State-sponsored threats active · ASD notifications up 111%

SOCI Act compliance
that never sleeps.

Annual audits can’t protect against threats that operate 24/7. Our agents monitor your critical infrastructure continuously.

SOCI Act · IEC 62443 · AESCSF 2.0 · 11 sectors · 22 asset classes

190+
ASD CI notifications
FY24-25, up 111%
5+ yrs
Volt Typhoon undetected
Periodic assessments failed
12 hrs
Incident reporting deadline
SOCI Act mandatory
A$330K
Per day non-compliance
Corporations 5x

Always-on protection

Threats don’t sleep.
Neither does your shield.

State-sponsored actors probe continuously. Our agents scan, detect, and escalate 24/7. Your team makes every containment decision.

Threats Always-On Protected

Point-in-time assessments leave you blind.

Annual assessment
× 3-12 months of blind spots between assessments
× Consultant delivers a PDF, findings stale in weeks
× CIRMP evidence collected manually for board
Always-on
✓ 24/7/365 — every control, every hour
✓ Agents run, humans approve every escalation
✓ Board attestation from live data, not last quarter

Three frameworks. One platform.

Click any framework to see what Sarah covers.

SOCI Act

76%

11 sectors · CIRMP · 12-hr reporting · A$330K/day

IEC 62443

58%

OT/ICS · Zones & conduits · SL1-SL4 · AU national standard

AESCSF 2.0

52%

Energy sector · MIL0-3 · SP1-SP3 · AEMO portal closes 1 May

Key gap

3 of 13 asset classes missing CIRMP documentation. Penalty exposure: A$990K/day across 3 entities.

Sarah says

“Your cyber and supply chain vectors are strong. Personnel hazard documentation is the gap. I can generate the evidence pack in 48 hours.”

See Risk Intelligence →

Current level

Achieved SL2 across IT zones. OT zones at SL1. Target: SL3 for state-actor protection.

Peter says

“Your IT/OT boundary has 4 unmonitored conduits. I’m seeing Modbus traffic that should be segmented. Priority: close the SCADA-to-corporate bridge.”

See Integrations →

Maturity

MIL-1 achieved. MIL-2 at 64%. AEMO portal closes 1 May 2026. 14 practices need documentation.

Sarah says

“6 of the 14 gaps are already covered by your existing controls — just not documented. I can map the evidence in 2 weeks. The other 8 need board approval.”

See Methodology →

Watch the agents respond.

Click any scenario. Watch the response chain play out in real-time.

Critical

Ransomware beacon on SCADA network

Unusual C2 traffic from OT segment at 2:14am

Compliance

Board requests CIRMP attestation

Annual report due 28 September. Board needs current state.

APT

Volt Typhoon IOC match detected

ASD publishes new IOCs. Your network has a match.

Risk

AESCSF deadline in 5 weeks

AEMO portal closes 1 May 2026. 14 practices need evidence.

State actors are already inside
Australian CI networks.

APT40 (PRC)

“Regularly conducts malicious activities against Australian networks.”

ASD/Five Eyes, Jul 2024

Volt Typhoon (PRC)

Pre-positioning for disruptive attacks. 5+ years undetected access.

Five Eyes, Mar 2024

Salt Typhoon (PRC)

Targeted telecoms across 80+ countries including Australia.

ASIO, Nov 2025

Four sectors. One outcome.

Click any sector to see what the agents deliver.

Energy

AESCSF 2.0 + IEC 62443 + SOCI Act

Agent output example

“Unusual Modbus write command detected on PLC-07 (turbine control). No maintenance window active. Pattern matches reconnaissance phase of Volt Typhoon TTP. Recommending immediate OT segment isolation.”

Peter Walsh, SOC Lead · 2:14am

SP-2
AESCSF target
SL3
IEC 62443 target
8 wks
To compliance

Government

Essential Eight + PSPF + ISM

Agent output example

“Essential Eight Maturity Level 2 gap: application whitelisting not enforced on 23 endpoints in Finance. 4 of these endpoints have internet-facing services. PSPF control 16.4 non-compliant.”

Sarah Nguyen, Compliance Officer

ML2
E8 target
900+
ISM controls
3 wks
IRAP prep

Financial Services

CPS 234 + CPS 230 + SOCI Act

Agent output example

“CPS 234 gap: 3 critical information assets lack documented security measures proportionate to their sensitivity. APRA notification threshold breached for trading platform access controls.”

Sarah Nguyen, Compliance Officer

CPS 234
12 wk compliance
2 days
APRA audit prep
74%
Prep time reduced

Transport, Water, Healthcare

SOCI Act + CIRMP + All 4 hazard vectors

Agent output example

“CIRMP annual report: 3 of 4 hazard vectors compliant. Supply chain vector has 5 critical vendors without current security assessments. Board attestation deadline: 28 September.”

Sarah Nguyen, Compliance Officer

11
SOCI sectors
22
Asset classes
28 Sep
CIRMP deadline

How the agents protect your CI.

Click any agent to see what they do for critical infrastructure.

Peter Walsh

SOC Lead

24/7 OT + IT monitoring

Click for detail

Monitors SCADA, Modbus, DNP3 traffic. Correlates with ICS threat feeds. Auto-generates SOCI 12-hour reports.

“Detected unusual Modbus write on PLC-07 at 02:14. No maintenance window. Escalated.”

Sarah Nguyen

Compliance

SOCI + IEC + AESCSF evidence

Click for detail

Continuous evidence collection across 3 CI frameworks. Maps controls automatically. Generates CIRMP annual reports.

“3 CIRMP gaps identified. Personnel hazard documentation needed. Evidence pack ready in 48hrs.”

James Park

Risk Analyst

Financial quantification in AUD

Click for detail

FAIR methodology. Every CI risk quantified in AUD. Penalty exposure calculated. ROI per remediation action.

“CIRMP non-compliance exposure: A$990K/day across 3 entities. Remediation cost: A$180K. ROI: 5.5x in 30 days.”

Maria Santos

CI Security

OT/ICS + state-sponsored threats

Click for detail

IEC 62443 zone mapping. APT campaign tracking. ICS-specific threat intelligence. OT vulnerability prioritisation.

“Volt Typhoon IOC match on DNS resolver. Production DB server. Initiating threat hunt. CISC notification prepared.”

Your next CIRMP report is due 28 September.

The CISC audit program is active. State actors are pre-positioned. Start with a free assessment.

Peter Walsh
SOC Lead

Responses are illustrative. Production data requires access.