Cyber, critical infrastructure & AI standards — all in one place.
The latest standards, laws and regulations, with curated metadata, mapped controls and expert guidance from 6clicks. Built for GRC, compliance and security teams.
Browse by industry
Browse by sector. Each page shows relevant standards, laws, regulations, and frameworks.
Explore all industriesContent Library
Showing 20 of 86
201 CMR 17.00 — Massachusetts: Standards for the protection of personal information of residents of the Commonwealth
201 CMR 17.00 is a Massachusetts information security regulation that establishes minimum requirements for protecting the personal information of Massachusetts residents through administrative, technical, and physical security safeguards.
Office of Consumer Affairs and Business Regulation • Massachusetts, USA
ESMA Minimum Standard IT Security Controls
The ESMA Minimum Standard IT Security Controls is a cybersecurity and compliance framework that defines the minimum security requirements service providers must implement to protect ESMA systems, applications, data, and information services.
European Securities and Markets Authority (ESMA) • EU
Alabama Data Breach Notification Act of 2018 — Chapter 38 Data Breach Notification Act of 2018
The Alabama Data Breach Notification Act of 2018 is a state data protection law that requires organizations to safeguard sensitive personal information, investigate security breaches, and provide timely notification to affected individuals and regulatory authorities when personal data is compromised.
State of Alabama • Alabama, USA • vPolicy 621-01
Arkansas PIPA — Arkansas Personal Information Protection Act
The Arkansas Personal Information Protection Act (PIPA) is a data privacy and security law that requires organizations to protect personal information, implement reasonable security measures, and notify affected individuals in the event of a qualifying data breach.
State of Arkansas • Arkansas, USA
NDPR 2019 — Nigeria Data Protection Regulation
The Nigeria Data Protection Regulation (NDPR) 2019 is Nigeria's data protection framework that establishes requirements for the lawful processing, protection, and transfer of personal data while safeguarding the privacy rights of individuals and promoting responsible data management practices.
Government of Nigeria • Nigeria • v2019
Nevada Chapter 603A — Security and Privacy of Personal Information
Nevada Chapter 603A - Security and Privacy of Personal Information is a Nevada privacy and data security law that requires organizations to safeguard personal information, notify individuals of certain data breaches, and comply with consumer privacy requirements relating to the collection, use, and protection of personal data.
State of Nevada • Nevada, USA
Israel - Privacy Protection (Transfer of Data to Databases Abroad) Regulations, 5761-2001
The Privacy Protection (Transfer of Data to Databases Abroad) Regulations, 5761-2001 establish Israel's requirements for cross-border transfers of personal data, ensuring that personal information transferred outside Israel remains subject to adequate privacy and data protection safeguards.
Government of Israel • Israel
Cyprus - Law 125(I)2018 — Protection of Natural Persons with regard to the Processing of Personal Data and for the Free Movement of such Data of 2018
Law 125(I)/2018 is Cyprus's data protection legislation that implements and supplements the GDPR, establishing requirements for personal data processing, privacy protection, regulatory oversight, and the protection of individuals' data rights.
Government of Cyprus • Cyprus
Superannuation Guarantee (Administration) Act 1992
The Superannuation Guarantee (Administration) Act 1992 is an Australian law that mandates employers to provide a prescribed level of superannuation contributions to eligible employees. It outlines rules for calculating contributions, penalties for non-compliance, and record-keeping requirements.
Australian Government • Australia • vCompilation No. 67, 1 July 2017
BDSG — Germany Federal Data Protection Act
The Federal Data Protection Act (BDSG) is Germany's national data protection law that complements the GDPR by establishing rules for personal data processing, privacy protection, regulatory oversight, and compliance obligations for public and private sector organizations.
v23 June 2021
Switzerland FADP — Switzerland Federal Act on Data Protection
The Federal Act on Data Protection (FADP) is Switzerland's data protection law that regulates the processing of personal data and protects the privacy rights of individuals by establishing requirements for lawful, transparent, and secure data handling.
The Federal Assembly of the Swiss Confederation • Switzerland • v3 January 2019
Estonia PDPA — Estonia - Personal Data Protection Act
The Estonia Personal Data Protection Act (IKS) is Estonia's data protection law that implements and supplements the GDPR, establishing requirements for personal data processing, privacy protection, and regulatory oversight.
Government of Estonia • Estonia • v15 January 2019
Protection of Movable Cultural Heritage Act 1986
The Protection of Movable Cultural Heritage Act 1986 establishes a framework for safeguarding movable cultural heritage in Australia. It provides regulations concerning the export, import, administration, and enforcement related to cultural heritage objects.
Australian Government • Australia • vCompilation No. 18, 21 October 2016
FBTAA 1986 — Fringe Benefits Tax Assessment Act 1986
The Fringe Benefits Tax Assessment Act 1986 is the Australian legislation that governs the taxation of non-cash benefits provided by employers to employees, establishing the rules for identifying, valuing, and taxing fringe benefits.
Australian Government • Australia • vCompilation No. 84, 1 April 2019
Agricultural and Veterinary Chemicals Code Act 1994
This Australian law establishes the framework for regulating agricultural and veterinary chemical products. It governs approvals, registrations, manufacturing, use, labeling, distribution, and enforcement actions to ensure safety, efficacy, and compliance across the chemicals sector.
Australian Government • Australia • vCompilation No. 29, 21 October 2016
3PS 310 — Banking, Insurance and Life Insurance (Prudential Standard) Determination No. 4 of 2016 - Prudential Standard 3PS 310 Audit and Related Matters
This prudential standard sets out auditing and related responsibilities for entities operating within the banking, insurance, and life insurance sectors in Australia. It is part of the regulatory framework administered by the Department of Treasury under the Banking Act, Insurance Act, and Life Insurance Act.
Australian Prudential Regulation Authority (APRA) • Australia
3PS 221- Aggregate Risk Exposures — Banking, Insurance and Life Insurance (prudential standard) determination No. 2 of 2016 - Prudential Standard 3PS 221 Aggregate Risk Exposures
This legislative determination establishes prudential requirements for managing and reporting aggregate risk exposures within banking, insurance, and life insurance sectors. It aims to ensure robust risk management practices across these industries.
Australian Prudential Regulation Authority (APRA) • Australia • v13 September 2016
Work Health and Safety Regulations 2011
The Work Health and Safety Regulations 2011 establish detailed requirements for workplace health and safety in compliance with the Work Health and Safety Act 2011. They cover topics such as risk management, workplace conditions, hazardous materials, emergency plans, and licensing for high-risk activities.
Australian Government • Australia • vNo. 15, 1 July 2020
Work Health and Safety Act 2011
The Work Health and Safety Act 2011 is Australian legislation that establishes a framework to ensure workplace safety and health across various industries and occupations. It defines responsibilities for employers, workers, and other parties in maintaining safe conditions and managing risks related to work-related activities.
Australian Government • Australia • vNo. 9, 1 July 2018
BCI Act — Building and Construction Industry (Improving Productivity) Act 2016
The Building and Construction Industry (Improving Productivity) Act 2016 establishes a regulatory framework aimed at improving productivity and accountability within the building and construction sector in Australia. It provides for the creation of the Australian Building and Construction Commission and outlines rules governing industrial actions, security of payments, and compliance with workplace safety regulations.
Australian Government • Australia • vNo. 2, 17 February 2017
Partner directory
Certified resellers, integrators and advisors to help you implement and manage your GRC program.

