CTHIn ForceAct
Security of Critical Infrastructure Act 2018
30CASimplified outline of this Part
Start here
Get a plain-English read of 30CA
Turn the raw legal text into a practical explanation grounded in Security of Critical Infrastructure Act 2018.
#### 30CA Simplified outline of this Part
• This Part sets out enhanced cyber security obligations that relate to systems of national significance.
• The responsible entity for a system of national significance may be subject to statutory incident response planning obligations.
• The responsible entity for a system of national significance may be required to undertake a cyber security exercise.
• The responsible entity for a system of national significance may be required to undertake a vulnerability assessment.
• If a computer is a system of national significance, or is needed to operate a system of national significance, a relevant entity for the system may be required to:
(a) give ASD periodic reports of system information; or
(b) give ASD event‑based reports of system information; or
(c) install software that transmits system information to ASD.
> Note: For a declaration of a system of national significance, see section 52B.