Complete Inventory of Australian AI Security Documents
April 17, 2026 ยท View on GitHub
68 documents across federal and state/territory governments
This inventory catalogues all known Australian AI Security standards, policies, frameworks, and guidance documents. Each entry includes status (mandatory/voluntary), scope, and direct links where available.
Legend:
- Mandatory - Legal or policy requirement
- Sector-Specific - Binding for specific industries
- Voluntary - Best practice
- Guidance - Informational/advisory
- Date - Latest version or release date
- Link - Direct URL to document
Table of Contents
- Federal - ACSC/ASD Technical Guidance
- Federal - Information Security Manual (ISM)
- Federal - Protective Security Policy Framework (PSPF)
- Federal - Critical Infrastructure (SOCI/CISC)
- Federal - Digital Transformation Agency (DTA)
- Federal - Department of Industry, Science and Resources (DISR)
- Federal - Sector Regulators
- Federal - Other Agencies
- New South Wales
- Victoria
- Queensland
- South Australia
- Western Australia
- Tasmania
- Northern Territory
- Australian Capital Territory
- Cross-Jurisdictional
Federal - ACSC/ASD Technical Guidance
Primary technical guidance for AI security from Australia's cyber security authority.
| Document | Date | Status | Partners | Key Focus |
|---|---|---|---|---|
| Engaging with Artificial Intelligence | Jan 2024 | Voluntary | CISA, FBI, NSA, NCSC-UK, CCCS, NCSC-NZ, Japan NISC | Data poisoning, prompt injection, supply chain risks, model stealing |
| Deploying AI Systems Securely | Apr 2024 | Voluntary | NSA AISC (lead), Five Eyes | Secure deployment, access controls, network segmentation, AI red-teaming, GPU security |
| Guidelines for Secure AI System Development | Nov 2023 | Voluntary | NCSC-UK/CISA (lead), 23 agencies | Secure design lifecycle, SBOM, supply chain, threat modelling |
| AI Data Security | May 2025 | Voluntary | NSA AISC, Five Eyes | Data supply chain, poisoning, encryption, provenance tracking, content credentials |
| AI/ML Supply Chain Risks and Mitigations | Oct 2025 | Voluntary | ASD's ACSC only | Pre-trained model risks, AI BOMs, vendor risk, defence-in-depth |
| Content Credentials | Jan 2025 | Voluntary | NSA, CCCS, NCSC-UK | Deepfakes, media provenance, C2PA standard, cryptographic signing |
| Frontier Models and Their Impact on Cyber Security | Apr 2026 | Guidance | ASD's ACSC | Frontier AI vulnerability discovery, patch tempo, attack surface reduction, defence-in-depth, Secure by Design |
ACSC Alerts and Advisories (AI-related)
Note: ACSC publishes AI-related alerts and advisories periodically. Check cyber.gov.au for current advisories.
Federal - Information Security Manual (ISM)
Mandatory security controls for Australian Government entities. AI-specific controls added 2024-2025.
| Control ID | Title | Date Added | Applicability | Requirement |
|---|---|---|---|---|
| ISM-1923 | OWASP Top 10 for LLM | Jun 2024 | Mandatory | Mitigate risks identified in OWASP Top 10 for Large Language Model Applications |
| ISM-1924 | Adversarial Input Detection | Jun 2024 | Mandatory | Detect and mitigate adversarial inputs including prompt injection attempts |
| ISM-2072 | AI Model Storage Formats | Sep 2025 | Mandatory | Store AI models in formats that do not allow arbitrary code execution (e.g., safetensors over pickle) |
Source: Information Security Manual
Related ISM Guidelines
| Guideline | Relevance to AI |
|---|---|
| Guidelines for Software Development | Applies to AI/ML code development |
| Guidelines for System Hardening | Applies to AI infrastructure |
| Guidelines for Database Systems | Applies to training data storage |
| Guidelines for Cryptography | Applies to model encryption, secure inference |
Federal - Protective Security Policy Framework (PSPF)
Mandatory protective security requirements for Commonwealth entities.
