Complying with the SOCI Act in Australia

How Thales Helps with SOCI Act (Amendments) Compliance

What is the Security of Critical Infrastructure Act?

On 25 November 2024, the Security of Critical Infrastructure and Other Legislation Amendment (Enhanced Response and Prevention) Bill 2024 (SOCI Act), which was included in the Cyber Security Legislative Package was passed into law. The SOCI Act gives the Government broader powers to deliver on Shield 4 of the Cyber Security Strategy 2023-2030 (protecting critical infrastructure) and to address gaps and issues of the evolving cyber threat landscape.

Map of APAC

COMPLIANCE BRIEF

Ensuring Compliance with Australia’s SOCI Act

Learn how Thales helps organizations comply with Australia’s SOCI Act by securing critical infrastructure, protecting data, and managing encryption keys.

Get the Compliance Brief

How Thales Helps with SOCI Act (Amendments) Compliance

Thales’ solutions can help organizations comply with the SOCI Act by simplifying compliance and automating security reducing the burden on security and compliance teams.

We provide comprehensive cyber security solutions in three key areas of cybersecurity: Application Security, Data Security, and Identity & Access Management.

SOCI Compliance

SOCI Compliance Solutions

Application Security

Protect applications and APIs at scale in the cloud, on-premises, or in a hybrid model. Our market leading product suite includes Web Application Firewall (WAF), protection against Distributed Denial of Service (DDoS) and malicious BOT attacks, security for APIs, a secure Content Delivery Network (CDN), and Runtime Application Self-Protection (RASP).

Address the requirements in SOCI Act (Amendments) – SCHEDULE 1

How Thales helps:

  • Discover and classify potential risks for all public, private, and shadow APIs.
  • Identify structured and unstructured sensitive data at risk on-premises and in the cloud.
  • Identify the current state of compliance, documenting gaps, and providing a path to full compliance.

Other key data protection and security regulations

PCI HSM

Global

MANDATE | ACTIVE NOW

The PCI HSM specification defines a set of logical and physical security compliance standards for HSMs specifically for the payments industry. PCI HSM Compliance certification depends on meeting those standards.

DORA

Global

REGULATION | ACTIVE NOW

DORA aims to strengthen the IT security of financial entities to make sure the financial sector in Europe is resilient in the face of the growing volume and severity of cyber-attacks.

Data Breach Notification Laws

Global

REGULATION | ACTIVE NOW

Data breach notification requirements following loss of personal information have been enacted by nations around the globe. They vary by jurisdiction but almost universally include a “safe harbor” clause.

Contact a Compliance Specialist

Contact Us