Google Links

Follow the links below to find material targeted to the unit's elements, performance criteria, required skills and knowledge

Elements and Performance Criteria

  1. Contribute to recommending risk management strategies that mitigate cyber security risk
  2. Support implementation of approved risk management strategies in response to risk
  3. Review and revise implemented risk management strategies

Knowledge Evidence

The candidate must be able to demonstrate knowledge to complete the tasks outlined in the elements, performance criteria and foundation skills of this unit, including knowledge of:

legislative and regulatory requirements relating to contributing to cyber security risk management, including:

data protection legislation

notifiable data breach legislation

Australian privacy laws

established international legislation

key risk management strategies, including:

regular organisational training

regular threat assessment

cyber security incident response plan

clear escalation routes

organisational policies and procedures, including for:

analysing and reviewing risk management methodologies

developing communications plans

evaluating effectiveness of risk management strategies

monitoring cyber risk

reviewing currency of risk register

industry-specific knowledge of suitable procedures for applying risk management strategy

guidelines required for updating technology

business process design principles in relation to risk management

reporting mechanisms for tracking organisational cyber security maturity.