National changes under way mandate business, industry and government operators adopting heightened cyber security and privacy practices.

The Federal Government's 2023 - 2030 Australian Cyber Security Strategy1 is a seven-year plan to lift Australia's cyber security standards and support the development of world-leading capabilities in this space.
It's an initiative driven by the need to critically improve cyber security standards, align regulations into an integrated national cyber policy, and include the many small to medium businesses (SMEs) that represent the majority of the country's commercial enterprises.
Large scale cyber attacks on Australians such as the Optus and Medicare cyber breaches during 2023 showed corporate and government bodies are not optimally equipped to respond to security breaches. The new government strategy sets out to update existing regulations and provide standard guidelines and mandatory actions in the event of a cyber security breach.
What is the purpose behind the Australian Government Cyber Strategy 2030?
The aim is to:
- protect customer data and privacy
- ensure organisations have the right cyber security settings
- introduce legal and policy settings around ransomware reporting2.
The priorities focus on core policy areas including:
- regulatory frameworks
- international strategy
- securing government systems
as well as potential policy areas spanning:
- public-private mechanisms to share/block cyber threats
- workforce and skills pipeline
- national incident response framework
- community awareness
- cyber security ecosystem and technological development
- security in new technologies (such as quantum computing and AI)
- implementation governance/evaluation,
- and further cyber security optimisations under consideration to be considered.
In brief: the 2023 - 2030 Australian Cyber Security Strategy action plan
- support small and medium businesses to strengthen their cyber security
- work with industry to break the ransomware business model
- provide clear cyber guidance for businesses
- make it easier for businesses to access advice and support after a cyber incident
- secure our identities and provide better support to victims of identity theft.