PSPSEC021Undertake government security risk analysis

Generate a complete, audit-ready assessment tool for this unit in minutes: candidate assessment, assessor guide with model answers, and a coverage matrix mapped to every component below. Reviewed and approved by your qualified person, exported under your branding.

Every new account includes a free credit — no card, no subscription.

What an assessment for PSPSEC021 must cover

32 assessable components: 5 elements (17 performance criteria), 3 performance evidence and 9 knowledge evidence requirements, plus 3 foundation skills. An audit-defensible tool maps every question and task back to these — that mapping is the coverage matrix Auditori generates alongside the assessment.

Elements & performance criteria

1 Establish security risk context.

  • 1.1Confirm strategic and organisational context and identify stakeholders and their expectations.
  • 1.2Identify current and relevant security risk criteria from the security plan.
  • 1.3Obtain information and resources to conduct the risk analysis.

2 Identify security risk.

  • 2.1Identify and record potential sources of security risk from the perspective of all stakeholders.
  • 2.2Use specified methodology and tools to identify risks.
  • 2.3Consult stakeholders during the risk identification process to finalise a list of risks.

3 Analyse security risk.

  • 3.1Identify threat assessments, current exposure and current security arrangements to estimate the likelihood of each risk event occurring.
  • 3.2Determine potential consequences of each risk including critical lead time for recovery.
  • 3.3Determine, document and communicate risk ratings and include a rationale for each.

4 Evaluate security risk.

  • 4.1Assess risks against the organisation’s security risk criteria.
  • 4.2Prioritise risks for treatment.
  • 4.3Monitor risks until treatment measures have been implemented.

5 Compile security risk register.

  • 5.1Develop a security risk register that records identified risks, their nature and source.
  • 5.2Identify the consequences and likelihood of risks, and the adequacy of existing controls in the register.
  • 5.3Record risk ratings for identified risks in register.
  • 5.4Compile and maintain the security risk register to reflect changes in circumstances.
  • 5.5Refer risk register to management for decisions on action and treatment of risks.

Performance evidence

  • analyse an organisation’s security plan
  • research and critically analyse the operational environment and document conclusions
  • write formal and complex reports

Knowledge evidence

  • legislation, regulations, policies, procedures and guidelines relating to government security management
  • fraud control and protective security policies
  • Australian Government Information Security Manual (ISM) and its successors
  • Protective Security Policy Framework (PSPF) and its successors
  • risk analysis terminology and techniques
  • organisational security plan
  • organisational assets and security environment
  • risk management principles and guidelines
  • key features and requirements of International Organization for Standardization (ISO) standards for risk management

Foundation skills

  • Reading skills: interpret legislation, regulations, policies, procedures and guidelines relating to government security risk analysis.
  • Oral communication skills: use effective communication with diverse stakeholders involving listening, questioning, paraphrasing, clarifying, summarising.
  • Numeracy skills: represent mathematical information relating to risk analysis in diverse formats.

Unit content sourced from training.gov.au — © Commonwealth of Australia, licensed under CC BY 4.0. Auditori is not affiliated with the Department of Employment and Workplace Relations.

See what you get before you start

Real, unedited Auditori output (RIIHAN201E shown), branded for a sample RTO:

Questions about assessing PSPSEC021

What does an assessment tool for PSPSEC021 need to cover?

To satisfy the Principles of Assessment and Rules of Evidence, an assessment for PSPSEC021 needs to address all 32 unit components: 5 elements with 17 performance criteria, 3 performance evidence requirements, 9 knowledge evidence requirements, and the foundation skills. A coverage matrix mapping each question and task to these components is what an auditor looks for.

How does Auditori generate an assessment tool for PSPSEC021?

Auditori pulls the current release of PSPSEC021 from training.gov.au and generates a complete package: candidate assessment, assessor guide with model answers and observation criteria, and a coverage matrix mapping every component. A suitably qualified person then reviews and approves the draft in a built-in workflow — consistent with ASQA's guidance on AI use in VET — before export as branded PDF and editable Word.

Is the first assessment tool really free?

Yes. Every new account includes one free credit — enough to generate the complete assessment tool for PSPSEC021 — with no card and no subscription required. After that it's pay-as-you-go per unit.

Can I check my existing PSPSEC021 assessment instead of generating a new one?

Yes — upload your existing assessment or learner guide and Auditori maps it against every element, performance criterion, PE and KE of PSPSEC021, showing exactly what's covered and what's missing. Mapping costs a quarter of a credit.

Related units

Your PSPSEC021 assessment tool, in minutes.

First unit free. No card, no RTO registration, no subscription.

Generate PSPSEC021 free