Sign in to view Brendan’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Melbourne, Victoria, Australia
Sign in to view Brendan’s full profile
Brendan can introduce you to 10+ people at Cube Networks
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
1K followers
500+ connections
Sign in to view Brendan’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Brendan
Brendan can introduce you to 10+ people at Cube Networks
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Brendan
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Brendan’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Articles by Brendan
-
Building Cyber-Resilient Leadership: What Today’s Executives Must Know
Building Cyber-Resilient Leadership: What Today’s Executives Must Know
Cybersecurity has been a leadership issue for years. The question is: Have leaders truly stepped up? Cyber risk is…
46
2 Comments -
What We Overlooked in 2024: Gaps to Address in 2025Dec 16, 2024
What We Overlooked in 2024: Gaps to Address in 2025
Let’s face it: 2024 was a whirlwind. AI hit the headlines daily, cybersecurity threats didn’t take a holiday, and…
32
7 Comments -
AI and Cybersecurity: The Future of Protection or a New Attack Surface?Nov 11, 2024
AI and Cybersecurity: The Future of Protection or a New Attack Surface?
What happens when the very tools designed to protect us become the newest battleground for cybercriminals? Welcome to…
35
4 Comments -
Key Takeaways from RSA Conference 2024May 22, 2024
Key Takeaways from RSA Conference 2024
I was privileged to be able to attend the RSA Conference 2024 earlier this month and experience the collision of tens…
50
1 Comment -
Women in Cybersecurity: unlocking diversity to amplify innovationMar 30, 2023
Women in Cybersecurity: unlocking diversity to amplify innovation
Last week Cube Networks hosted our annual #womenintech event, as a part of our celebration of International Women’s…
47
-
Protecting Critical Assets in the Digital Age: a new perspective for security leadersFeb 22, 2023
Protecting Critical Assets in the Digital Age: a new perspective for security leaders
Organisations operate in a world of finite resources, and even the most risk-averse must strike a balance between…
27
3 Comments -
A CyberSafe and Happy Festive SeasonDec 21, 2022
A CyberSafe and Happy Festive Season
We’ve reached the end of 2022 - or close to it - and while many of us a desperately trying to cross off the final few…
31
5 Comments -
A Security Leader's Approach to the AICD Cyber FrameworkNov 30, 2022
A Security Leader's Approach to the AICD Cyber Framework
A month or so ago I wrote an article for the Australian Institute of Company Directors (AICD) for their magazine…
22
-
Confronting cybercrime needs a Security Culture: Awareness is the foundationAug 18, 2022
Confronting cybercrime needs a Security Culture: Awareness is the foundation
In a highly connected, highly disrupted world where the nature of work and our personal online interactions continues…
40
2 Comments -
Shaping a secure future for the Distributed EnterpriseMar 22, 2022
Shaping a secure future for the Distributed Enterprise
What have we learned over the last 2 years? In early 2020, organisations across the world were suddenly forced into the…
39
2 Comments
Activity
1K followers
-
Brendan Smith, GAICD shared thisCube Networks and our Prism Cyber team have been proud members of CREST International for several years, helping give our clients confidence in the quality of our people and services. I’m delighted to have the opportunity to contribute to the important work CREST does in raising standards across the cybersecurity profession, and I look forward to working alongside talented colleagues on the Australasia Regional Council. If you’re considering your next penetration test or cybersecurity assessment, make sure you look for CREST-accredited providers through the CREST Marketplace. #cybersecurity #pentesting #cyberleadershipBrendan Smith, GAICD shared thisCREST Australasia Council recently welcomed a select group of new members recognised for their experience, leadership, and contribution to advancing cybersecurity capability across the region. We’re incredibly proud to congratulate our very own CISO and Prism Cyber Principal, Brendan Smith, GAICD, on his appointment to the CREST Australasia