9 documents: policy suite, risk register, all 93 controls assessed. ISO 27001:2022 aligned, Privacy Act compliant.
Compliance documentation
your team can
actually implement.
Practitioner-grade templates for ISO 27001, ISO 42001, APRA CPS 230, Privacy Act, EU AI Act, TPRM, and data breach response. Designed for regulated industries. Download and deploy.
Everything you need
to govern, comply, and certify.
14 mandatory clause documents + auditor guides. Everything required for Stage 1 certification audit.
Complete suite: 19 templates + 19 guides covering all mandatory clauses and Annex A controls.
7-document suite for organisations starting their AIMS journey: governance, gap analysis, project plan.
Full PIA toolkit: threshold assessment, impact register, Privacy Act APP alignment, OAIC methodology compliant.
APRA CPS 230 compliance documentation: critical operations register, BIA, business continuity, supply chain.
Risk classification, conformity assessment, technical documentation, and post-market monitoring for the EU AI Act.
End-to-end TPRM: vendor tiering, DDQ, weighted risk scoring, contract checklist, monitoring, exit playbook.
From triage to OAIC notification: NDB scheme, 72-hour GDPR path, investigation workbook, response log.
15 opinionated architecture decision records covering the full AI/ML lifecycle. Cloud-agnostic, Privacy Act aligned.
Australian compliance is
more complex than ever.
The documentation burden is real. Every framework below has active obligations: and most Australian organisations have gaps.
Written by practitioners.
Not generic templates.
Australian regulatory depth
Every document addresses Australian Privacy Act, APRA, and sector-specific obligations: not generic international content pasted into an Aussie context.
Implemented, not aspirational
Risks are pre-populated. Controls are assessed. Registers have realistic starting data. Designed for implementation, not filing.
Auditor-authored guides
Every template includes an auditor guide explaining what ISO 27001 and ISO 42001 auditors actually check: common NCs and how to avoid them.
Editable Word documents
Every document is an editable .docx file. No PDF lock-in. No platform dependency. Find and replace your organisation name and go.
Weighted risk scoring
The TPRM and ISO 42001 risk tools use weighted scoring models: defensible, consistent ratings that hold up under audit.
Dual-framework coverage
Products like the Data Breach Playbook handle NDB and GDPR Article 33 simultaneously: because most organisations face both.
Ready to close your compliance gaps?
Browse the full catalogue: from ISO 27001 baseline to EU AI Act conformity. Every product is available for immediate download.