Cybersecurity

01 January 2020 00:00 by Tania Goatley

Organisations’ critical infrastructure systems are essential to their bottom line, ability to innovate and daily operations. It is an important part of an organisation’s overall risk management framework. The New Zealand Cybersecurity module offers guidance on how to handle your Cybersecurity obligations. The module covers areas of law such as the 'Harmful Digital Communications Act 2015 (NZ)', 'Privacy Act 2020 (NZ)', 'Crimes Act 1961 (NZ)' and over 18 other compliance sources.

Module Scope:

Core Obligations

  • Overview
  • Asset Management
  • Business Environment
  • Governance
  • Risk Assessment
  • Risk Management Strategy
  • Supply Chain Risk Management
  • Identity Management, Authentication and Access Control
  • Awareness and Training
  • Data Security
  • Information Protection Processes
  • Maintenance
  • Incident alert threshold
  • Security Continuous Monitoring
  • Detection Processes
  • Response Planning
  • Communication
  • Mitigation
  • Improvements
  • Recovery Planning
  • Recovery Communications

Legal Landscape

  • Harmful Digital Communications Act 2015 (NZ)
  • Privacy Act 2020 (NZ)
  • Crimes Act 1961 (NZ)
  • and 18 other compliance sources

Regulators

  • Ministry of Justice
  • Office of the Privacy Commissioner
  • European Data Protection Supervisor (EU)
  • and 4 other regulators