Private browser-based simulator

Turn cyber maturity into a visible defence plan.

Explore two complementary pathways: the Australian Essential Eight and a practical AI security readiness model. Your selections stay in this browser and are never submitted to the website.

Start the assessment
  • No login
  • No database
  • No evidence upload
  • Local browser storage only
Current pathway Essential Eight Assessment not started

Important boundary

A conversation starter not an audit, certification or compliance determination.

The Essential Eight pathway records the highest level you believe has been formally evidenced for each strategy. It does not reproduce every ASD requirement or replace technical assessment. The AI pathway is an HD Cyber Defence readiness model informed by established public frameworks; it is not an official NIST, ASD or OWASP maturity model.

Choose a pathway

Assess the baseline. See the weakest point. Plan the next move.

Private mode Selections remain on this device

Pathway 01

Essential Eight posture

Select the highest maturity level that has been formally evidenced against the latest ASD Essential Eight Maturity Model for each strategy.

Open the official ASD model ↗
Application control maturity level
01

Application control

Allow approved applications, libraries, scripts and installers while preventing untrusted execution.

Not assessed
Patch applications maturity level
02

Patch applications

Identify and remediate application vulnerabilities within risk-appropriate timeframes.

Not assessed
Restrict Microsoft Office macros maturity level
03

Restrict Microsoft Office macros

Prevent untrusted macro execution and tightly govern legitimate business use.

Not assessed
User application hardening maturity level
04

User application hardening

Reduce attack surface in browsers, PDF software and productivity applications.

Not assessed
Restrict administrative privileges maturity level
05

Restrict administrative privileges

Limit, separate, monitor and regularly review privileged access.

Not assessed
Patch operating systems maturity level
06

Patch operating systems

Identify and remediate operating-system vulnerabilities within required timeframes.

Not assessed
Multi-factor authentication maturity level
07

Multi-factor authentication

Protect privileged, remote and important service access using strong authentication.

Not assessed
Regular backups maturity level
08

Regular backups

Protect important data, configurations and systems with tested and resilient recovery.

Not assessed

How scoring works

Transparent by design.

The simulator avoids hidden weighting and does not claim more precision than the answers support.

01

Essential Eight baseline

The displayed baseline is the lowest selected strategy level, reflecting ASD’s direction to achieve the same maturity level across all eight strategies before moving higher.

02

AI readiness band

The AI result is the rounded-down average of the eight readiness domains. The weakest domains remain visible so a strong average cannot hide a critical gap.

03

Local-only state

Selections and target levels are stored only in your browser using local storage. Clear them at any time. Do not enter or upload sensitive evidence.

Reference foundations

Built around trusted public guidance—without pretending to replace it.

The Essential Eight model remains the authoritative source for Australian Essential Eight requirements. The AI pathway translates governance, technical and operational themes into a practical readiness conversation.

From score to action

Need an evidence-based maturity review?

Use the simulator to frame the discussion, then validate the result through authorised technical assessment, evidence review and a prioritised improvement plan.

Discuss a maturity review