BeyondTrust completes IRAP assessment
Identity security company BeyondTrust has completed an Infosec Registered Assessors Program (IRAP) assessment for its products at the Protected classification level.
The assessment, completed by CyberCX, demonstrates that BeyondTrust solutions meet the cybersecurity control requirements from the Australian Signals Directorate’s Information Security Manual. The assessment attests that BeyondTrust maps to the cloud controls matrix of the manual.
The IRAP assessment followed the process outlined in Phase 1A of Australian Cyber Security Centre’s (ACSC) Cloud Assessment and Authorisation Framework and demonstrated how BeyondTrust maps to the Cloud controls matrix within the Australian Information Security Manual (ISM). The matrix enables government agencies to make risk-informed decisions about using cloud computing and SaaS offerings.
During the assessment period, which spanned from March to July this year, CyberCX also worked with BeyondTrust to complete documentation review and technical configuration reviews of BeyondTrust’s Endpoint Privilege Management, Password Safe, Privileged Remote Access and Remote Support solutions.
BeyondTrust Regional Sales Director Roshi Balendran added that the company is “delighted” to have completed the assessment.
“[This] now allows BeyondTrust to expand our ability to work with both public sector organisations and commercial businesses that require information to be stored, processed, and communicated at the ‘Protected’ classification level,” he said. “The IRAP assessment reflects our commitment to our Australian government customers in providing them with industry-leading identity security solutions that help to secure their Paths to Privilege.”
ACSC updates guidance on SBOMs
The Australian Cyber Security Centre has released updated guidance on the minimum elements for a...
ASD urges care in the adoption of agentic AI for cyber defence
Care must be taken in the deployment of agentic AI in the wake of news that models being tested...
ASD issues advice on assessing vendor PQC readiness
New guidance helps organisations assess vendor readiness for post-quantum cryptography.
