OVERVIEW
The Australian Signals Directorate (ASD) administer the Information Security Registered Assessors Program (IRAP) to ensure that entities can access high-quality ICT assessment services.
What’s New?
The Australian Government has stated their intention to adopt a ‘whole-of-nation’ approach to cyber resilience. This is great news as it means that any entity can now engage an IRAP Assessor – including industry!
In 2020, ASD released an updated IRAP policy and training program with a view to increase the standard and consistency of cyber security advice provided by IRAP assessors. Anchoram Consulting offers IRAP assessment and advisory services under this new IRAP scheme.
For the latest information on IRAP please refer to the ASD IRAP Page.
IRAP Assessment and Advisory Services
What is an IRAP Assessment?
An IRAP Assessment entails:
- gaining an understanding of system architecture of the system being assessed
- ensuring required physical security certifications have been attained
- ensuring that appropriate security controls are selected, implemented and operating effectively
- proposing mitigation strategies for any security controls that are not as effective as planned, and
- enabling the reviewer of the report to make an informed risk-based decision about the system’s suitability for their security needs and risk appetite.
IRAP services include providing advice for and assessments of:
- Cloud services
- Gateways
- Information systems
- System documentation, and
- Risk mitigation activities.
Why Anchoram?
We are a values-driven firm with deep experience in assisting entities with preparing for and undertaking IRAP assessments. Our associates have been conducting IRAP assessments for many years and are now also endorsed under the new scheme.
We of course adhere to strict independence and competence requirements in accordance with the ASD IRAP Policy, but more than that, we pride ourselves on doing business the right way. This means that we will be there with you at every step, guiding you to meet your compliance and assurance goals with full transparency, great bang for buck, and minimal guff.
Sector-Specific Services
Assisting DISP members to meet their ongoing DISP membership obligations and requirements.
Governments have raised their standards. Does your solution make the cut?
Defence requires assurance from their industry partners to manage security risks. Do you need DISP accreditation?