Cyber, critical infrastructure & AI standards — all in one place.

The latest standards, laws and regulations, with curated metadata, mapped controls and expert guidance from 6clicks. Built for GRC, compliance and security teams.

Browse by industry

Browse by sector. Each page shows relevant standards, laws, regulations, and frameworks.

Explore all industries

Content Library

Showing 20 of 231

CybersecurityLaw

NDPR 2019 — Nigeria Data Protection Regulation

The Nigeria Data Protection Regulation (NDPR) 2019 is Nigeria's data protection framework that establishes requirements for the lawful processing, protection, and transfer of personal data while safeguarding the privacy rights of individuals and promoting responsible data management practices.

Government of Nigeria • Nigeria • v2019

View details
CybersecurityStandard

NZISM — New Zealand Information Security Manual

The New Zealand Information Security Manual (NZISM) is the New Zealand Government’s information security framework that provides baseline security controls, processes, and guidance to help organizations protect information systems and manage cybersecurity risks effectively.

New Zealand Government Communications Security Bureau (GCSB) • New Zealand • version 3.9

View details
PrivacyRegulation

Nevada Chapter 603A — Security and Privacy of Personal Information

Nevada Chapter 603A - Security and Privacy of Personal Information is a Nevada privacy and data security law that requires organizations to safeguard personal information, notify individuals of certain data breaches, and comply with consumer privacy requirements relating to the collection, use, and protection of personal data.

State of Nevada • Nevada, USA

View details
PrivacyLaw

Maine - An Act To Protect the Privacy of Online Customer Information

This law establishes privacy protections for broadband Internet access service customers in Maine. Providers are prohibited from using, disclosing, selling or allowing access to customer personal information unless explicit consent is given, with certain exceptions for service provision, emergency scenarios, and lawful orders. The law also mandates providers to adopt reasonable security measures for customer data and gives customers rights regarding consent and notification requirements.

Maine Legislature • Maine, USA

View details
PrivacyLaw

Kenya DPA — Kenya Data Protection Act No. 24 OF 2019

The Data Protection Act, 2019 is Kenya’s national data protection law that regulates the processing of personal data, establishes privacy rights for individuals, and sets obligations for organizations to protect personal information through secure and lawful data handling practices.

Government of Kenya • Kenya

View details
PrivacyRegulation

Israel - Privacy Protection (Transfer of Data to Databases Abroad) Regulations, 5761-2001

The Privacy Protection (Transfer of Data to Databases Abroad) Regulations, 5761-2001 establish Israel's requirements for cross-border transfers of personal data, ensuring that personal information transferred outside Israel remains subject to adequate privacy and data protection safeguards.

Government of Israel • Israel

View details
PrivacyRegulation

PP 82/2012 — Indonesia - Peraturan Pemerintah No.82 Tahun 2012 - Government Regulation - Data Protection Regulation

This regulation specifies the requirements for electronic system and transaction operations in Indonesia, including provisions for electronic agents, signatures, certification, and data management. It aims to ensure security, transparency, and accountability in the use and management of electronic systems and information.

Government of the Republic of Indonesia • Indonesia

View details
PrivacyLaw

Hawaii - Security Breach of Personal Information Chapter 487N

Hawaii Security Breach of Personal Information (Chapter 487N) is a Hawaii state law that requires businesses and government agencies to notify affected individuals of data breaches involving personal information and establishes requirements for protecting and managing sensitive personal data.

State of Hawaii • Hawaii

View details
PrivacyLaw

Greece Law 2472/1997 — Greece Law 2472/1997 on the Protection of Individuals with regard to the Processing of Personal Data

Law 2472/1997 is a legal framework from Greece designed to safeguard individual privacy rights in relation to the processing of personal data. It aligns with principles outlined in the EU Charter of Fundamental Rights, specifically addressing data protection and privacy issues.

Government of Greece • Greece

View details
PrivacyLaw

Ghana Data Protection Act — Ghana Data Protection Act, 2012 (Act 843)

The Data Protection Act, 2012 (Act 843) is Ghana’s data protection law that regulates the processing of personal data, establishes privacy rights for individuals, and sets requirements for organizations to protect and manage personal information responsibly.

