Skip to content
arrow_back
search
ISM-0140 policy ASD Information Security Manual (ISM)

Prompt Reporting of Cyber Incidents to ASD

Report cyber incidents to ASD immediately when they're identified.

record_voice_over

Plain language

When a cyber security incident happens, it's crucial to let the Australian Signals Directorate (ASD) know about it straight away. This is important because if we delay, it might give attackers more time to cause damage and could lead to bigger problems for us, like data breaches or financial losses.

Framework

ASD Information Security Manual (ISM)

Control effect

Responsive

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML2, ML3

Official control statement

Cyber security incidents are reported to ASD as soon as possible after they occur or are discovered.
policy ASD Information Security Manual (ISM) ISM-0140
priority_high

Why it matters

Delays in reporting cyber incidents to ASD increase attack severity, risking data breaches and financial losses.

settings

Operational notes

Define an incident reporting procedure that notifies ASD as soon as possible after detection, with escalation paths, contacts and time targets.

Mapping detail

Mapping

Direction

Controls