Council. Brendan’s deep expertise in cybersecurity strategy, governance, and operational resilience continues to make a significant impact across the industry, and this appointment is a testament to his leadership and commitment to strengthening cyber capability within Australasia. As highlighted by CREST: “The Council reflects the diverse talent and expertise across the region. We look forward to working together to continue building a strong, trusted, and resilient cybersecurity ecosystem in Australasia.” Congratulations Brendan on this well-deserved recognition. We look forward to seeing the positive impact you’ll help drive across the industry! #CyberSecurity #CREST #Leadership #CyberResilience #CubeNetworks #PrismCyber #CyberStrategy
-
Brendan Smith, GAICD shared thisGoing to be a great program at #CRESTConAustralia Community Day, so if you're able to get along book your ticket now!Brendan Smith, GAICD shared this🎙️ Meet the voices of #CRESTConAustralia Community Day! We are excited to start sharing the speakers joining us on 13 May in Sydney... Shaun Burger, Vectra Corporation Alexander Wilczek, Rivanorth Lachlan Moorwood, Healthscope NAVROOP KOHLI, Stickman Cyber Gaurav Vikash, Axon Our Director for Asia Pacific, Nigel Phair, will lead the half day event as your MC. This is a practitioner-led, non-commercial event focused on how threat intelligence is used – from signals through to real-world applications. This is a technical community meetup sharing what’s working, what isn’t, and what they’ve learned along the way. >>> If you’re working in threat intel, red teaming, pen testing, SOC, incident response, security engineering, or anyone working hands-on in cyber – this is for you. 🎟 Secure you place - Limited tickets remaining https://lnkd.in/esgxHSQs 🌐 Find out more here: https://lnkd.in/e6Rcia5R *Free ticket for CREST Member Companies and an additional 50% off for subsequent tickets #CRESTConAustralia #CCAU26 #ThreatIntel #CyberSecurity #DFIR #ThreatHunting #RedTeam #BlueTeam #SOC #PenetrationTesting #PT #IncidentResponse #Australia
-
Brendan Smith, GAICD shared thisThe Australian Information Security Association (AISA) CyberCon was an overwhelming success, and it was great to be able to take part and contribute once again. Thanks to Nigel Hedges for organising the panel with my fellow panellists Sam Fariborz and Christina Keing, and thanks for such positive feedback from those who attended my presentation on Crisis Management. Such a critical role for a CISO! #CyberCon2025Brendan Smith, GAICD shared thisLast week at Australian Information Security Association (AISA) CyberCon, our CISO Brendan Smith, delivered an insightful take on leadership under pressure in his session “Crisis Ready: Why calm is a leadership skill (and how to train for it).” In a packed room of executives and cyber leaders, Brendan explored what really happens when a crisis hits - when the plan meets pressure. His message was clear: true resilience isn’t about the document sitting in a shared drive; it’s about the people behind it. Calm, clarity, and composure under fire are what turn a plan into effective action. Brendan also joined Nigel Hedges, Sam Fariborz and Christina Keing on a panel exploring how cyber professionals can better collaborate across vendors, providers, resellers, and customers - building stronger partnerships across the ecosystem. If you attended or want to learn more, connect with Brendan at letschat@prismcyber.com.au. #CyberSecurity #Leadership #CrisisManagement #AISA #PrismCyber #CISO
-
Brendan Smith, GAICD shared thisSometimes it's the basics that let you down: how many cyber incidents have we heard of where it was just routine stuff that allowed hackers in? Or data out? We've designed this Benchmark to pinpoint and highlight just such issues, by focusing on the stuff that's important, easy, and often undone. The low-hanging fruit, in other words, with outsized benefits. Talk to us about a fast-paced assessment of your cyber posture. Who knows what it might save?Brendan Smith, GAICD shared thisCyber threats evolve daily, yet many organisations still don’t know where their real vulnerabilities lie. The Prism Cyber Maturity Benchmark changes that, with two flexible options designed to suit your needs: SILVER: A baseline benchmark of governance, essential controls, and technical validation. GOLD: Deeper insights including cloud security, Active Directory audits, and threat intelligence. Whichever option you choose, you’ll walk away with: ✔ An executive summary your board can rely on ✔ A clear, prioritised roadmap for action ✔ Quick wins that strengthen your posture immediately 👉 Book your complimentary 30-minute discovery session today. https://lnkd.in/gcndsN5S #CyberSecurity #RiskManagement #CyberResilience #CISO #BoardReporting