| Document | Date | Status | Scope | Key AI Provisions |
|---|---|---|---|---|
| PSPF Release 2025 | Jul 2025 | Mandatory | Non-corporate Commonwealth entities | New AI, quantum, and connected peripherals content |
| PSPF Policy Advisory 001-2025 | Oct 2025 | Mandatory | All Commonwealth entities | Rules for OFFICIAL information with generative AI; approved providers (OpenAI, Anthropic) |
| PSPF Direction 001-2025 (DeepSeek Ban) | Feb 2025 | Mandatory | All Commonwealth entities | Prohibition on DeepSeek products, applications, web services |
PSPF Supporting Materials
| Document | Purpose |
|---|---|
| Hosting Certification Framework | Certifies AI service providers for government use |
| FOCI Assessment Guidelines | Foreign Ownership, Control, Influence assessment for AI providers |
Federal - Critical Infrastructure (SOCI/CISC)
Requirements for critical infrastructure sectors under the Security of Critical Infrastructure Act 2018.
| Document | Date | Status | Scope | AI Relevance |
|---|---|---|---|---|
| Security of Critical Infrastructure Act 2018 | Nov 2024 (amended) | Mandatory | 22 critical infrastructure asset classes | AI systems in CI must be covered under CIRMP |
| CIRMP Rules | Aug 2024 | Mandatory | Responsible entities | Cyber hazard vector covers AI systems |
| CISC AI Factsheet | Jun 2025 | Guidance | Critical infrastructure owners | Three AI risk categories: attacks using AI, attacks on AI, AI reliability failures |
| Cyber Incident Reporting Requirements | Jul 2024 | Mandatory | CI asset owners | 12-hour reporting for critical AI-related incidents |
Federal - Digital Transformation Agency (DTA)
AI governance for the Australian Public Service.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| Policy for the Responsible Use of AI in Government v2.0 | Dec 2025 | Mandatory | Non-corporate Commonwealth entities | Chief AI Officers, transparency statements, high-risk oversight |
| AI Plan for the Australian Public Service | Nov 2025 | Policy | APS | Every agency to have AI training, Chief AI Officers, usage tracking |
| AI Technical Standard | Jul 2025 | Mandatory | Commonwealth agencies | Technical implementation requirements |
| Public Generative AI Tools Guidance | Jun 2024 | Guidance | APS staff | Do's and don'ts for public GenAI |
| GovAI Platform Requirements | 2025 | Mandatory | Agencies using GovAI | Sovereign hosting, security controls |
Federal - Department of Industry, Science and Resources (DISR)
National AI policy and adoption guidance.
| Document | Date | Status | Scope | Key Content |
|---|---|---|---|---|
| National AI Plan | Dec 2025 | Policy | National | 9 actions; AISI establishment; no dedicated AI Security provisions |
| Guidance for AI Adoption (AI6) | Oct 2025 | Voluntary | All sectors | 6 essential practices for responsible adoption |
| Being Clear About AI-Generated Content | Oct 2025 | Voluntary | All sectors | Labelling, watermarking, metadata recording |
| Voluntary AI Safety Standard (VAISS) | Sep 2024 | Voluntary (superseded) | All sectors | 10 guardrails; replaced by AI6 |
| Australia's AI Ethics Principles | Oct 2024 (updated) | Voluntary | All sectors | 8 principles including privacy, security |
Federal - Sector Regulators
Binding requirements for specific regulated industries.
