CyberCX
Governance, risk and compliance consulting; compliance and audit services; Essential Eight assessment and uplift or assurance; managed security services including a 24x7 Security Operations Centre (SOC); incident response.
Checked 27 August 2026
Pricing
On enquiry
Capability coverage
3/35
verified. 31 not established.
Delivery
saas
Where it is weaker
Recorded with the same care as the capabilities, and not softened.
- Pricing not published; quote-based.
- ABN 90 629 363 328 requires ABN Lookup confirmation.
Capabilities
All tracked fields for Privacy, Cybersecurity & GRC, shown whether or not we could establish them.
Privacy
- Australian Privacy Principles (APP) managementNot established
- Privacy registerNot established
- Data inventoryNot established
- Data mappingNot established
- Privacy Impact Assessment (PIA / DPIA)Not established
- Consent managementNot established
- Retention managementNot established
- Data breach workflowNot established
- Notifiable Data Breaches (NDB) workflowNot established
- Data subject / privacy requestsNot established
Cyber Frameworks
- ACSC Essential Eight maturityNot established
- ISO/IEC 27001 information security managementPartial
Compliance and audit services include ISO 27001 readiness work; not a certification body performing the certification audit itself.
- Information Security Manual (ISM) complianceNot established
- NIST Cybersecurity Framework (CSF)Not established
- SOC 2 readinessNot established
Risk
- Cyber risk registerVerified
- Asset registerNot established
- Control libraryNot established
- Control testingNot established
- Third-party risk managementNot established
- Vendor assessmentNot established
Evidence
- Audit evidenceNot established
- Policy managementNot established
- AttestationsNot established
- Evidence collectionNot established
- Compliance reportsNot established
Security Operations
- Vulnerability managementNot established
- Incident responseVerified
- Security assessmentVerified
Technical
- Single sign-on (SSO)Not established
- IntegrationsNot established
- API accessNot established
- Australian data residencyNot established
- EncryptionNot established
- Audit logNot established
Integrations
None named on the provider's own site. If integrations matter to you, confirm directly before buying.
Evidence & sources
Comparison-critical facts carry evidence: where they came from, when they were checked, and how they were verified.
ISO/IEC 27001 information security management
- Compliance and audit servicesVendor confirmed · 27 August 2026
Cyber risk register
- GRC pageVendor confirmed · 27 August 2026
Incident response
- SOC pageVendor confirmed · 27 August 2026
Security assessment
- Essential Eight assessmentVendor confirmed · 27 August 2026
Request a quote or demo
Send your requirements to CyberCX's provider. Your details are shared only with them.
Privacy, cybersecurity and GRC software and services support compliance with privacy law and security frameworks. Nothing on this page is legal advice, and no provider is certified, accredited or approved by the OAIC, ACSC or any regulator unless independently evidenced.