Skip to content
arrow_back
search
ISM-1626 policy ASD Information Security Manual (ISM)

Seek Legal Advice for Insider Threat Plans

Get legal advice when making and applying plans to handle insider threats.

record_voice_over

Plain language

This control is about getting legal help when planning how to protect your business from insiders who might misuse their access to your systems and data. It's crucial because if you don't involve legal experts, you might break the law or miss crucial protections, leading to damaged reputation, legal trouble, or financial loss.

Framework

ASD Information Security Manual (ISM)

Control effect

Proactive

Classifications

NC, OS, P, S, TS

ISM last updated

May 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Legal advice is sought regarding the development and implementation of an insider threat mitigation program.
policy ASD Information Security Manual (ISM) ISM-1626
priority_high

Why it matters

Without legal guidance, insider threat plans may inadvertently breach laws, resulting in costly legal issues and reputational damage.

settings

Operational notes

Engage legal counsel to review insider threat program design, monitoring, investigations and reporting for privacy and workplace law compliance.

Mapping detail

Mapping

Direction

Controls