-
Brendan Smith, GAICD shared thisWords are just words. Cube Networks theme for our 'Women in Tech' function this year was 'Take Action', and it was great to see such a diverse crowd who are motivated to make this happen! And congratulations to all the organisers and participants who made it such a successful event! #iwd2025Brendan Smith, GAICD shared thisLast night, we hosted our annual Women in Tech event, celebrating International Women’s Day 2025, and bringing together a diverse community from Senior Executives to Students. Our panel explored the impact that the next wave of technological transformation will have on the way we work, and what this means for diversity. A huge thank you to our MC, Sandra Arena and our incredible panel for sharing their insights and experiences: Angela Anthony, GAICD, Executive GM, IT & Digital – DuluxGroup Daisy Wong, Head of Security Awareness – Medibank Firuzé Petruk MAICD, Director, IT & Digital Core Delivery APAC – CSL Lynette Fernandes, Manager of IT Portfolio and Delivery – SW Accountants & Advisors Together, we explored how AI is reshaping leadership, collaboration, and business strategy, the growing risks of AI adoption, and the importance of responsible, informed use. Our panel shared insights on organisational initiatives leveraging AI while mitigating risks and the key programs driving AI adoption and technological transformation. A special thank you to our event partners Westcon-Comstor, Palo Alto Networks and Gallant Collective for your ongoing support in making this event a success! The conversation doesn’t end here… The future of AI isn’t just about technology - it’s about leadership, collaboration and inclusion. How will you accelerate action? #IWD2025 #WomenInTech #AI #DiversityInTech #Leadership
-
Brendan Smith, GAICD shared this🚨 Cybersecurity isn’t an IT problem: It’s a leadership responsibility. So why do so many executives believe it's someone else’s job? So many times when a major breach hits the headlines, we hear the same story: ❌ The board wasn’t engaged. ❌ The CEO was blindsided. ❌ The response was chaotic. Fact is, Cyber Risk has been a business risk for years, and yet too many leadership teams still treat it as a compliance checkbox or a line item in the IT budget. But when a crisis hits, it might not be just IT that takes the fall - these days it could impact the executive team. In my latest article, I look at: ✅ Why executives have been slow to embrace cybersecurity accountability ✅ The key questions every leader should be asking about cyber risk ✅ Why prevention isn’t enough—and resilience is the real priority 🔥 Are business leaders finally stepping up on cybersecurity—or are they still in denial? Drop your thoughts below 👇 #cybersecurity #leadership #riskmanagementBuilding Cyber-Resilient Leadership: What Today’s Executives Must KnowBuilding Cyber-Resilient Leadership: What Today’s Executives Must KnowBrendan Smith, GAICD
-
Brendan Smith, GAICD shared thisWhat Did We Forget in 2024? 2024 was full of big wins - but let’s be honest, not everything went according to plan. Some risks fell through the cracks, lessons stayed unlearned, and opportunities? Missed. Here I've looked at six of those priorities that we might have left on the backburner: from basics, to AI, to the impact on our people. And then what we might do to tackle them head-on in the New Year. Are you ready to reflect, reassess, and reset? Love to hear what’s on your 2025 priority list, so drop a comment! #cybersecurity #Leadership #AIGovernanceWhat We Overlooked in 2024: Gaps to Address in 2025What We Overlooked in 2024: Gaps to Address in 2025Brendan Smith, GAICD
-
Brendan Smith, GAICD shared thisAt #cybercon2024 and wondering what to do at 11:05? Come along to room 218 where I’ll be sharing experiences and insights on board engagement!!