Government of Ghana • Ghana

View details
PrivacyLaw

Pakistan EDPA 2005 — Pakistan The Electronic Data Protection Act, 2005

The Electronic Data Protection Act, 2005 is a law enacted in Pakistan to address the processing and protection of electronic data. It aims to ensure the privacy, security, and rights of data subjects, with provisions for data processing, security measures, and penalties for violations.

Government of Pakistan • Pakistan

View details
CybersecurityFramework

DESE ISMS Scheme — DESE Information Security Management Systems (ISMS) Scheme

The DESE ISMS Scheme is an information security certification framework that combines ISO/IEC 27001, the Australian Government Information Security Manual (ISM), and the Right Fit For Risk (RFFR) framework to help service providers manage cyber risks and protect sensitive information.

Australian Department of Employment and Workplace Relations (DEWR) • Australia

View details
PrivacyLaw

Cyprus - Law 125(I)2018 — Protection of Natural Persons with regard to the Processing of Personal Data and for the Free Movement of such Data of 2018

Law 125(I)/2018 is Cyprus's data protection legislation that implements and supplements the GDPR, establishing requirements for personal data processing, privacy protection, regulatory oversight, and the protection of individuals' data rights.

Government of Cyprus • Cyprus

View details
GRCLaw

Sex Discrimination Act 1984

A federal law enacted by the Australian Government to eliminate discrimination on the basis of sex, gender identity, sexual orientation, marital status, pregnancy, or family responsibilities. It also addresses sexual harassment and outlines protections in employment, education, goods and services, and public programs.

Attorney-General's Department • Australia • v1 January 2014

View details
GRCLaw

South Africa Electronic Communications and Transactions Act 25 of 2002

The Electronic Communications and Transactions Act 25 of 2002 establishes legal and policy frameworks for regulating electronic communications and transactions in South Africa. It aims to facilitate universal access to electronic services, prevent abuse of information systems, and promote the use of e-government services and small business technology adoption.

Government of South Africa • South Africa

View details
CybersecurityStandard

Cert NZ Top 10 Critical Controls — Cert New Zealand Top Ten Critical Controls

The CERT NZ Top Ten Critical Controls is a cybersecurity framework that outlines ten essential security controls organizations can implement to reduce cyber risk, improve resilience, and protect systems, data, and services from common cyber attacks.

National Cyber Security Centre (NCSC) • New Zealand • v2021

View details
PrivacyLaw

Brazilian LGPD — Brazilian General Data Protection Law

The LGPD is Brazil’s first comprehensive data protection regulation, aligned with principles of the EU GDPR. It governs the processing, storage, and sharing of personal data of individuals within Brazil, including data security and breach notifications.

Brazilian government • Brazil

View details
PrivacyRegulation

The Privacy and Electronic Communications (EC Directive) Regulations 2003

This UK regulation implements the EU Directive on privacy and electronic communications. It sets rules for the confidentiality of communications, restrictions on processing of traffic and location data, and regulates direct marketing via electronic channels.

UK Parliament • United Kingdom • v18th September 2003

View details
GRCLaw

Trade Marks Act 1995

The Trade Marks Act 1995 is an Australian legislation that governs the registration, use, protection, and enforcement of trade marks within the country. It provides rules for registering trade marks, handling disputes, managing trade mark rights, and addressing infringements.

Department of Industry, Science and Resources • Australia • vCompilation No. 38, 24 February 2019

View details
GRCLaw

Superannuation Guarantee (Administration) Act 1992

The Superannuation Guarantee (Administration) Act 1992 is an Australian law that mandates employers to provide a prescribed level of superannuation contributions to eligible employees. It outlines rules for calculating contributions, penalties for non-compliance, and record-keeping requirements.

Australian Government • Australia • vCompilation No. 67, 1 July 2017

View details

Partner directory

Certified resellers, integrators and advisors to help you implement and manage your GRC program.

Explore all partners (88)

Ready to manage these frameworks?

6clicks maps regulations to controls, evidence and risks — automatically.

Book your strategy call