From the Director-General of Security's Annual Threat Assessment 2024:
'While the terrorism threat level is POSSIBLE, if we had a threat level for espionage and foreign interference it would be at CERTAIN – the highest level on the scale.
'Several years ago, the A-team successfully cultivated and recruited a former Australian politician. This politician sold out their country, party and former colleagues to advance the interests of the foreign regime... Fortunately that plot did not go ahead but other schemes did.
'While some were unwitting, others knew they were working for a foreign intelligence service... Several individuals should be grateful the espionage and foreign interference laws are not retrospective.
'The most immediate, low cost and potentially high-impact vector for sabotage is cyber. Our critical infrastructure networks are interconnected and interdependent, which increases the vulnerabilities and potential access points.
'ASIO is aware of one nation state conducting multiple attempts to scan critical infrastructure in Australia and other countries, targeting water, transport and energy networks. [Gotta be Volt Typhoon-->China]
'We assess this government is not actively planning sabotage, but is trying to gain persistent undetected access that could allow it to conduct sabotage in the future. [Little wonder we signed the joint advisory on Volt Typhoon.]
'That’s one phone network [Optus] not working for one day. Imagine the implications if a nation state took down all the networks? Or turned off the power during a heatwave? I assure you, these are not hypotheticals – foreign governments have crack cyber teams investigating these possibilities right now, although they are only likely to materialise during a conflict or near conflict.
'Ideally, good security starts before production does, which is why I quickly embedded ASIO officers in the nuclear submarine taskforce.
'Your security culture is "how you do security" – the security-related values, mindsets and behaviours that are normalised within a workplace.
'Your defences will only be fully effective if they are three dimensional – people need to know about them, people need to use them and people need to update them'.
https://lnkd.in/ggZ2N-KN
Assistant General Counsel at Office of Management and Budget
2moBut, if they build it, will they come? Time will tell from staff retention, migration and recruitment statistics.