-
Brendan Smith, GAICD shared thisToo many boards still view cybersecurity as a technical issue: something for the IT team to handle. This mindset isn’t just outdated, it’s risky. Cybersecurity is far more than an IT problem; it’s a strategic enabler that drives operational resilience, safeguards customer trust, and creates competitive advantages. If cybersecurity only comes up during risk reviews, the board is already behind. Just as workplace safety (OHS) and financial considerations are woven into every board discussion, so too should cyber. It’s time to reframe the conversation around how secure systems support business outcomes like growth, innovation, and productivity. The AICD and regulators have worked hard to educate boards about their cyber duties and accountabilities, but as CISOs, we also have a role to play. Consider the growth in AI, for example: it offers amazing opportunities for innovation, and there’s a compelling cybersecurity story to be told about how we can enable businesses to embrace it safely. Are we telling that story effectively? At AISA’s #CyberCon24, I’ll share practical ways to shift these narratives, starting with moving beyond the negatives when engaging with boards. What’s one thing you think we can do better to help boards truly understand cybersecurity? Drop your thoughts in the comments—I’d love to hear your perspectives. If you’re attending CyberCon24, I’ll be presenting on Thursday. Be great to see you there! #Cybersecurity #Leadership
-
Brendan Smith, GAICD liked thisBrendan Smith, GAICD liked thisAfter eight rewarding years with Yokogawa Electric Group and more than four decades in the IT and cybersecurity industry, I have decided to retire from corporate life and begin a new chapter of my professional journey. I have been fortunate to lead and contribute to: • Global Cloud and Security initiatives at Fujitsu • Global Security Enhancement and SOC establishment at Sony • Digital Transformation, IT/OT Convergence, and Cybersecurity Services business development at Yokogawa Throughout my career, I have worked at the intersection of technology, business transformation, and global collaboration. Building organizations, creating new capabilities, and connecting people across cultures have been among the most rewarding experiences of my professional life. I am deeply grateful to the many colleagues, mentors, customers, and friends who have supported me along this journey. While retiring from corporate life, I remain passionate about contributing to: IT/OT Convergence | Digital Transformation | Cybersecurity | Global Governance | Mentoring Future Leaders I believe the next stage of my journey is not about leading from the front, but about sharing my experience, supporting others, and helping the next generation of leaders and innovators succeed. I look forward to staying connected, sharing experiences, and supporting new challenges and innovations. I remain excited about meaningful connections and opportunities to contribute wherever my experience may be helpful. Thank you to everyone who has been part of this incredible journey.
-
Brendan Smith, GAICD liked thisBrendan Smith, GAICD liked thisExcited to share that back in April, I accepted and joined Equip Super in a Senior Technology Risk capacity! Equip Super is an APRA-regulated superannuation fund with a real commitment to delivering strong outcomes for its members — and I'm looking forward to contributing to that mission through meaningful IT governance, risk, and compliance work. After 25+ years across financial services, manufacturing, and global organisations, it's great to be channeling that experience into a sector where the stakes genuinely matter for everyday Australians. Watch this space — there's plenty of interesting work ahead. #ITRisk #GRC #SuperannuationIndustry #EquipSuper #NewRole #APRA #AI #ASIC
-
Brendan Smith, GAICD liked thisBrendan Smith, GAICD liked thisEarlier this year, I made a decision to be more intentional about how I engage with the community. I declined two advisory board opportunities that weren’t aligned with my values and weren’t adding real value to the tech community. I became more selective with invitations, focusing on those where I felt I could both learn and contribute meaningfully. (A note to marketing teams: a ‘Nice Dinner at a Fancy Restaurant’ is not a convincing strategy, knowing your audience is.) Having said that, this year I joined two organisations that are supporting women in Tech and Cybersecurity, and I couldn’t be more excited about it. First, I joined Women In Digital team as a judge for their annual Women in Digital Awards. I’ve seen the impact of their work in empowering women in technology, and I’ve been following Holly Hunt’s incredible work in building the community and championing women every step of the way. I’d love for you to join us in this by nominating a female colleague. Women sometimes just need a little encouragement to break through and thrive, and we can all play a part in that. Let’s show more women that they can build, engineer, and lead products and services that don’t leave half the population behind. Nominate here: https://lnkd.in/gX9qniqF #WIDAwards2026
