Skip to main content
Contact Us

Free resources

Grab the ISO & Essential Eight templates we actually use

Culture pledges, ISO 27001 checklists, conversation prompts, and incident plans. The same artefacts we use in real engagements. Ready to duplicate, customise, and ship.

Pick the artefact you need and download instantly.

What’s inside

Real deliverables, ready to reuse

Copy, tweak, and plug these straight into your ISO 27001 launch plan or Essential Eight uplift.

  • 🗂️ Staff-friendly pledges to set expectations around secure behaviour.
  • 🧮 Clause-by-clause ISO 27001 trackers in spreadsheet and PDF formats.
  • 🤖 An ISO 42001 checklist covering all 38 AI management system controls.
  • 🔐 A SOC 2 readiness checklist mapped to the five Trust Services Criteria.
  • 🗣️ Conversation starters for toolbox talks and leadership briefings.
  • 🛠️ Incident plans with ready-to-edit roles, contacts, and comms templates.

Free Cybersecurity Insights on YouTube

Short breakdowns of ISO, Essential Eight, ISM, IRAP & AI governance

The Mindset Cyber channel translates Australian cyber news, framework updates, and certification journeys into clear next steps.

  • 📊 Threat briefings covering ASD Annual Reports, CVE disruptions, PSPF shifts, and IRAP expectations.
  • 🛡️ How-to guides for ISO 27001 documentation, incident processes, and audit evidence.
  • 🏛️ Essential Eight and ISM change logs, including Secure by Design, zero trust, and AI requirements.
  • 🤖 Course explainers for ISO 42001, ISO 27001 Lead Implementer/Auditor, and SMB1001 programs.
Visit the YouTube channel
Mindset Cyber YouTube preview

📺 40K+ channel views

Practice questions for your PECB exam

Mindset Cyber students often need a practice bank ahead of the PECB exam. We built one, Mindset Prep, with adaptive questions for each exam. Start with the free question set:

Guide

ISO 31000 Risk Matrix Template

A colour-coded 5×5 likelihood × consequence grid with pre-calibrated scales aligned to AS/NZS ISO 31000:2018. Plus a step-by-step guide to adapting it to your organisation.

Template

Cybersecurity Culture Pledge

Plain-language commitments that set expectations for staff behaviour, data protection, and accountability.

Checklist

ISO 27001 Checklist

A clause-by-clause tracker covering scope, controls, and evidence so you can manage implementation without guesswork.

Checklist

ISO 42001 Implementation Checklist

All 38 ISO/IEC 42001:2023 Annex A controls grouped by the nine objectives. Print the checklist (PDF), fill in the Statement of Applicability template (XLSX), or tick them off online.

Checklist

SOC 2 Readiness Checklist

30 pre-audit readiness activities across the five AICPA Trust Services Criteria, each with the evidence to prepare. Print it (PDF) or track it (XLSX).

Discussion Guide

Cybersecurity Conversation Starters

Thought-provoking prompts for toolbox talks and team check-ins that keep security awareness practical.

Plan

Information Security Incident Management Plan

An ISO 27001-aligned plan with roles, classification guidance, contact templates, and communication scripts.

Control Stack

Australian ISO 27001, Essential Eight, and ISM controls in one library

A public catalogue that distils ISO/IEC 27001:2022, the ASD Essential Eight, and the ASD ISM into consistent cards spelling out ownership, implementation ideas, and evidence tips. Each control includes linked tags, maturity cues, and cross-framework mappings.

Why build this?

Controls are rewritten in plain English so stakeholders understand intent, not just clause numbers.

Who it helps

CISOs, compliance managers, internal audit teams, and partners who need a single source of control language.

What you get

Cross-framework mappings, recommended owners, implementation tips, and audit-ready evidence examples.

Visit controlstack.au