Compliance Node Overview
The Security of Critical Infrastructure Act 2018 (Cth) imposes positive security obligations on owners and operators of 22 critical infrastructure asset classes across 11 sectors. Responsible entities must register assets, implement Critical Infrastructure Risk Management Programs (CIRMPs), and report significant cyber incidents to the Australian Cyber Security Centre (ACSC) within 12 hours (for critical incidents) or 72 hours.
Pillar: Cybersecurity · Authority: Australian Government - Department of Home Affairs · Version: 1.0.0 · Last updated:
Primary source: https://www.legislation.gov.au/Series/C2018A00029
SHA-256 integrity: 268d36de5c0db7c62f5ee92f3a2f9c6618e68d5d81cf6754b61a2c738b74b607
Primary Citations — 5 traced to source
- {"title":"Security of Critical Infrastructure Act 2018 (Cth)","url":"https://www.legislation.gov.au/Series/C2018A00029","section":"Parts 2, 2A, 2B, 3A, 3B - Registration, CIRMP, Incident Reporting, SoNS"}
- {"title":"Security of Critical Infrastructure (Critical Infrastructure Risk Management Program) Rules 2023","url":"https://www.legislation.gov.au/current/F2023L01561","section":"CIRMP Rules - Risk Management Program Requirements"}
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.