Cyber, critical infrastructure & AI standards — all in one place.

The latest standards, laws and regulations, with curated metadata, mapped controls and expert guidance from 6clicks. Built for GRC, compliance and security teams.

Browse by industry

Browse by sector. Each page shows relevant standards, laws, regulations, and frameworks.

Explore all industries

Content Library

Showing 11 of 91

GRCStandard

CPS 226 — Prudential Standard CPS 226: Margining and Risk Mitigation for Non-centrally Cleared Derivatives

This is an Australian standard issued by APRA outlining the requirements for margining and risk mitigation of non-centrally cleared derivatives. It ensures financial institutions operate with adequate practices to manage counterparty risk.

Australian Prudential Regulation Authority (APRA) • Australia

View details
GRCStandard

CPS 232 — Prudential Standard CPS 232 Business Continuity Management

CPS 232 is an Australian Prudential Standard that outlines the requirements for regulated entities to maintain and manage effective business continuity plans. It ensures that entities are prepared to address and recover from disruptions to their operations.

Australian Prudential Regulation Authority (APRA) • Australia

View details
GRCStandard

CPS 230 — Prudential Standard CPS 230 Operational Risk Management

CPS 230 sets out requirements for APRA-regulated entities to effectively manage operational risks. It covers obligations on governance, risk frameworks, and risk controls to ensure resilience against operational disruptions.

Australian Prudential Regulation Authority (APRA) • Australia

View details
GRCGuideline

RG 166 — RG 166 AFS Licensing: Financial Requirements

RG 166 provides financial requirements for holders of an Australian Financial Services (AFS) licence, which vary based on the financial products and services offered. It excludes entities regulated by the Australian Prudential Regulation Authority (APRA) that are not required to comply with specific provisions of the Corporations Act 2001.

Australian Securities and Investments Commission (ASIC) • Australia

View details
GRCGuideline

RG 104 — RG 104 AFS Licensing: Meeting the General Obligations

This regulatory guide provides information for Australian Financial Services (AFS) licensees and applicants about compliance with general obligations under section 912A(1) of the Corporations Act. It outlines what ASIC looks for during assessments of compliance.

Australian Securities and Investments Commission (ASIC) • Australia

View details
GRCGuideline

RG 105 — RG 105 AFS Licensing: Organisational Competence

This guide outlines the requirements for Australian financial services (AFS) licensees and applicants to meet the 'organisational competence obligation' under the Corporations Act. It provides clarity on compliance expectations relating to the qualifications, experience, and capability of key individuals within the licensee's organization.

Australian Securities and Investments Commission (ASIC) • Australia

View details
GRCStandard

CPS 510 — Prudential Standard CPS 510 Governance

This is a prudential standard issued by the Australian Prudential Regulation Authority (APRA) to provide requirements for governance of regulated entities. It focuses on promoting sound corporate governance practices.

Australian Prudential Regulation Authority (APRA) • Australia

View details
GRCGuideline

RG 270 — RG 270 Whistleblower Policies

This guide provides entities with information on establishing whistleblower policies that comply with legal obligations under the Corporations Act. It includes guidance for both entities required to have such policies and those managing whistleblowing under legal frameworks.

Australian Securities and Investments Commission (ASIC) • Australia

View details
GRCGuideline

RG 259 — RG 259 Risk management systems of fund operators

This regulatory guide provides specific guidance for Australian financial services (AFS) licensees that are responsible entities or corporate directors (fund operators) on how to comply with their obligation under s912A(1)(h) of the Corporations Act 2001 to maintain adequate risk management systems.

Australian Securities and Investments Commission (ASIC) • Australia

View details
CybersecurityStandardControl set

ISO/IEC 27001:2013 — ISO/IEC 27001:2013 - Information technology — Security techniques — Information security management systems — Requirements

ISO/IEC 27001:2013 specifies the requirements for establishing, implementing, maintaining, and continually improving an information security management system (ISMS). It also includes guidelines for assessing and addressing information security risks in organizations.

ISO/IEC • Global • v2013

View details
CybersecurityStandardControl set

ISO/IEC 27001:2022 — ISO/IEC 27001:2022 - Information security, cybersecurity and privacy protection — Information security management systems — Requirements

ISO/IEC 27001:2022 is an international standard defining requirements for an information security management system (ISMS). It helps organizations establish, implement, maintain, and continually improve their information security processes to manage data-related risks.

ISO/IEC • Global • v2022

View details

Ready to operationalize these standards?

6clicks maps regulations to controls, evidence and risks automatically.

Book your strategy call