The security risk management maturity check is a free self-assessment for security, risk and facility managers. In 12 questions it tests how well an organisation identifies, assesses, treats and reviews its security risks, using the approach of AS ISO 31000:2018, and shows where the program most needs attention.

A mature program assesses risk consistently, tests whether controls actually work, and feeds incidents back into the assessment. The security risk assessment process guide and the security risk management pillar explain the method in detail.

How it works

Answer each question Yes, Partly, No or Not sure, then select See my results. Each area is scored out of 100 per cent, with Partly counted as half. You will see an overall rating, a score for each area and your priority actions, and you can email yourself a branded PDF report to share with your executive or board. It takes about five minutes.

This self-assessment needs JavaScript. If it does not load, contact Agilient for a copy of the questions.


FAQs

Frequently asked questions

What is security risk management maturity?
It describes how consistently and effectively an organisation identifies, assesses, treats and reviews its security risks. A mature program uses a documented framework, current assessments, tested controls and regular reporting to leadership.
Which standard does the check use?
The questions follow the risk management approach of AS ISO 31000:2018 Risk management, Guidelines, which underpins security risk assessment practice in Australia.
Is my information sent to Agilient?
Your answers stay in your browser unless you choose to email yourself the report. If you do, your name, email, organisation and results are sent to Agilient so that the report can be delivered.