What is the Essential 8?+
The Essential 8 is the Australian Signals Directorate’s baseline set of eight strategies for mitigating common cyber security threats, each assessed against defined maturity levels.
Which strategies does this assessment cover?+
Patch Applications, Patch Operating Systems, Multi-Factor Authentication and Application Control, each benchmarked against Maturity Level 1.
Why only four of the eight strategies?+
Essential 8 Rapid is a fixed-price, fixed-scope entry point covering four prioritised strategies. The remaining four can be included as part of a broader engagement if you want full Essential 8 coverage.
Does this result in an Essential 8 certification?+
No. This assessment gives you an independent maturity benchmark against Maturity Level 1 for the four strategies assessed, without representing your overall compliance status.
How long does it take?+
The engagement runs over 2 weeks*, fixed regardless of scope.
What size organisation is this best suited for?+
Essential 8 Rapid is designed for mid-market Australian organisations looking to benchmark maturity, prepare for a client or insurer review, or get an independent read on their cyber security posture.
What happens after the assessment?+
You’ll have the option of a follow-up consultation to walk through findings. Many organisations use that conversation to scope a broader GRC uplift or ongoing vCISO support.
Can this be combined with your other assessments?+
Yes. Essential 8 Rapid is often run alongside Policy Review or NIST CSF Rapid for organisations that want a broader view of their governance and risk posture.