[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-165322-en":3,"doc-seo-165322-105":30,"detail-sidebar-cat-1-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":11,"category_id":12,"category_name":13,"doc_title":14,"doc_description":15,"doc_content":16,"file_id":17,"file_url":18,"file_type":19,"file_size":20,"view_count":4,"is_deleted":4,"is_public":11,"is_downloadable":11,"audit_status":11,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":27,"seo_description":15,"update_tm":28,"read_time":29},165322,962084925502,"Emma Mercer","https://ap-avatar.wpscdn.com/davatar_6f874abed73319feea01a86fa6f0fab8",1,18,"Letters","System Security Plan - Template","System Security Plan (SSP) template describing organisational policies, processes, and technical controls for a specified core system or network covering Microsoft workloads, endpoints, and other scoped components. Defines purpose and alignment to ASD’s Information Security Manual (ISM) documentation requirements for system authorisation. Provides guidance to explain secure operation, implemented controls, and residual controls, while directing readers to the System Security Plan Annex for detailed ISM control mappings, plus sections covering overview, boundaries, out-of-scope systems, risk assessment, and delivery.","System Security Plan Documentation | Template\nThis template provides the content of ASD’s System Security Plan as advised on ASD’s Blueprint for Secure Cloud. Users can use their own branding. users should remove or add sections relevant to their documentation requirement. Delete this and all other pre-populated instructions from the final version of your report.\n\u0003Table of Contents\n\u0013TOC \\o \"1-1\" \\h \\z \\u\u0014\u0015\u0004\n\u000f\nSystem Security Plan\nAbout this System Security Plan\nThis System Security Plan (SSP) describes the organisational policies and processes relevant to, and technical controls implemented within the core \u003CSYSTEM-NAME> or network that includes \u003CORGANISATION-NAME>’s Microsoft Workloads (Cloud and Software as a Service), endpoints and \u003COTHER SYSTEM COMPONENTS IN SCOPE>.\nPurpose of this System Security Plan\nThe purpose of this SSP is to describe the organisational policies and processes relevant to, and technical controls implemented within \u003CORGANISATION-NAME>’s \u003CSYSTEM-NAME>, including the underlying components leveraged in the system’s deployment. This document has been developed to comply with the Australian Signals Directorate’s (ASD’s) \u0013 HYPERLINK \"https://www.cyber.gov.au/resources-business-and-government/essential-cyber-security/ism\" \\h \u0014Information Security Manual’s\u0015 (ISM’s) requirements in relation to documentation for system authorisation.\nThis document is written using descriptive and explanatory language to assist readers in understanding how \u003CSYSTEM-NAME> operates securely, the controls implemented, and the residual controls that are addressed elsewhere by \u003CORGANISATION-NAME>.\nFor detailed information on how \u003CSYSTEM-NAME> addresses specific controls in ASD’s ISM, please refer to the \u0013 HYPERLINK \"https://blueprint.asd.gov.au/security-and-governance/annex\" \\h \u0014System Security Plan Annex\u0015\n\u000f\nOverview\nSystem information\n\u003CINSERT ADDITIONAL INFORMATION AS APPROPRIATE>\nSystem purpose\n\u003CSYSTEM-NAME> aims to provide a scalable, multi-classified, multi-vendor platform that enables trustworthy external suppliers, partners, and staff to collaboratively develop and enhance our services more rapidly.\nThe objectives of the \u003CSYSTEM-NAME> are to:\nScale resources faster​\nSupport the development of more innovative solutions​\nProvide faster on boarding for new staff\nImprove workplace and partner collaboration\nAssist with greater community engagement\nEnable scalable service continuity\n\u003CINSERT ADDITIONAL INFORMATION AS APPROPRIATE>\nSystem overview\n\u003CSYSTEM-NAME> is \u003CORGANISATION-NAME>’s implementation of a range of cloud services and applications focused on driving productivity and business outcomes and enabling \u003CORGANISATION-NAME>’s workforce to securely work and collaborate from the office, while travelling or from home.\n\u003CSYSTEM-NAME> includes the following components that will improve the security posture of \u003CORGANISATION-NAME>:\nIdentity\nMicrosoft Entra ID (previously known as Azure Active Directory)\nMulti-Factor Authentication (MFA)\nConditional Access\nPrivileged Identity Management\nMicrosoft 365 including:\nExchange Online & Exchange Online Protection\nSharePoint Online\nOneDrive for Business\nPower Platform (Power Automate and Power Apps)\nMicrosoft Teams\nOffice 365 Applications\nDevice management (Intune) including:\nWindows 10\nWindows 11\niOS\nConnectivity\nCloud to cloud\nEndpoints\nPoint to site\nGovernment to Government (GovLINK)\nSecurity and Compliance Services including:\nMicrosoft Defender XDR\nMicrosoft Defender for Cloud Apps\nMicrosoft Defender for Endpoints\nMicrosoft Defender for Identity\nMicrosoft Defender for Office 365\nMicrosoft Defender Vulnerability Management (MDVM)\nMicrosoft Information Protection\nMicrosoft Purview\nLog Analytics\nAutomation including:\nDesired State Configuration (DSC)\nMicrosoft Graph\nPowerShell\nSupport\n\u003CINSERT ADDITIONAL INFORMATION AS APPROPRIATE>\nSystem boundary\nThe \u003CSYSTEM-NAME> boundary consists of:\nPhysical Boundaries — comprising the perimeter security measures of \u003CORGANISATION-NAME>’s office locations and serv","cbCaiuacmEkNaG8d","https://ap.wps.com/l/cbCaiuacmEkNaG8d","docx",79043,100,"English","en",105,"# About this System Security Plan\n## Purpose of this System Security Plan\n# Overview\n## System information\n## System purpose\n## System overview\n## System boundary\n## Diagram\n## Out of scope\n# Risk assessment\n# System delivery","[{\"question\":\"What does the System Security Plan (SSP) describe?