Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    A Peek Into the Known Exploited Vulnerabilities of 2024 | Blog

    April 23, 2026

    SenseLive X3050 | CISA

    April 23, 2026

    CISA Adds One Known Exploited Vulnerability to Catalog

    April 23, 2026
    Facebook X (Twitter) Instagram
    • Demos
    • Technology
    • Gaming
    • Buy Now
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Canadian Cyber WatchCanadian Cyber Watch
    • Home
    • News
    • Alerts
    • Tips
    • Tools
    • Industry
    • Incidents
    • Events
    • Education
    Subscribe
    Canadian Cyber WatchCanadian Cyber Watch
    Home»Alerts»Audit: NSW’s local government audit found that 47% of councils did not have a cyber security plan | kirbyidau.com
    Alerts

    Audit: NSW’s local government audit found that 47% of councils did not have a cyber security plan | kirbyidau.com

    adminBy adminApril 14, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    IT policies and procedures were outdated or not in place at 43 councils

    Audit Office of New South Wales Report: Local Government 2022

    Read more reports from Audit Office of New South Wales and other Audit Reports. All reports for Local Government in Australia

    Poor management of cyber security can expose councils to a broad range of risks, including financial loss, reputational damage and breaches of data involving the unauthorised release of sensitive data and personally identifiable information.

    The NSW Cyber Security Policy states that the term cyber security covers all measures used to protect systems and information processed, stored or communicated on these systems from compromise of confidentiality, integrity and availability.

    A lack of cyber security maturity continues to be a sector-wide common audit finding among councils.

    Cyber security findings were reported in 63 councils (2020–21: 65 councils) as they did not have at least one of the following basic governance and internal controls to manage cyber security such as having a:

    • cyber security framework, policy and procedure
    • register of cyber incidents
    • simulated cyber attack testing (penetration testing)
    • cyber security training and awareness program.

    Forty-seven per cent of councils do not have a formal cyber security strategy/plan in place.

    Our data collection from 30 June 2022 council audits identified that only 53% of councils have created a formal cyber security strategy/plan.

    In response to previous audit recommendations, OLG released Cyber Security Guidelines for NSW local government on 19 December 2022. The guidelines:

    • allow councils to assess their cyber security maturity and their maturity uplift
    • outline cyber security standards and controls recommended by Cyber Security NSW for NSW local governments
    • can be adopted by councils or used to form the basis of an internally developed cyber security policy
    • are strongly recommended to councils for adherence but is voluntary with no requirement to report maturity scores to Cyber Security NSW.

    Sixty-nine councils (47% of councils) do not have a formal cyber security plan. These councils need to prioritise creation of a cyber security plan, based on the OLG’s Cyber Security Guidelines for NSW Local Government, in order to ensure cyber security risks over key data and IT assets are appropriately managed and key data is safeguarded. All councils should update their cyber security plans based on the guidelines.

    The risks associated with poor cyber security maturity are compounded by information technology control weaknesses and poor information systems security hygiene.

    Recommendation to councils
    All councils need to prioritise and create a cyber security plan in order to ensure cyber security risks over key data and IT assets are appropriately managed and key data is safeguarded.

    Councils should refer to the ‘Cyber Security Guidelines for NSW Local Government’ released by the OLG.

    NSW Audit Councils 2022

    Related



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleVulnCheck Integrates with ThreatQuotient: Operationalize Exploit Intelligence in the ThreatQ Platform and is Now Generally Available on the ThreatQ Marketplace | Blog
    Next Article SSA-712929 V3.1 (Last Update: 2026-04-14): Denial of Service Vulnerability in OpenSSL (CVE-2022-0778) Affecting Industrial Products
    admin
    • Website

    Related Posts

    Alerts

    SenseLive X3050 | CISA

    April 23, 2026
    Alerts

    CISA Adds One Known Exploited Vulnerability to Catalog

    April 23, 2026
    Alerts

    ZDI-26-259: (0Day) Docker Desktop cli-plugins Incorrect Permission Assignment Local Privilege Escalation Vulnerability

    April 23, 2026
    Add A Comment

    Comments are closed.

    Demo
    Top Posts

    Catchy & Intriguing

    March 17, 202632 Views

    The Grandparent Scam: How AI Voice Technology Makes This Old Con Deadlier Than Ever

    March 18, 202620 Views

    Global Takedown of Massive IoT Botnets Halts Record-Breaking Cyberattacks

    March 20, 202619 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    85
    Featured

    Pico 4 Review: Should You Actually Buy One Instead Of Quest 2?

    January 15, 2021 Featured
    8.1
    Uncategorized

    A Review of the Venus Optics Argus 18mm f/0.95 MFT APO Lens

    January 15, 2021 Uncategorized
    8.9
    Editor's Picks

    DJI Avata Review: Immersive FPV Flying For Drone Enthusiasts

    January 15, 2021 Editor's Picks

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Demo
    Most Popular

    Catchy & Intriguing

    March 17, 202632 Views

    The Grandparent Scam: How AI Voice Technology Makes This Old Con Deadlier Than Ever

    March 18, 202620 Views

    Global Takedown of Massive IoT Botnets Halts Record-Breaking Cyberattacks

    March 20, 202619 Views
    Our Picks

    A Peek Into the Known Exploited Vulnerabilities of 2024 | Blog

    April 23, 2026

    SenseLive X3050 | CISA

    April 23, 2026

    CISA Adds One Known Exploited Vulnerability to Catalog

    April 23, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • Home
    • Technology
    • Gaming
    • Phones
    • Buy Now
    © 2026 ThemeSphere. Designed by ThemeSphere.

    Type above and press Enter to search. Press Esc to cancel.