Protective Security Policy Framework (PSPF) Release 2026
Part One: Governance (sections 1 to 4) – Protective Security Policy Framework (PSPF) Release 2026

Protective Security Policy Framework (PSPF) Release 2026 0023: 0023 Positive security culture program

Requirement 0023 (Part One: Governance, section 3.4 Security Planning, Incidents and Training; applies to All entities; dated 31 October 2024; retained from Release 2025): The Accountable Authority and Chief Security Officer develop, implement and maintain a program to foster a positive security culture in the entity and support the secure delivery of government business. The Accountable Authority and CSO are responsible for a program in which personnel value, use and protect information and resources, supported by the CISO and practitioners.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Part One: Governance (sections 1 to 4) – Protective Security Policy Framework (PSPF) Release 2026

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.