This Prudential Standard aims to ensure that an APRA-regulated entity takes measures to be resilient against information security incidents (including cyber-attacks) by maintaining an information security capability commensurate with information security vulnerabilities and threats.
It requires organisation’s to significantly raise their information security capabilities commensurate with the evolving size and extent of the threats to their assets.