CybersecurityStandard

VPDSS 2.0

Victorian Protective Data Security Standards V2.0

The Victorian Protective Data Security Standards (VPDSS) establish 12 high-level mandatory requirements for the protection of public sector information in Victoria, Australia. These requirements cover governance, information, personnel, ICT, and physical security, focusing on a risk-managed approach tailored to the Victorian government context.

Overview

The VPDSS 2.0 provide a structured framework to secure public sector information. Issued in October 2019, the standards replaced the 2016 version and are consistent with national and international security frameworks. They aim to ensure effective and economic investment in security measures, supporting efficient governance, information lifecycle management, personnel security, ICT security, and physical protections. Contracted service providers with access to public sector information must also comply. The standards empower Victorian public sector organizations to manage risks, make informed decisions, and share information securely.

Related in Cybersecurity

CybersecurityStandard

NDIS Practice Standards and Quality Indicators v4

The NDIS Practice Standards and Quality Indicators v4 is Australia's quality and compliance framework for registered NDIS providers, defining the standards and quality indicators required to deliver safe, person-centred, and high-quality disability supports and services.

NDIS Quality and Safeguards Commission β€’ Australia β€’ v4

View details
CybersecurityStandard

NDIS SIL Module β€” NDIS Supported Independent Living Module

The NDIS Supported Independent Living (SIL) Module is a supplementary NDIS Practice Standards module that sets quality and safety requirements for providers delivering Supported Independent Living services, ensuring participants receive person-centred supports that promote independence, choice, inclusion, and wellbeing.

NDIS Quality and Safeguards Commission β€’ Australia

View details
CybersecurityStandard

CCC-2: 2024 β€” Cloud Cybersecurity Controls

The Cloud Cybersecurity Controls (CCC – 2: 2024) define minimum cybersecurity requirements for cloud computing services used by Cloud Service Providers (CSPs) and Cloud Service Tenants (CSTs) in Saudi Arabia. The controls aim to enhance national cybersecurity goals and mitigate cyber risks.

National Cybersecurity Authority (NCA) β€’ Saudi Arabia β€’ v2: 2024

View details
CybersecurityStandard

OTCC-1:2022 β€” Operational Technology Cybersecurity Controls

The Operational Technology Cybersecurity Controls (OTCC-1:2022), developed by Saudi Arabia’s National Cybersecurity Authority (NCA), establish minimum cybersecurity requirements for Operational Technology (OT) and Industrial Control Systems (ICS) environments. The framework aims to protect critical infrastructure from cyber threats and enhance operational resilience, safety, and security. OTCC consists of 4 domains, 23 subdomains, 47 controls, and 122 sub-controls, with requirements categorized across three control levels (L1, L2, and L3) based on facility criticality and risk.

National Cybersecurity Authority (NCA) β€’ Saudi Arabia β€’ v2022

View details

Ready to manage these frameworks?

6clicks maps regulations to controls, evidence and risks β€” automatically.

Book your strategy call