Skip to main content
Contact Us

Free resources

Grab the ISO & Essential Eight templates we actually use

Culture pledges, ISO 27001 checklists, conversation prompts, and incident plans. The same artefacts we use in real engagements. Ready to duplicate, customise, and ship.

Pick the artefact you need and download instantly.

What’s inside

Real deliverables, ready to reuse

Copy, tweak, and plug these straight into your ISO 27001 launch plan or Essential Eight uplift.

  • 🗂️ Staff-friendly pledges to set expectations around secure behaviour.
  • 🧮 Clause-by-clause ISO 27001 trackers in spreadsheet and PDF formats.
  • 🤖 An ISO 42001 checklist covering all 38 AI management system controls.
  • 🔐 A SOC 2 readiness checklist mapped to the five Trust Services Criteria.
  • 🗣️ Conversation starters for toolbox talks and leadership briefings.
  • 🛠️ Incident plans with ready-to-edit roles, contacts, and comms templates.

Free Cybersecurity Insights on YouTube

Short breakdowns of ISO, Essential Eight, ISM, IRAP & AI governance

The Mindset Cyber channel translates Australian cyber news, framework updates, and certification journeys into clear next steps.

  • 📊 Threat briefings covering ASD Annual Reports, CVE disruptions, PSPF shifts, and IRAP expectations.
  • 🛡️ How-to guides for ISO 27001 documentation, incident processes, and audit evidence.
  • 🏛️ Essential Eight and ISM change logs, including Secure by Design, zero trust, and AI requirements.
  • 🤖 Course explainers for ISO 42001, ISO 27001 Lead Implementer/Auditor, and SMB1001 programs.
Visit the YouTube channel
Mindset Cyber YouTube preview

📺 40K+ channel views

Practice questions for your PECB exam

Mindset Cyber students often need a practice bank ahead of the PECB exam. We built one, Mindset Prep, with adaptive questions for each exam. Start with the free question set:

Guide

ISO 31000 Risk Matrix Template

A colour-coded 5×5 likelihood × consequence grid with pre-calibrated scales aligned to AS/NZS ISO 31000:2018. Plus a step-by-step guide to adapting it to your organisation.

Template

Cybersecurity Culture Pledge

Plain-language commitments that set expectations for staff behaviour, data protection, and accountability.

Checklist

ISO 27001 Checklist

A clause-by-clause tracker covering scope, controls, and evidence so you can manage implementation without guesswork.

Checklist

ISO 42001 Implementation Checklist

All 38 ISO/IEC 42001:2023 Annex A controls grouped by the nine objectives. Print the checklist (PDF), fill in the Statement of Applicability template (XLSX), or tick them off online.

Checklist

SOC 2 Readiness Checklist

30 pre-audit readiness activities across the five AICPA Trust Services Criteria, each with the evidence to prepare. Print it (PDF) or track it (XLSX).

Discussion Guide

Cybersecurity Conversation Starters

Thought-provoking prompts for toolbox talks and team check-ins that keep security awareness practical.

Plan

Information Security Incident Management Plan

An ISO 27001-aligned plan with roles, classification guidance, contact templates, and communication scripts.

Control Stack

Australian ISO 27001, Essential Eight, and ISM controls in one library

A public catalogue that distils ISO/IEC 27001:2022, the ASD Essential Eight, and the ASD ISM into consistent cards spelling out ownership, implementation ideas, and evidence tips. Each control includes linked tags, maturity cues, and cross-framework mappings.

Why build this?

Controls are rewritten in plain English so stakeholders understand intent, not just clause numbers.

Who it helps

CISOs, compliance managers, internal audit teams, and partners who need a single source of control language.

What you get

Cross-framework mappings, recommended owners, implementation tips, and audit-ready evidence examples.

Visit controlstack.au

PolicyMint

Customised ISO 27001 and ISO 42001 documents, your first one free

PolicyMint drafts finished, audit-ready ISO 27001 and ISO 42001 documentation customised to your business, not blank templates. Every document is checked by three independent verifiers before you see it. Your first document is free (card required), and the complete set is A$350 one-time with no subscription.

PolicyMint document workspace showing a finished ISO 27001 document with guided review status and a branded preview.

What you get

Finished policies and procedures written for your business and in your branding, ready for the auditor.

Who it helps

Teams that need the finished documentation, not another compliance platform to maintain.

The offer

Your first document free, then A$350 one-time for the full ISO 27001 or ISO 42001 set.

Visit policymint.ai