Suppliers

Suppliers

Demonstrate your cyber security posture.

Enterprise customers, insurers, and procurement teams are asking harder questions about supplier cyber security.

Australian Cyber Essentials (ACE) gives suppliers an evidence-based, independently certified pathway they can use to respond with more confidence.

What ACE Gives Suppliers

  • independent certification issued by Bureau Veritas
  • a practical pathway, supported by the ACE programme team
  • a stronger response to customer assurance requests
  • a tiered maturity model
  • an ISMS component that supports stronger governance
  • a reusable credential that can be used across multiple customer relationships

Common Questions

We already have controls in place.

That existing work should help. ACE is intended to recognise and build on what organisations are already doing, not force them to start from zero.

We are too small for a major certification programme.

ACE is designed to be practical for organisations without large internal security teams.

We already completed a customer questionnaire.

A customer questionnaire usually addresses one customer at one point in time. ACE is intended to provide a more credible and reusable assurance outcome.

We already hold ISO/IEC 27001 certification.

That should provide a strong foundation. Existing evidence and governance maturity may assist with the ACE journey.

People combined