National Security Council Secretariat - Cyber Security Audit Baseline Requirements (NSCS-46-16 Rev. 1.0, 2020)
AI / PRIVACY / CYBER RELEVANCE
Useful for AI security assurance, audit baselines and critical-infrastructure controls where applicable.
AI: ModeratePrivacy: ModerateCybersecurity: Very High
READ FIRST
- Minimum security assurance baseline
- audit criteria
- organisational/technical control families
PURVIEW
Establishes a National Security Council Secretariat baseline for cybersecurity audits, intended to provide minimum-security assurance criteria against which cyber controls can be assessed. It is relevant to AI because AI systems inherit the security posture of the infrastructure on which they are built; weaknesses in identity, endpoints, networks, cloud environments or application layers can become weaknesses in model deployments as well. The baseline is therefore useful for designing audit programmes and security assurance for AI-enabled government and critical digital environments, particularly where a documented minimum-security benchmark is required.
Classification and legal status. Cyber-audit baseline / technical standard; not a generally applicable statute.