Skip to content
arrow_back
search
ISM-1992 policy ASD Information Security Manual (ISM)

Using Hedged Variant of ML-DSA for Digital Signatures

Use the more secure version of ML-DSA for digital signatures to minimise risks.

record_voice_over

Plain language

This control is about using a safer version of a tool called ML-DSA, which stands for Module-Lattice-Based Digital Signature Algorithm, when signing digital documents. Digital signatures verify documents are authentic and haven’t been tampered with. If you don’t use the more secure variant, someone could potentially forge documents, leading to potential security breaches or reputation damage.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Nov 2024

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

When using ML-DSA for digital signatures, the hedged variant is used whenever possible.
policy ASD Information Security Manual (ISM) ISM-1992
priority_high

Why it matters

Without the hedged ML-DSA variant, forged documents could compromise critical decisions, leading to legal liabilities and reputational harm.

settings

Operational notes

Regularly confirm ML-DSA signing uses the hedged variant where supported; monitor configuration changes and update procedures accordingly.

Mapping detail

Mapping

Direction

Controls