Financial Services (APRA/ASIC)
| Document | Date | Status | Scope | AI Provisions |
|---|---|---|---|---|
| CPS 234 Information Security | Jul 2019 | Mandatory | APRA-regulated entities | All infosec requirements apply to AI systems |
| CPS 230 Operational Risk Management | Jul 2025 | Mandatory | APRA-regulated entities | New technology (including AI) risk assessment |
| ASIC Report 798: Beware of the Gap | Oct 2024 | Guidance | Financial services | AI governance, third-party risk, human oversight |
| SPS 220 Risk Management | Various | Mandatory | Superannuation | Applies to AI in investment decisions |
Online Safety (eSafety)
| Document | Date | Status | Scope | AI Provisions |
|---|---|---|---|---|
| eSafety Industry Standards | Jun 2024 | Mandatory | Online service providers | GenAI services, AI companion chatbots, model distribution platforms |
| eSafety Generative AI Position Statement | 2024 | Guidance | GenAI providers | Safety by design expectations |
Privacy (OAIC)
| Document | Date | Status | Scope | AI Provisions |
|---|---|---|---|---|
| OAIC Guide to Data Analytics and AI | 2023 | Guidance | APP entities | Privacy obligations for AI |
| APP Guidelines - AI Automated Decisions | Dec 2026 | Mandatory | APP entities | Disclosure requirements for automated decisions (APP 1.7-1.9) |
Healthcare (TGA)
| Document | Date | Status | Scope | AI Provisions |
|---|---|---|---|---|
| TGA Regulation of Software as Medical Device | 2021 | Mandatory | Medical AI | AI in medical devices, SaMD classification |
| AI in Healthcare Legislation Review | Ongoing | Review | Healthcare sector | Review of AI regulation in healthcare |
Federal - Other Agencies
| Agency | Document | Date | Status | Scope | Key Focus |
|---|---|---|---|---|---|
| Defence | Method for Ethical AI in Defence | 2021 | Mandatory (Defence) | Defence AI | Verification, human control, IHL compliance |
| Attorney-General's | Copyright and AI Reference Group | Ongoing | Consultation | AI developers | Copyright implications of AI training |
| Finance | National Framework for AI Assurance | Jun 2024 | Framework | All governments | 5 cornerstones for AI assurance (also listed under Cross-Jurisdictional) |
| Education | Australian Framework for GenAI in Schools | Dec 2023 | Guidance | Schools | Safe classroom use of GenAI |
New South Wales
Maturity Level: Comprehensive
NSW operates Australia's most mature mandatory government AI governance framework.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| NSW AI Assessment Framework (AIAF) | Mar 2022 | Mandatory | All NSW Government | Risk self-assessment, lifecycle governance, >$5M to DAF |
| NSW AI Ethics Policy | 2022 | Mandatory | All NSW Government | 6 mandatory principles |
| Circular DCS-2024-04 | 2024 | Mandatory | All NSW Government bodies | Compliance directive |
| NSW AI Strategy | 2024 | Policy | NSW Government | Strategic direction |
| Cyber Security NSW GenAI Guidance | 2024 | Guidance | NSW agencies | Do's and don'ts for public GenAI |
| NSW AI Review Committee Terms | 2022 | Governance | High/very-high risk projects | Expert review of significant AI |
Victoria
Maturity Level: Developing
Victoria formalised AI governance in November 2024 with mandatory guidelines.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| Administrative Guideline for Safe and Responsible Use of GenAI in VPS | Nov 2024 | Mandatory | Victorian Public Sector | Adopts 8 AI Ethics Principles |
| Victorian AI Assurance Framework | Piloting | In development | VPS | Under development, piloting with Copilot |
| VPDSF v2.1 | 2023 | Mandatory | Victorian agencies | 12 mandatory standards, 5 domains - applies to AI |
| OVIC AI Privacy Guidance | 2024 | Guidance | Victorian organisations | Privacy obligations for AI |
| Victoria Police AI Ethics Framework | Mar 2024 | Mandatory (VicPol) | Victoria Police | 8 enabling principles including Human Rights |
Queensland
Maturity Level: Developing
Queensland has comprehensive mandatory policy with sophisticated risk assessment.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| AI Governance Policy | Sep 2024 | Mandatory | QLD Government | ISO 38507-based governance, ISMS integration |
| FAIRA Framework | 2024 | Mandatory | QLD Government | Two-part risk assessment (Components + Values) |
| IS18 Information and Cyber Security Policy | 2024 | Mandatory | QLD Government | Mandatory ISMS, Essential Eight implementation |
| QChat GenAI Environment | 2024 | Platform | QLD Government | Secure government-approved GenAI |
| OIC AI Privacy Guidance | 2024 | Guidance | QLD agencies | Privacy and RTI obligations for AI |
South Australia
Maturity Level: Developing
SA established Australia's first state Office for AI in July 2025.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| Office for Artificial Intelligence | Jul 2025 | Governance | SA Government | $28M budget, strategic coordination |
| AI Ethics Policy (DTF/P9.1) | 2024 | Mandatory | SA Government | Design, development, deployment, operation |
| LLM Guideline (DPC/G13.1) v1.3 | 2024 | Optional | SA Government | Practical LLM controls |
| SACSF v2.0 | 2024 | Mandatory | SA Government | 18 policy statements, 4-tier implementation |
Western Australia
Maturity Level: Comprehensive
WA has the most comprehensive framework among smaller jurisdictions.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| WA Government AI Policy v2 | Jul 2025 | Mandatory | WA Government | AI Accountable Officers by Sep 2025 |
| WA AI Assurance Framework | 2024 | Mandatory | WA Government | Self-assessment, mid-range+ to Advisory Board |
| WA AI Advisory Board | Jan 2025 | Governance | High-risk projects | Independent expert review |
| WA Cyber Security Advisory 20230509001 | May 2023 | Advisory | WA agencies | AI chatbot security risks |
| WA Health AI Policy (MP 0193/25) | 2025 | Mandatory (Health) | WA Health | Sector-specific AI requirements |
Tasmania
Maturity Level: Minimal
Tasmania has the least developed AI governance, relying on guidance.
