Skip to content
arrow_back
search
ISM-1520 policy ASD Information Security Manual (ISM)

Employment Screening for Gateway Administrators

Ensure appropriate screening and security clearance for gateway admins based on system sensitivity.

record_voice_over

Plain language

This control is about making sure that people who manage important parts of your computer systems, called gateways, are properly checked out before they’re hired. It's crucial because if someone untrustworthy gets access, they could cause serious harm by stealing data, disrupting services, or exposing sensitive information.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Aug 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

System administrators for gateways undergo appropriate employment screening, and where necessary hold an appropriate security clearance, based on the sensitivity or classification of gateways.
policy ASD Information Security Manual (ISM) ISM-1520
priority_high

Why it matters

Inadequate screening of gateway administrators can enable unauthorised privileged access, leading to data compromise and disruption of gateway services.

settings

Operational notes

Maintain evidence of screening and required clearances for gateway admins; re-screen and reassess clearances when gateway sensitivity/classification or admin duties change.

Mapping detail

Mapping

Direction

Controls