Skip to main content

Cybersecurity Policy and Regulation

Cybersecurity Policy and Regulation is the capability to develop, oversee, and enforce policies and regulations that protect an organization's information systems and technologies from, and mitigate the risks of, cyber threats and incidents, in alignment with corporate governance requirements and applicable laws.

Level 1: Emerging

At an emerging level, you are familiarising yourself with basic cybersecurity policies and regulations. You're beginning to apply this knowledge to support and enhance governance practices within the organization.

Level 2: Proficient

At a proficient level, you are able to effectively develop and implement cybersecurity policies and regulations within the organization to ensure compliance and protection of sensitive information.

Level 3: Advanced

At an advanced level, you are able to independently develop, implement, and evaluate cybersecurity policies and regulations to ensure governance practices align with industry standards and regulatory requirements.

Where is this capability used?