Policy

  1. This policy describes how all South Australian Government agencies can safeguard their information and communication technology (ICT) systems to ensure the confidentiality, integrity and availability of official information. This includes defending against common and emerging cyber threats (e.g. bots, malware, ransomware, spam) and the threat of malicious insiders, while facilitating the continuous delivery of government business.

Safeguard ICT systems from compromise to ensure confidentiality, integrity and availability of official information is maintained

  1. To safeguard ICT systems from compromise to ensure confidentiality, integrity and availability of official information is maintained, agencies must:
    1. I. apply the appropriate processes and protections as outlined in the South Australian Cyber Security Framework (SACSF)

Guidance

  1. The SACSF has been developed to assist all agencies to identify and develop the cyber security requirements appropriate to their agency’s function and risk profile. The SACSF replaces the former South Australian Information Security Management Framework (ISMF).
  2. The SACSF provides considerable guidance for agency Information Technology Security Adviser’s (ITSA) and security teams to assist with implementation within their agency.
  3. Agencies should contact their ASE or ITSA for guidance on how the SACSF applies to their agency.

Approved by: Jim McDowellTitle: Chief Executive, Department of the Premier and Cabinet
Division: Security and Emergency Management, Intergovernmental and Diplomatic RelationsDate of approval: 25 November 2019
Revision number: 1.1Date of review: 20 April 2020

Change log

VersionDateChanges
1.025/11/2019First issue of policy
1.120/04/2020Removal of word 'your' throughout entire document
2.014/11/2022Policy reviewed, no changes