Software Supply Chain Risk: SBOMs, Vendor Diligence, and the Australian Context
Software supply chain compromise is now an everyday risk for Australian organisations. What an SBOM is, what realistic supplier diligence looks like, and where to start.
Practical perspectives on the technology trends, cyber risks, and operational opportunities most relevant to Australian businesses — written by the team at Asset Hosting.
Software supply chain compromise is now an everyday risk for Australian organisations. What an SBOM is, what realistic supplier diligence looks like, and where to start.
Adversary-in-the-middle phishing kits have made traditional MFA increasingly ineffective. What phishing-resistant authentication means and why to move now.
The 3-2-1 backup rule has aged well, but the threat landscape has shifted. What 3-2-1-1-0 means, why immutability matters, and what good DR looks like today.
Zero Trust is often presented as an enterprise-only architecture. In reality, the principles map well to Australian mid-market environments — when implemented pragmatically.
ISO 42001 is becoming the international standard for AI management systems. What it covers, how it relates to ISO 27001 and the Privacy Act, and where to start.
Windows 10 has reached end of life. The compliance, security, and operational implications, and how to approach migration sensibly.
The most significant Privacy Act reform in three decades is moving through implementation. A clear summary of what is changing and what to do now.
Ransomware response is dominated by decisions made in the first 24 hours. A practical, vendor-neutral playbook for Australian SMEs.
The ASD’s Essential Eight is the de-facto cyber security baseline for Australian organisations. What each control means in practice and how to think about maturity.
Microsoft 365 stores customer data in Australia by default for tenants registered here, but the picture is more nuanced once you look beyond mailboxes.
Cloud bills have crept up across Australian businesses. A practical, vendor-neutral FinOps approach to bring them back under control.
A practical guide to artificial intelligence — separating genuine opportunity from marketing noise, and outlining where AI delivers real, measurable value.
ISO 27001 certification is increasingly expected by enterprise clients and government procurement. What the standard involves and why now is the right time.
Many Australian businesses manage IT through a patchwork of vendors. What that fragmentation is actually costing — and what a consolidated model looks like.