Browse by sector. Each page shows relevant standards, laws, regulations, and frameworks.
Explore all industriesContent Library
Showing 20 of 198
Sex Discrimination Act 1984
A federal law enacted by the Australian Government to eliminate discrimination on the basis of sex, gender identity, sexual orientation, marital status, pregnancy, or family responsibilities. It also addresses sexual harassment and outlines protections in employment, education, goods and services, and public programs.
Attorney-General's Department • Australia • v1 January 2014
South Africa Electronic Communications and Transactions Act 25 of 2002
The Electronic Communications and Transactions Act 25 of 2002 establishes legal and policy frameworks for regulating electronic communications and transactions in South Africa. It aims to facilitate universal access to electronic services, prevent abuse of information systems, and promote the use of e-government services and small business technology adoption.
Government of South Africa • South Africa
Cert NZ Top 10 Critical Controls — Cert New Zealand Top Ten Critical Controls
The CERT NZ Top Ten Critical Controls is a cybersecurity framework that outlines ten essential security controls organizations can implement to reduce cyber risk, improve resilience, and protect systems, data, and services from common cyber attacks.
National Cyber Security Centre (NCSC) • New Zealand • v2021
Brazilian LGPD — Brazilian General Data Protection Law
The LGPD is Brazil’s first comprehensive data protection regulation, aligned with principles of the EU GDPR. It governs the processing, storage, and sharing of personal data of individuals within Brazil, including data security and breach notifications.
Brazilian government • Brazil
The Privacy and Electronic Communications (EC Directive) Regulations 2003
This UK regulation implements the EU Directive on privacy and electronic communications. It sets rules for the confidentiality of communications, restrictions on processing of traffic and location data, and regulates direct marketing via electronic channels.
UK Parliament • United Kingdom • v18th September 2003
Trade Marks Act 1995
The Trade Marks Act 1995 is an Australian legislation that governs the registration, use, protection, and enforcement of trade marks within the country. It provides rules for registering trade marks, handling disputes, managing trade mark rights, and addressing infringements.
Department of Industry, Science and Resources • Australia • vCompilation No. 38, 24 February 2019
Superannuation Guarantee (Administration) Act 1992
The Superannuation Guarantee (Administration) Act 1992 is an Australian law that mandates employers to provide a prescribed level of superannuation contributions to eligible employees. It outlines rules for calculating contributions, penalties for non-compliance, and record-keeping requirements.
Australian Government • Australia • vCompilation No. 67, 1 July 2017
Racial Discrimination Act 1975
The Racial Discrimination Act 1975 establishes legal protections against racial discrimination in Australia, implementing the International Convention on the Elimination of All Forms of Racial Discrimination. It prohibits racial hatred and discrimination in areas including employment, housing, and public services.
Australian Government • Australia • vCompilation No. 17, 10 December 2015
Korea PIPA — Korea Personal Information Protection Act
The Personal Information Protection Act establishes legal principles and requirements for protecting personal information within South Korea. It defines the rights of individuals regarding their data and sets obligations for organizations handling personal information.
South Korean Government • South Korea
Taiwan PDPA — Taiwan Personal Data Protection Act
The Personal Data Protection Act (PDPA) of Taiwan establishes legal requirements for the collection, processing, and utilization of personal data in order to protect personality rights while enabling appropriate use of such data. It applies to both government and non-government entities, ensuring compliance and safeguarding individuals' privacy and rights.
Personal Data Protection Commission • Taiwan
Thailand PDPA — Thailand Personal Data Protection Act B.E. 2562 (2019)
The Personal Data Protection Act B.E. 2562 (2019) is Thailand's primary law for personal data protection. It establishes rules for data collection, use, and disclosure, and aims to protect individuals' personal information and ensure effective remedies for violations.
Government of Thailand • Thailand • v27 May 2019
Netherlands WBP — Netherlands Personal Data Protection Act
The Personal Data Protection Act (WBP) was the Netherlands' data protection law that governed the processing of personal data and established privacy rights, data protection obligations, and regulatory oversight for organizations handling personal information.
Government of Netherlands • Netherlands
New York Privacy Act
The New York Privacy Act aims to provide state-level consumer privacy protections similar to California’s CCPA. It introduces rights like access, correction, and challenging automated decision-making, while requiring businesses to implement security measures and obtain consent for specific practices.
New York State Legislature • New York, United States
Spain ENS — Spain - National Security Framework
The National Security Framework (ENS) is Spain's national cybersecurity framework that defines security principles and controls for public sector organizations and their suppliers to protect information systems and ensure the confidentiality, integrity, availability, authenticity, and traceability of digital services.
Government of Spain • Spain • v5 May 2022
Mauritius DPA — Mauritius Data Protection Act 2017
The Data Protection Act 2017 establishes legal protections for privacy rights in Mauritius, regulating the collection, processing, storage, and use of personal information. It aims to safeguard privacy amid technical advancements while balancing the needs of government, businesses, and individuals.
Government of Mauritius • Mauritius
BDSG — Germany Federal Data Protection Act
The Federal Data Protection Act (BDSG) is Germany's national data protection law that complements the GDPR by establishing rules for personal data processing, privacy protection, regulatory oversight, and compliance obligations for public and private sector organizations.
v23 June 2021
Switzerland FADP — Switzerland Federal Act on Data Protection
The Federal Act on Data Protection (FADP) is Switzerland's data protection law that regulates the processing of personal data and protects the privacy rights of individuals by establishing requirements for lawful, transparent, and secure data handling.
The Federal Assembly of the Swiss Confederation • Switzerland • v3 January 2019
Estonia PDPA — Estonia - Personal Data Protection Act
The Estonia Personal Data Protection Act (IKS) is Estonia's data protection law that implements and supplements the GDPR, establishing requirements for personal data processing, privacy protection, and regulatory oversight.
Government of Estonia • Estonia • v15 January 2019
Dubai HDPR — Dubai Health Data Protection Regulation - DHCC Regulation No. 7 of 2013
The Dubai Health Data Protection Regulation is a healthcare privacy regulation that governs the protection, use, disclosure, and management of patient health information within Dubai Healthcare City, ensuring the confidentiality and security of health data.
Dubai Healthcare City Authority (DHCA) • Dubai • v21 October 2013
Finland Data Protection Act — Data Protection Act (1050/2018) - Finland
The Data Protection Act (1050/2018) provides national specifications and supplements the EU GDPR in Finland. It governs the roles and powers of the data protection authority, sets age limits for services to children, and includes rules for special categories of personal data and data processing in public interest contexts.
Government of Finland • Finland • v1050/2018
Partner directory
Certified resellers, integrators and advisors to help you implement and manage your GRC program.

