Compliance, Governance & Risk Training
Compliance training that names the instrument. Fifteen courses built around the frameworks Australian organisations are actually held to: the ASD Essential Eight, the Security of Critical Infrastructure Act, the Privacy Act and the Australian Privacy Principles, ISO 27001 for information security management, and ISO 31000 for risk.
The emphasis throughout is evidence rather than intent. An auditor does not ask whether you have a policy; they ask to see the register, the review date, the sign-off and the exception. So the practical courses — risk assessment workshops, compliance auditing fundamentals, business continuity planning, data governance — are built around producing the artefact, not describing it. Records Management Compliance exists because a great deal of public sector risk turns out to be a retention question nobody owned.
Governance for Non-Profits & SMEs is free, deliberately. Smaller organisations carry the same obligations with none of the compliance headcount, and pricing that course was going to stop the people who most need it from taking it.
15 courses
Where to start
- New to compliance — Governance for Non-Profits & SMEs — free — then Privacy & Data Protection (Australian Law).
- Government and council — Essential Eight Implementation · Critical Infrastructure Protection (SOCI Act) · Records Management Compliance.
- Risk and audit — Cyber Security Risk Management Framework · Compliance Auditing Fundamentals · Business Continuity Planning.
- Data and privacy — Data Governance Best Practices · Privacy & Data Protection.
Common questions
Will this course make us ISO 27001 certified?
No. Certification is awarded by an accredited certification body after an audit of your management system. This course builds the capability to establish and run that system. The two are separate and we will not blur them.
Does the SOCI Act apply to us?
That depends on your sector and whether you are a responsible entity for a critical infrastructure asset. The course covers how to work that out, which is the question most organisations actually have, rather than assuming the answer is yes.
Is this legal advice?
No. It is training on how the frameworks work and what compliance practice looks like. For an opinion on your specific obligations, speak to a lawyer. We are explicit about that boundary in the material.
Training this team?
Haibridge Institute delivers professional development and applied skills training. We are not a Registered Training Organisation, and our programs are not accredited qualifications under the Australian Qualifications Framework. They are designed to build practical capability alongside formal qualifications, not to replace them.