-
Brendan Smith, GAICD liked thisBrendan Smith, GAICD liked thisIt was a privilege representing Xero this week in US Congress at the House Financial Services subcommittee hearing on Bank-FinTech innovation. The questions before policymakers are some of the most consequential in financial services today: how do we build a regulatory framework that supports responsible bank-fintech partnerships, protects small business and consumers, and preserves the innovation that expands access to payments, and financial services for millions of American small businesses? Getting this right, matters. Clearer, more consistent guidance across the regulators, modernized third-party risk frameworks, and a shared understanding of where bank-grade obligations begin and end in a partnership model are not abstract debates — they shape who can participate in our financial system and on what terms. I was honored to share the panel with three other women whose depth and expertise sharpened every part of the discussion. As a lawyer who is passionate about regulatory policy in financial services, moments like this are a reminder of why this work matters. I’m grateful for the opportunity to contribute to the conversation, and I’m looking forward to what comes next. Thank you to the team for the prep and support. Rena Davis Grace Gown Ceinwen McNeil CMinstD Laura Burley Stuart Miller Molly Powers Gideon Rov Reut Perluk
-
Brendan Smith, GAICD liked thisBrendan Smith, GAICD liked thisWhat a wonderful morning spent in great company yesterday in the beautiful Botanic Gardens as part of Australia's Biggest Morning Tea. We joined 19,500 hosts nationally to collectively raise $6.6M for the great work of the Cancer Council across research, prevention and support. A huge thank you to our sponsors and everyone who donated - together we raised $11,362 - placing us at #24 on the national leaderboard. An outstanding result! For those who joined us, thank you sincerely for making the morning a truly special event. Thanks again to our wonderful sponsors Gallant Collective, Cube Networks, BlueRock, Palo Alto Networks, Taylor Made Sales and Design, Capture, Build. I hope that sharing my own experience with cancer highlighted the importance of being proactive with our health - prevention is always better than cure and early detection saves lives. #australiasbiggestmorningtea #cancerawareness #community
-
Brendan Smith, GAICD liked thisBrendan Smith, GAICD liked this🌐 Introducing New Australasia Council Members We would like to announce newly appointed members of the CREST Australasia Council, joining an established group of dedicated professionals who will help shape regional cybersecurity strategy, drive capability development, inform global standards, and strengthen CREST International’s presence in one of the most regulated and advanced cyber regions in the world. The Council reflects the diverse talent and expertise across the region. We look forward to working together to continue building a strong, trusted, and resilient cybersecurity ecosystem in Australasia. ➡️ Swipe to meet each new member of the Council: Brendan Smith - Cube Networks Hadi Johari – BDO Australia Martin Dybalski – Parabellum #CREST #Cybersecurity #Leadership #Australasia #Australia #Collaboration #Community
Experience & Education
-
Prism Cyber by Cube Networks
********* **********
-
**** ********
***** *********** ******** *******
-
********* *********
**** ****** ***** *********
View Brendan’s full experience
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
Courses
-
AICD Foundations of Directorships: Governance; Finance; Strategy and Risk
-
-
AICD Reporting to the Board
-
Organizations
-
Deakin Executive Advisory Board for Cyber
-
- PresentThe Deakin EABC will advise Deakin University on industry expectations and experiences to aid with course relevancy, as well as giving Deakin the opportunity to showcase and gain feedback on research and development activities within the institution.
View Brendan’s full profile
-
See who you know in common
-
Get introduced
-
Contact Brendan directly
Other similar profiles
-
Fabian Llanos Lopez
Fabian Llanos Lopez
Department of the Premier and Cabinet (Queensland)
3K followersBrisbane City, QLD -
Mardi Paterson
Mardi Paterson
Experienced security professional with a career that includes governance, operations, design and implementation roles. Passionate about improving security and customer privacy with strong people skills. Focus areas now include delivering strategic solutions, security risk assessment and the application of appropriate security controls and tools.