1886 Consulting
- Region
- Australia
Tap into our knowledge of wealth.
Governance • Risk Management • Compliance Management • GRC Advisory

19eighty Advisory
- Region
- Australia
Business ownership is the most powerful calling.

3 Lights
- Region
- Australia
GRC and security specialists committed to the creation and protection of organisational value.
Risk Management • ISO 27001 • NIST CSF • Essential Eight

3Quotes
- Region
- Canada
Your IT Procurement Partner

A1 Hrvatska d.o.o.
- Region
- Croatia
Croatia's leading telecommunications provider offering mobile, internet, TV, and managed security services.
Managed Security Services • Security Operations • Cloud Security

Accenture
- Region
- Ireland
De-risk tomorrow by infusing cybersecurity into strategy, resilience, and protection at global scale.
GRC Advisory • Risk Management • Compliance Management • Security Operations

AfterDark Technology
- Region
- Australia
ISO 27001-certified managed IT services provider keeping Australian businesses secure, reliable, and running.
IT Managed Services • Managed Security Services • Essential Eight • ISO 27001

Archer & Round
- Region
- Australia
Cybersecurity that keeps you one step ahead with 24/7 managed SOC, vCISO, and GRC services.
Managed Security Services • Governance • Risk Management • Incident Response
Ready to manage these frameworks?
6clicks maps regulations to controls, evidence and risks — automatically.