\",\"answer\":\"It describes organisational policies and processes and the technical controls implemented within the specified core system or network, including scoped Microsoft workloads, endpoints, and other components.\"},{\"question\":\"What is the purpose of this SSP template?\",\"answer\":\"Its purpose is to document policies, processes, and technical controls for system authorisation and to support readers in understanding how the system operates securely, including residual controls addressed elsewhere.\"},{\"question\":\"How is the SSP aligned to ASD requirements?\",\"answer\":\"The document is developed to comply with the Australian Signals Directorate (ASD) Information Security Manual (ISM) requirements for documentation for system authorisation, with detailed control information referenced in the SSP Annex.\"}]","System Security Plan - Template | DOCX",1788169697,35,{"code":4,"msg":31,"data":32},"ok",{"site_id":24,"language":23,"slug":33,"title":14,"keywords":34,"description":15,"schema_data":35,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":28},"system-security-plan-template","",{"@graph":36,"@context":85},[37,54,68],{"@type":38,"itemListElement":39},"BreadcrumbList",[40,44,48,51],{"item":41,"name":42,"@type":43,"position":11},"https://docshare.wps.com","Home","ListItem",{"item":45,"name":46,"@type":43,"position":47},"https://docshare.wps.com/template/","Template",2,{"item":49,"name":13,"@type":43,"position":50},"https://docshare.wps.com/template/letters/",3,{"item":52,"name":14,"@type":43,"position":53},"https://docshare.wps.com/template/system-security-plan-template/165322/",4,{"url":52,"name":14,"@type":55,"author":56,"headline":14,"publisher":58,"fileFormat":61,"inLanguage":23,"description":15,"dateModified":62,"datePublished":62,"encodingFormat":61,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":57},"Person",{"url":41,"name":59,"@type":60},"DocShare","Organization","application/vnd.openxmlformats-officedocument.wordprocessingml.document","2026-08-31",true,{"@type":65,"interactionType":66,"userInteractionCount":4},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What does the System Security Plan (SSP) describe?","Question",{"text":75,"@type":76},"It describes organisational policies and processes and the technical controls implemented within the specified core system or network, including scoped Microsoft workloads, endpoints, and other components.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"What is the purpose of this SSP template?",{"text":80,"@type":76},"Its purpose is to document policies, processes, and technical controls for system authorisation and to support readers in understanding how the system operates securely, including residual controls addressed elsewhere.",{"name":82,"@type":73,"acceptedAnswer":83},"How is the SSP aligned to ASD requirements?",{"text":84,"@type":76},"The document is developed to comply with the Australian Signals Directorate (ASD) Information Security Manual (ISM) requirements for documentation for system authorisation, with detailed control information referenced in the SSP Annex.","https://schema.org",{"og:url":52,"og:type":87,"og:title":14,"og:site_name":59,"og:description":15},"article",{"robots":89,"canonical":52},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,98,103,108,113,118,123,126,131],{"id":94,"doc_module":11,"doc_module_name":46,"category_name":95,"show_sort_weight":96,"slug":97},11,"Presentations",90,"presentations",{"id":99,"doc_module":11,"doc_module_name":46,"category_name":100,"show_sort_weight":101,"slug":102},12,"Resumes",80,"resumes",{"id":104,"doc_module":11,"doc_module_name":46,"category_name":105,"show_sort_weight":106,"slug":107},14,"Invoices",70,"invoices",{"id":109,"doc_module":11,"doc_module_name":46,"category_name":110,"show_sort_weight":111,"slug":112},15,"Posters",60,"posters",{"id":114,"doc_module":11,"doc_module_name":46,"category_name":115,"show_sort_weight":116,"slug":117},16,"Social Media",50,"social-media",{"id":119,"doc_module":11,"doc_module_name":46,"category_name":120,"show_sort_weight":121,"slug":122},17,"Forms",40,"forms",{"id":12,"doc_module":11,"doc_module_name":46,"category_name":13,"show_sort_weight":124,"slug":125},30,"letters",{"id":127,"doc_module":11,"doc_module_name":46,"category_name":128,"show_sort_weight":129,"slug":130},21,"Paper Templates",5,"papers-templates",{"id":132,"doc_module":11,"doc_module_name":46,"category_name":133,"show_sort_weight":4,"slug":134},158,"General","general-158"]