Requirement 0046 (Part Two: Risk, section 6.1.3 Third Party Risk Management; applies to All entities; dated 31 October 2024; retained from Release 2025): Procurement and contract decisions consider the security risks before engaging providers operating under foreign ownership, control or influence, and in response to any developments during the contract period that may give rise to foreign ownership, control or influence risks. FOCI-related risk is assessed before engaging providers and when developments during the contract may create it (Direction 001-2024 integrated); ASIO's Due Diligence Integrity Tool, Home Affairs FOCI guidance and model clauses support this, and FOCI risks found in procurement are reported to Home Affairs.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.