The PSPF self-assessment is a free check for Australian Government entities and their security advisers. In 20 questions it tests key requirements of the Protective Security Policy Framework across its six domains, governance, risk, information, technology, personnel and physical security, and shows where to focus before the annual protective security report.

Non-corporate Commonwealth entities must apply the PSPF, and it represents better practice for corporate Commonwealth entities and Commonwealth companies. The questions are drawn from the published PSPF requirements; requirement numbers refer to the current release. The PSPF explainer and the PSPF maturity assessment guide explain the framework and the annual report.

How it works

Answer each question Yes, Partly, No or Not sure, then select See my results. Each area is scored out of 100 per cent, with Partly counted as half. You will see an overall rating, a score for each area and your priority actions, and you can email yourself a branded PDF report to share with your executive or board. It takes about five minutes.

This self-assessment needs JavaScript. If it does not load, contact Agilient for a copy of the questions.


FAQs

Frequently asked questions

Who must apply the PSPF?
Non-corporate Commonwealth entities must apply the PSPF. It represents better practice for corporate Commonwealth entities and wholly owned Commonwealth companies, and suppliers are bound by the security terms in their contracts.
Is this the same as the annual PSPF report?
No. The annual protective security report is submitted through the Department of Home Affairs process. This self-assessment tests a selection of key requirements to help an entity prepare for that report and see where to focus.
Is my information sent to Agilient?
Your answers stay in your browser unless you choose to email yourself the report. If you do, your name, email, organisation and results are sent to Agilient so that the report can be delivered.