AESCSF v2 Assessment
Energy sector entities often combine ECSO readiness with AESCSF maturity assessment for comprehensive SOCI Act coverage.
Learn moreCritical Infrastructure • SOCI Act
Assess readiness for the six Enhanced Cyber Security Obligations under SOCI Act Part 2C for Systems of National Significance.
The ECSO Readiness Assessment provides a comprehensive framework for evaluating your organisation's preparedness against the Enhanced Cyber Security Obligations (ECSO) under the Security of Critical Infrastructure Act 2018 Part 2C. With 108 questions across 6 domains, this assessment is specifically designed for entities designated as Systems of National Significance (SoNS).
The assessment directly maps to the six ECSO requirements, enabling you to evaluate your readiness for incident response plan adoption, cyber security exercises, vulnerability assessments, system information provision, government security software installation, and cyber security incident reporting.
Through structured evaluation criteria aligned to SOCI Act requirements and supporting guidance, you will assess your organisation's capability to meet these enhanced obligations when directed by the Australian Government.
This assessment is designed for:
Organisations using this assessment typically gain:
The assessment comprehensively evaluates readiness across the six ECSO requirements:
The Enhanced Cyber Security Obligations apply to Systems of National Significance — critical infrastructure assets of the highest criticality to Australia. While ECSO directions are discretionary government powers, designated entities must be prepared to comply when directed. This assessment helps organisations proactively build capability rather than reacting to government directions.
For SoNS entities, information about your security posture and gaps is itself highly sensitive. This tool is specifically designed with national security considerations in mind:
Your ECSO readiness information remains under your complete control—as it should be for systems of national significance.
Important Disclaimer
This assessment is a self-assessment tool designed to help critical infrastructure entities evaluate their ECSO readiness. It does not constitute legal advice, a formal SOCI Act compliance assessment, or government certification. Organisations should refer to official CISC guidance and seek appropriate legal counsel for specific compliance requirements.
Board-ready overview with readiness scores for each ECSO requirement, exportable to Word format for executive and regulator circulation.
Comprehensive findings mapped to specific ECSO requirements with risk ratings, exportable to Excel for remediation tracking.
Charts showing readiness by ECSO requirement, suitable for Board presentations and regulatory engagement preparation.
Actionable recommendations ranked by compliance criticality and implementation complexity.
Consistent methodology enables periodic reassessment to demonstrate ongoing readiness and continuous improvement.
Get immediate access to the ECSO Readiness Assessment Tool.
Purchase AssessmentOrganisations frequently combine this assessment with complementary frameworks to address multiple governance requirements.
Energy sector entities often combine ECSO readiness with AESCSF maturity assessment for comprehensive SOCI Act coverage.
Learn moreNIST CSF provides complementary coverage for organisations seeking alignment to international frameworks alongside SOCI Act.
Learn more