1886 Consulting
- Region
- Australia
Tap into our knowledge of wealth.
Governance • Risk Management • Compliance Management • GRC Advisory

19eighty Advisory
- Region
- Australia
Business ownership is the most powerful calling.

3 Lights
- Region
- 4001, Brisbane, Australia
GRC | Information Security | Cyber | Advisory Services | Operations
Risk Management • ISO 27001 • NIST CSF • Essential Eight

3Quotes
- Region
- Canada
Your IT Procurement Partner

A1 Hrvatska d.o.o.
- Region
- Croatia
Croatia's leading telecommunications provider offering mobile, internet, TV, and managed security services.
Managed Security Services • Security Operations • Cloud Security

Accenture
- Region
- Australia
De-risk tomorrow by infusing cybersecurity into strategy, resilience, and protection at global scale.
GRC Advisory • Risk Management • Compliance Management • Security Operations

AfterDark Technology
- Region
- Australia
ISO 27001-certified managed IT services provider keeping Australian businesses secure, reliable, and running.
IT Managed Services • Managed Security Services • Essential Eight • ISO 27001

Archer & Round
- Region
- Australia
Cybersecurity that keeps you one step ahead with 24/7 managed SOC, vCISO, and GRC services.
Managed Security Services • Governance • Risk Management • Incident Response
Ready to manage these frameworks?
6clicks maps regulations to controls, evidence and risks — automatically.