Breach Governance

What are the mandatory reporting timeframes under the reportable situations regime?

ASIC requires AFS licensees and credit licensees to report reportable situations within 30 calendar days after they first know, or...

When does a compliance breach become a reportable situation under ASIC’s regime?

SIC’s reportable situations regime applies when an AFS licensee identifies a breach, or likely breach, that is significant, deemed significant...

Can spreadsheets be used as compliance infrastructure?

Spreadsheets can support specific compliance activities, but they are generally insufficient as a complete compliance infrastructure solution for most AFS...

Why is compliance evidence different from compliance documentation?

Compliance documentation describes the policies, procedures and controls an AFS licensee intends to follow. Compliance evidence demonstrates how those arrangements...

What evidence should a licensee maintain to demonstrate compliance?

AFS licensees should maintain evidence that demonstrates how compliance obligations are governed, monitored, reported, remediated and overseen in practice. ASIC’s...

Why do compliance issues keep recurring?

Recurring compliance issues often indicate weaknesses in governance, remediation, monitoring or oversight rather than isolated compliance failures. For AFS licensees,...

What is a closed-loop compliance system?

A closed-loop compliance system is a compliance framework that connects governance, monitoring, incidents, remediation and oversight through a continuous cycle...

What is a compliance infrastructure stress test?

A compliance infrastructure stress test is a structured assessment of whether an organisation’s governance, monitoring, reporting, remediation and oversight arrangements...

Why is compliance infrastructure important?

Compliance infrastructure is important because it enables AFS licensees to govern, monitor, evidence and remediate compliance obligations in a consistent...

Is a breach of s961B automatically reportable to ASIC?

No. ASIC’s breach reporting regime does not make a breach of s961B automatically reportable for AFS licensees. A best-interests duty...

Step 1 of 8 - Your Role

This field is for validation purposes and should be left unchanged.

Assess your ASIC exposure

Answer a few targeted questions to identify where your compliance may not stand up under ASIC review.

Takes less than 2 minutes. No preparation required.

What best describes your role?