| Document | Date | Status | Scope | Key Content |
|---|---|---|---|---|
| Guidance for AI Use in Tasmanian Government v1.4 | 2024 | Voluntary | TAS Government | 7 recommendations; references NSW AIAF |
| Digital Strategy - AI Focus | 2024 | Strategy | TAS Government | Strategic intent only |
Note: Tasmania recommends using NSW AIAF for detailed guidance. Economic Diversification and Investment Strategy with AI focus expected H1 2026.
Northern Territory
Maturity Level: Basic
NT has a mandatory framework with territory-specific principles.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| NT Government AI Assurance Framework | May 2024 | Mandatory | NT Government | 6 NT-specific AI Ethics Principles |
| AI Advisory Board | 2024 | Governance | High-risk assessments | Reports to ICT Governance Board |
NT AI Ethics Principles:
- Community Benefit
- Safety
- Fairness
- Privacy and Security
- Transparency
- Accountability
Australian Capital Territory
Maturity Level: Developing
ACT released comprehensive mandatory framework in May 2025.
| Document | Date | Status | Scope | Key Requirements |
|---|---|---|---|---|
| ACT Government AI Policy v1.0 | May 2025 | Mandatory | ACT Government | 4 responsible officers per AI initiative |
| ACT AI Assurance Framework | May 2025 | Mandatory | ACT Government | Aligned with National and NSW frameworks |
| AI Advisory Group (AIAG) | 2025 | Governance | Medium/high risk | Reviews significant assessments |
ACT Required Officers:
- AI System Owner
- AI Administrator
- Data Custodian
- Project Manager
Cross-Jurisdictional
Documents agreed or relevant across multiple jurisdictions.
| Document | Authority | Date | Scope | Status |
|---|---|---|---|---|
| National Framework for AI Assurance in Government | Data and Digital Ministers | Jun 2024 | All governments | Framework |
| Australia's AI Ethics Principles | DISR | 2024 | National | Referenced by all jurisdictions |
| Essential Eight Maturity Model | ACSC | Ongoing | Referenced nationally | Security baseline |
Document Totals by Jurisdiction
| Jurisdiction | Mandatory | Sector-Specific | Voluntary | Total |
|---|---|---|---|---|
| Federal - ACSC | 0 | 0 | 7 | 7 |
| Federal - PSPF/DHA | 3 | 0 | 2 | 5 |
| Federal - DTA | 3 | 0 | 2 | 5 |
| Federal - DISR | 0 | 0 | 5 | 5 |
| Federal - Regulators | 0 | 6 | 4 | 10 |
| Federal - Other | 2 | 0 | 2 | 4 |
| NSW | 4 | 0 | 2 | 6 |
| VIC | 3 | 1 | 1 | 5 |
| QLD | 3 | 0 | 2 | 5 |
| SA | 2 | 0 | 2 | 4 |
| WA | 3 | 1 | 1 | 5 |
| TAS | 0 | 0 | 2 | 2 |
| NT | 1 | 0 | 1 | 2 |
| ACT | 2 | 0 | 1 | 3 |
| TOTAL | 26 | 8 | 34 | 68 |
Last Updated
17 April 2026
See CHANGELOG.md for update history.
Contributing
Found a missing document? See CONTRIBUTING.md to submit additions or corrections.