Australia commits to establishing second national cyber security agency
The country is still aiming to be the most cyber-secure country in the world by 2030


Australia is set to establish a second cyber security agency to coordinate the cyber security efforts across government - part of its response to numerous high-profile cyber attacks that rocked the nation last year.
The new agency will be called the National Office for Cyber Security and will sit in the department of Home Affairs. The government will appoint a coordinator for cyber security to lead the new agency and coordinate its cyber security responsibilities.
Australia already has the Australia Cyber Security Centre (ACSC) which leads the government’s efforts to improve cyber security and is part of the Australian Signals Directorate (ASD) - an agency in the defence portfolio.
“We're serious about making Australia the most cyber-secure country in the world by 2030,” said Clare O’Neil, minister for home affairs and cyber security, on Twitter. “That means we [are] appointing a new national coordinator to lead Australia's cyber security responses to cyber attacks.”
The coordinator is also set to oversee the government’s cyber security investment strategies and lead the government response to cyber attacks, according to Reuters.
At the same time, the government has released a discussion paper to guide the development of its new cyber security strategy. It’s currently seeking feedback on proposed policies and included a number of questions hinting at the direction it’s looking to take.
This includes the potential formation of a Cyber Security Act, prohibiting businesses or insurers from making ransom payments, and creating a single portal for businesses to report cyber attacks.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
It’s also mulling greater engagement between ASD and ACSC, and organisations that experience a cyber attack to allow more information to be shared without the data being shared with regulators.
For now, details of the potential policies aren’t entirely clear. More information about how the policies may look will come after the 15 April 2023 deadline for responses.
“For businesses these days, cyber security is as important and essential as the shop having a lock on the door,” said prime minister Anthony Albanese. “We need all Australian businesses to be able to protect themselves and – just as importantly – protect their customers.”
RELATED RESOURCE
In December 2022, O’Neil revealed that Australia was planning to be the most cyber-secure country by 2030, and would proactively hunt hackers as part of this strategy.
She highlighted the Optus and Medibank cyber attacks, underlining that those events needed to be used as a way to bring in a permanent cyber security change in the country.
O’Neil formally launched the programme to develop the nation’s Cyber Security Strategy, looking to help the nation strengthen its critical infrastructure and government networks.
Zach Marzouk is a former ITPro, CloudPro, and ChannelPro staff writer, covering topics like security, privacy, worker rights, and startups, primarily in the Asia Pacific and the US regions. Zach joined ITPro in 2017 where he was introduced to the world of B2B technology as a junior staff writer, before he returned to Argentina in 2018, working in communications and as a copywriter. In 2021, he made his way back to ITPro as a staff writer during the pandemic, before joining the world of freelance in 2022.
-
Bigger salaries, more burnout: Is the CISO role in crisis?
In-depth CISOs are more stressed than ever before – but why is this and what can be done?
By Kate O'Flaherty Published
-
Cheap cyber crime kits can be bought on the dark web for less than $25
News Research from NordVPN shows phishing kits are now widely available on the dark web and via messaging apps like Telegram, and are often selling for less than $25.
By Emma Woollacott Published
-
Capita handed £50m London police contract weeks after losing pension data
News The outsourcer will provide digital fraud reporting services after its cyber incident disclosure drew criticism
By Rory Bathgate Published
-
Supercharge trust for operations
Whitepaper Innovating through uncertainty
By ITPro Last updated
-
Western Digital suffers cyber attack, shuts down systems
News Customers are taking to Twitter to report they’re unable to log into their storage products through Western Digital’s online portal
By Zach Marzouk Published
-
Lazarus blamed for 3CX attack as byte-to-byte code match discovered
News Additional analysis suggested 3CX developer teams ignored "red flags"
By Zach Marzouk Published
-
Latitude Financial's data policies questioned after more than 14 million records stolen
News Some of the data is from at least 2005 and includes customers’ name, address, and date of birth
By Zach Marzouk Published
-
Some GitHub users must take action after RSA SSH host key exposed
News One cloud security expert likened the incident to the infamous HeartBleed bug from 2014
By Zach Marzouk Published
-
Latitude hack now under state investigation as customers struggle to protect their accounts
News The cyber attack has affected around 330,000 customers, although the company has said this is likely to increase
By Zach Marzouk Published
-
IDCARE: Meet the cyber security charity shaping Australia and New Zealand's data breach response
Case Studies IDCARE is recruiting a reserve army to turbocharge the fightback against cyber crime not just in the region, but in the interests of victims all over the world
By Zach Marzouk Published