611 followersMelbourne, VIC
Explore more posts
-
Synergy Point Group
71 followers
Some key highlights from Australian Signals Directorate (ASD)'s Cyber Threat Report 2024–2025: 1. There is a significant rise in cyber incidents and reports: The Australian Cyber Security Centre (ACSC) reported that in during 2024-2025 they have responded to over 1,200 major cybersecurity incidents which is a 11% increase from the previous year. 2. There is a steep rise in the financial impact due to cybercrimes: For businesses, the average loss due to cybercrimes is on the rise, Small businesses lost up to $56,571 a 14% increase from last year, Medium business lost up to $97,166 a 55% increase, and Large businesses lost up to $202,691 a 221% increase. It was also reported that an individual average self reported loss was $36,633 3. Critical infrastructure under increasing threat: Critical infrastructures have received notifications of 190 potential malicious cyber activity impacting their network which is a 111$ increase from last year. The Top 3 most common types of activity which led to infrastructure related incidents were: Scanning or Reconnaissance making up 41% DoS/DDoS making up 31% Phishing making up 20% 4. Credential compromise, email attacks and phishing remain the main methods of attack: It was reported that email compromise with no direct financial loss accounted for ~19% of business reports, Business email compromise with financial loss ~15%, identity fraud ~ 11% and phishing emails remains one of the most common attack methods. 5. New technologies are amplifying the risk like AI The report also warns the rise in the use of Generative AI by cybercriminals as they use these tools to automate the analysis of extensive datasets which allows them to find vulnerabilities, they also use generative AI to create content like videos, text, fake voices, websites etc. to help them trick their target easier. 💡 The big moves organisations must take: a. Implement Effective event logging - You can't defend what you can't see b. Manage legacy IT risks - Legacy technology lets threats thrive c. Effective Third-Party Risk Management (TPRM) - Shut the back door, choose sercure and verifable technologies d. Start preparing for Post Quantum Cryptography (PQC) more details: https://lnkd.in/gCVf9fSq
7
-
Cyber Assure AI
15 followers
Introducing Cyber Assure AI Pty Ltd Cyber Assure AI is a specialised cyber security advisory firm supporting government and enterprise organisations in strengthening their security posture, managing cyber risk, and meeting regulatory and industry security requirements. Our services focus on security assurance and independent assessments, including IRAP security assessments aligned with the Australian Government Information Security Manual (ISM), as well as advisory and assessments aligned with frameworks such as the Essential Eight maturity model, ISO/IEC 27001, and PCI DSS. We work with organisations to evaluate the effectiveness of their security controls, identify gaps, and provide practical, risk-based guidance to strengthen security across modern enterprise and cloud environments. Through this page we will share insights on cyber security governance, security assurance, and security architecture relevant to both government and enterprise environments. #CyberSecurity #IRAP #EssentialEight #ISO27001 #PCIDSS
1
-
Baines
415 followers
The cyber threat to New Zealand organisations is increasing - and the latest New Zealand Security Intelligence Service report is a timely reminder to prepare. For NGOs, charities and social services organisations, it's especially urgent. You hold highly sensitive data and work with people who are already vulnerable. Preparedness isn't just about prevention. It's about knowing how you will respond. Because a technical fix is only half of the problem. Within hours, clients, staff, funders, partners and media will all be asking questions - before you have all the answers. That's where trust and reputation can be won or lost. Baines recently helped a large New Zealand charity prepare its communications response to a cyber attack - thinking through who needs to know what, when, and how to communicate when the picture is still unclear. One of the best things you can do is work this all out before you need it. Who needs to be involved? Who needs to be told? What do you say when you don't have all the answers? And how do you keep people informed as the situation unfolds? If your organisation needs to prepare for the communications side of cyber risk, we can help. Read more: https://lnkd.in/e6trAEBK #cyberattack #charity #NGO
6
1 Comment -
Security Solution Consultants
441 followers
