Issued 20 March 2012
Last updated 12 June 2024

Policy

The key objective for managing security risk is to ensure that personnel and physical and digital assets are protected and secure, and that a strong security culture is embedded within processes and the behaviour of personnel.

Security risk shall be managed in conformity with applicable laws and regulations, and best practice. Security risk management shall include physical, administrative, technical, and organisational measures to ensure that security objectives are met. Security initiatives shall be anchored in the organisation and conducted using a systematic, continuous, and risk-based approach.

2.1 General requirements

2.2 Physical security

2.3 Personnel security

2.4 Travel security

2.5 Information security