Report
Cyber Security NSW: governance, roles, and responsibilities
Publisher
Government accountability
Electronic government information
State and territory government departments
Data protection
Cyber security
Computer networks
New South Wales
Description
This audit assesses the effectiveness of Cyber Security NSW's arrangements in contributing to the NSW Government's commitments under the NSW Cyber Security Strategy, in particular, increasing the NSW Government's cyber resiliency.
Key findings:
- Cyber Security NSW has a clear purpose that is in line with wider government policy and objectives. However, it does not clearly and consistently communicate its key objectives, with too few reliable and meaningful ways of measuring progress toward those objectives.
- Cyber Security NSW does not provide adequate assurance of the cyber security maturity self assessments performed by NSW Government agencies. Department heads are accountable for ensuring their agency's compliance with NSW government policy.
- Cyber Security NSW has a remit to assist local government to improve cyber resilience. However, it cannot mandate action and does not have a strategic approach guiding its efforts.
Publication Details
Copyright:
Audit Office of New South Wales 2023
License type:
All Rights Reserved
Access Rights Type:
open
Post date:
16 Feb 2023