The PDSP is how your agency assesses its information security capability, summarises progress against the Victorian Protective Data Security Standards (VPDSS), and gives OVIC assurance that you're improving. If you're in the final stretch, OVIC's VPS How-To Guide (published this year) is the document to work from. At Security Solution Consultants, we help Victorian public sector agencies and councils get across the line: PDSP completion, gap analysis against the VPDSS, and preparation for OVIC submission: backed by GRCLens, our GRC platform that maps controls to the VPDSS, tracks evidence with a full audit trail, and produces the assurance view OVIC expects. Few weeks is tight, but achievable with the right structure. If you're short on time, let's talk through what's still needed. #VPDSS #OVIC #DataSecurity #GRC #VictorianGovernment #Compliance #GRCLens
-
RegLex
89 followers
ASD Releases Annual Cyber Threat Report 2024-25 Highlighting Rising State-Sponsored and Cybercrime Risks 📅 Date: 14 October 2025 📍 Source: Australian Cyber Security Centre (ACSC) 🛡 Subject: Cybersecurity – Key Highlights: 🔧 Case Overview: The Australian Signals Directorate (ASD) has published its sixth Annual Cyber Threat Report (ACTR), covering the financial year 2024–25. The report underscores the growing risks posed by state-sponsored actors targeting Australian government networks, critical infrastructure, and businesses. Cybercriminal activity, including ransomware attacks and data breaches, has also increased, threatening economic and social prosperity. 🔍 Findings: State-sponsored cyber actors remain a serious and evolving threat, driven by strategic objectives. Cybercriminals continue to exploit vulnerabilities for financial gain, emphasizing the need for robust cyber defenses. Key focus areas recommended by ASD for organizations and network owners: Implement best-practice logging. Replace legacy technology. Manage third-party risk. Prepare for post-quantum cryptography. 💼 Regulatory Implications: The report signals the importance of proactive cybersecurity measures for all sectors, from government to private businesses. Organizations are encouraged to strengthen resilience, comply with guidance, and mitigate potential impacts of cyber threats on critical operations. 📌 Strategic Insight: Cybersecurity is no longer optional—state-sponsored and financially motivated cyber threats are increasingly sophisticated and pervasive. Staying ahead requires continuous investment in technology, staff awareness, risk management, and alignment with national cybersecurity frameworks. Link: https://lnkd.in/giRsY3hX 🔔 Follow RegLex for updates on global cyber threats, risk mitigation strategies, and regulatory guidance shaping cybersecurity practices in Australia and beyond. #CyberSecurity #ASD #RegLexUpdates #StateSponsoredThreats #Ransomware #CriticalInfrastructure #RiskManagement #CyberResilience #DataProtection #AustraliaCybersecurity
1
-
Fortian
1K followers
Fortian's November 2025 cyber environment update is now available on the website! November saw steady activity across Australia’s cyber landscape, including new government sanctions on North Korea and Russia, emerging AI-enabled threats and several notable breaches affecting local organisations. Check out this month’s update written by SOC analyst Allan Grant on our website: https://lnkd.in/gnbwGb6Z
8
-
WhiteRook Cyber
1K followers
A focused cyber security consultation gives you clarity. It translates risk into business language, shows where your controls stand today, and sets a practical path to stronger resilience. If you lead an Australian organisation that must manage Essential Eight maturity, prepare for ISO 27001 or NIST alignment, or meet DISP obligations, a structured consultation is the fastest way to understand what matters, what to fix first, and how to fund and deliver it without disruption. This guide explains what a consultation involves, how it differs from ongoing advisory and project delivery, how it maps to key frameworks, and why leadership engagement is essential. You will also see how White Rook Cyber runs consultations for businesses across Australia. Read the full guide linked below. 📞 1300 794 777 🌐 https://lnkd.in/gkeHNwJH #whiterookcyber #cybersecurity #cybersecurityaustralia #australianbusinesses #cybersecurityconsultant #cybersecurityconsultation #cybersecurityconsulting #cybersecurityexperts #aussiesmallbusiness #aussiebusinesses #managedcybersecurityaustralia #australiabusinesses #australiabusiness #australiansmallbusiness #australianbusinesswomen #australianbusiness
2
-
DEFSEC New Zealand
6K followers
📣 As the recent ManageMyHealth incident and NCSC announcements show, New Zealand cannot afford to get complacent about cybersecurity... ► The ransom hack on New Zealand's largest health portal is being billed as one of the country's biggest cybersecurity incidents - hackers threatening to release more than 400,000 documents stolen from about 126,000 Manage My Health patients if the private company fails to pay $60,000. ► It's also been a massive period for the National Cyber Security Centre (NCSC). Recently, they took an unprecedented step - proactively reaching out to 26,000 New Zealanders to warn them their devices may be compromised by Lumma Stealer malware. This is the first time they've conducted public outreach at this scale, signalling a fundamental shift toward a more active protective stance. ► They also released the New Zealand Cyber Threat Report for 2025, and