Skip to content
arrow_back
search
ISM-0820 policy ASD Information Security Manual (ISM)

Prevent Posting Work Info to Unauthorised Services

Employees should avoid sharing work details on websites not approved by the organisation.

record_voice_over

Plain language

This control is about making sure that employees do not share work-related information on websites or services that the company hasn't approved. It matters because if sensitive work details end up on the wrong sites, it could lead to data breaches, reputational damage, and financial loss.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Dec 2019

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Personnel are advised to not post work information to unauthorised online services and to report cases where such information is posted.
policy ASD Information Security Manual (ISM) ISM-0820
priority_high

Why it matters

Posting work information to unauthorised online services can cause data leakage, reputational damage, and regulatory or financial impacts.

settings

Operational notes

Maintain a clear list of authorised online services, brief staff not to post work info elsewhere, and require immediate reporting and removal requests for any unauthorised posts.

Mapping detail

Mapping

Direction

Controls