Cyber Security Act 2024 (Australia)
Cyber Security Act 2024: Ransomware Reporting Obligations

Cyber Security Act 2024 (Australia) AUCSA-RAN-RPT: Ransomware and cyber-extortion payment reporting obligation

A reporting business entity that makes, or whose entity makes on its behalf, a ransomware or cyber-extortion payment in response to a cyber security incident must report the payment to the designated Commonwealth body within 72 hours of making the payment or becoming aware it was made.

Other controls in Cyber Security Act 2024: Ransomware Reporting Obligations

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.