frankly, it makes for sobering reading. A few key findings explain exactly why the NCSC is ramping up their activity: → State-sponsored actors are now actively targeting New Zealand organisations → Cybercriminals have access to increasingly sophisticated tools → Supply chains have become prime attack vectors → Unpatched vulnerabilities continue to provide easy entry points ► And there's more - they just published new guidance on Secure Integration of #AI in #OperationalTechnology, recognising how rapidly our threat surface is expanding with emerging technologies. For business leaders, this should be a clear signal. It reminds us that cybersecurity is a strategic business risk that demands board-level attention and investment as the threat environment has escalated to the point where government agencies are moving from reactive to proactive mode. Examine these in detail (and more) at the National Cyber Security Summit this March 17-18 in Wellington: https://lnkd.in/gWqqzF7h #cyber #cybersecurity #cybersummit2026 #wellingtonnz Brightstar
16
2 Comments -
Lean Security
28 followers
URGENT: Australian Cyber Threat Landscape Update - 15 January 2026 The last 24 hours have marked a significant surge in cyber activity across Australia. Our latest analysis flags critical alerts for SaaS providers, government agencies, and the FinTech sector, driven by active exploitation of widely used infrastructure. Key highlights from today's intelligence report: - Critical n8n RCE (CVE-2026-21858): A severe, unauthenticated vulnerability in the n8n automation platform is currently being exploited, granting attackers potential "keys to the kingdom" for connected cloud services. - Microsoft Hyper-V Zero-Days: Following January's Patch Tuesday, we are seeing active exploitation of privilege escalation flaws allowing sandbox escapes in virtualized environments. - Prosura Data Breach: A confirmed incident involving the Australian insurer highlights a growing trend of "island hopping," where compromised infrastructure is used to launch phishing campaigns against customers. - AI Security Risks: A new code injection vulnerability in Open WebUI is threatening the integrity of self-hosted AI models in the Education and EdTech sectors. Immediate patching of n8n instances and Hyper-V environments is strongly recommended. For the detailed executive summary, technical specifics on these CVEs, and mitigation strategies, please read the full article on our website. https://lnkd.in/gFGCuceR #CyberSecurity #ThreatIntelligence #Australia #InfoSec #CloudSecurity
1
-
Secure Link Solutions
93 followers
The Cyber Threat Landscape for Australian SMBs: Insights from ASD’s 2024–25 Report The latest ASD Annual Cyber Threat Report paints a clear picture that the cyber threat landscape for Australian businesses is escalating. - 1 cybercrime report every 6 minutes. - Average cost per business incident up 50% to $80,850. For small businesses, that’s now $56,600 per incident (a 14% rise), and $97,200 for medium businesses (up 55%). What are the most common attacks? -Business email compromise (BEC) -Identity fraud -Email compromise attempts without financial loss These aren’t isolated events; they’re now everyday risks. The ACSC responded to over 1,200 incidents last year, an 11% increase, with ransomware and data theft continuing to disrupt operations across Australia. What’s more, the lines between state-sponsored and criminal activity are blurring. Small and medium enterprises, often part of larger supply chain,s are becoming prime entry points for attackers. 🔐 What SMBs Should Do ASD’s key actions for businesses are simple but critical: -Implement best-practice logging and monitoring. -Retire legacy tech or isolate it properly. -Choose products that are secure by design. -Start planning for post-quantum cryptography, the next frontier in security. Cyber resilience isn’t optional anymore. It’s a business survival skill. At Secure Link Solutions, we help SMBs take a practical, affordable approach to protecting their networks before incidents become headlines. Stay Connected! Stay Secure! Links: https://lnkd.in/gSKkHJG2 https://lnkd.in/gCVf9fSq #CyberSecurity #ASD #SMB #Australia #CyberResilience #DataProtection #SecureLinkSolutions
1
-
McGovern Consulting Group, LLC
416 followers
The cheapest time to fix MIP security is before it becomes an audit question. Many teams inherit security settings that were built one request at a time. It works until it does not. Then it turns into access confusion, role creep, and an audit trail that takes too long to explain. MCG Lunch and Learn (60 minutes) Topic: MIP Security Checkup, Users, Groups, Advanced, Audit Trails February 25, 2026, 1:00 PM to 2:00 PM EST $39 per session $299 for 12 sessions with membership, save over 35% For nonprofit and mission-driven organizations using MIP Accounting. Not for teams that are not on MIP. Register: https://lnkd.in/enCdZUhz #mipaccounting #nonprofitfinance #internalcontrols #auditreadiness
1
Explore collaborative articles
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
Explore More