Governance and Compliance

Does your organisation have a single point of failure?
Someone set up the website, the domain name and the email system years ago, whether that was a staff member, a volunteer or an external developer, and it worked, so…

What the ASD’s latest security alert means for your organisation
On 9 July 2026, the Australian Signals Directorate issued a critical alert on a large-scale cybersecurity campaign exploiting content management systems, including WordPress and Joomla, across organisations of every size.…

Privacy risk in Australia
This week is Privacy Awareness Week in Australia, and I attended a webinar on AI, automated decision-making and privacy risk, presented by privacy law expert Anna Johnston from Helios Salinger.…

IT Current State Assessment
I’ve worked with not-for-profit and community organisations for years. The pattern is relatively consistent: technology initiatives operate separately from organisational strategy, creating inefficiencies that compound over time. Recently I worked…

Governing through a cyber crisis
This morning I attended the AICD’s “Governing Through a Cyber Crisis” because I was interested to see what strategies for building a cyber-resilient organisation would be covered at a board…





