cinema, projector, home, video, movie, camera, cinema, video, video, video, video, video, movie

Watch

Explore our growing library of on-demand content — from recorded workshops to exclusive videos created for ongoing learning and insight.

We will continue bringing you leading industry experts on the security of critical infrastructure and the trusted workforce. Some videos are free to access, while others may require a quick registration.

For even more insights, practical guidance and expert discussions, visit and subscribe to the Pentagram Advisory YouTube Channel, where we regularly publish new videos, podcasts and educational content to support Australia’s critical infrastructure community.

In this workshop, we examine the new supply chain security requirements introduced by section 10A of the Enhanced CIRMP Rules 2026 and what they mean in practice for responsible entities. We explore the shift from section 10 to section 10A, including mapping major suppliers and critical component dependencies, determining Maximum Acceptable Outage (MAO), identifying concentration and upstream dependency risks, and assessing existing and proposed major suppliers.

We also consider Foreign Ownership, Control or Influence (FOCI), supplier personnel who may fall within the critical worker requirements, and the governance, evidence and assurance needed to support implementation. The workshop concludes with practical priorities for strengthening supply chain resilience and critical dependency assurance ahead of the 10 June 2028 implementation deadline.


In this workshop, Dr Jon Roginski, Founder of QualQuantAnalytics, LLC, and former Insider Threat Program Manager at West Point Academy, explores how insider threats are evolving in an increasingly digital environment.

The session examines the role of artificial intelligence and advanced analytics in supporting more effective insider threat detection, risk assessment and decision-making. It also explores emerging approaches to strengthening personnel security and trusted workforce programs in response to changing technologies, behaviours and threat environments.


In this workshop, Mitchell Dunn, Assistant Secretary, Critical Infrastructure Compliance Branch, Department of Home Affairs, provides an overview of the 2026 CIRMP Annual Reporting obligations for responsible entities under the Security of Critical Infrastructure Act 2018.

The session covers the annual CIRMP reporting process, regulatory and compliance expectations, the latest reporting forms and guidance, and practical insights for responsible entities preparing their annual CIRMP reports. The workshop also includes a Q&A session addressing common questions from industry.

We thank the Department of Home Affairs for its ongoing engagement with the SOCI community and continued collaboration in supporting these industry workshops.


In this workshop, we demonstrate Pentagram’s Enhanced CIRMP Readiness Assessment Module and show how responsible entities can assess organisational readiness to implement the Enhanced CIRMP Rules 2026. We explain how organisations can prioritise implementation activities, develop structured CIRMP Implementation Roadmap and Executive Dashboard, monitor progress towards the 10 June 2027 and 10 June 2028 legislative milestones, and provide meaningful assurance to executive leadership and Boards.


In this workshop, we explore how organisations can build and implement an effective Insider Threat Program to address the growing personnel security obligations under Australia’s Security of Critical Infrastructure (SOCI) framework. We examine the evolving regulatory landscape, including the CIRMP Rules 2023 and Enhanced CIRMP Rules 2026, discuss the psychology behind the “Not In My Organisation” mindset, and share practical guidance on establishing a trusted, risk-based and proportionate program that strengthens organisational resilience while supporting a positive workplace culture.


In this interactive follow-up workshop, we continue exploring insider threat through the world of Harry Potter, using additional storylines and short film extracts to examine some of the most complex human dimensions of protective security. Through themes such as coercion, disgruntlement, identity compromise, radicalisation, behavioural change, manipulation, and divided loyalties, we translate magical scenarios into practical lessons for modern organisations and critical infrastructure environments.

Using a protective security lens, participants will explore how trusted insiders, compromised individuals, psychologically vulnerable actors, and manipulated personnel can undermine even highly protected environments from within, while discussing behavioural indicators, organisational culture, workforce vulnerability, trusted access, and practical measures that may help strengthen organisational resilience and insider threat programs.

Disclaimer: This workshop includes short video extracts from the Harry Potter films used solely for educational purposes under the fair-dealing provisions of the Copyright Act 1968 (Cth). Pentagram Advisory does not claim ownership of any Harry Potter content. All rights remain with Warner Bros. Entertainment Inc.


In this workshop, we explore the evolving governance expectations surrounding the Critical Infrastructure Risk Management Program (CIRMP) and the increasing role of Boards in overseeing security and operational resilience under theSecurity of Critical Infrastructure Act 2018. Drawing on analysis of the recently updated CIRMP annual reporting form released by the Cyber and Infrastructure Security Centre (CISC) within the Department of Home Affairs, the session examines what the expanded reporting questions reveal about the direction of regulatory expectations, including growing focus on Board oversight, assurance, supply chain resilience, operational effectiveness, and governance maturity.

The workshop also provides practical guidance for responsible entities preparing for annual CIRMP attestations and Board reporting. Participants will explore how to move beyond compliance-focused discussions toward evidence-based assurance and resilience governance, including practical approaches for engaging Boards, improving operational visibility, strengthening assurance mechanisms, and identifying critical vulnerabilities across supply chain, cyber, personnel, and operational risk domains. 


In this workshop, we explore practical approaches to insider threat mitigation, drawing on lessons from Sweden and across Europe. Delivered as part of an Australia–Sweden collaboration, the session features Anders Spalding,  who brings over 15 years’ experience in intelligence operations, military security, and counterintelligence within the Swedish Armed Forces.

We examine how organisations are evolving workforce assurance and insider risk practices in response to a changing geopolitical environment, with a strong focus on security culture, behavioural indicators, and early intervention.

Register below to access the full session.

To watch the full workshop video, please complete the registration form below.

In this workshop, we provide an overview of Pentagram’s seven-step Critical Worker Identification and Risk Management Framework, designed specifically for critical infrastructure entities to support the structured identification and management of critical workers and to ensure compliance with the Security of Critical Infrastructure Act 2018 and its subordinate Rules.



In this workshop, we explore the practical connection between supply chain assurance and organisational resilience for critical infrastructure entities. The session focuses on how organisations can move beyond compliance-driven activities to adopt a risk-based, proportionate approach to understanding and managing critical supply chain dependencies — and how this directly supports resilience, business continuity, and defensible decision-making.

You will hear from our special guest speaker Colin Muller, Resilience Specialist at Adelaide Airport, who shares practical insights on organisational resilience and business continuity, drawing on real-life case studies.


In this interactive workshop, we explore insider threat through the lens of four well-known Harry Potter storylines, each reimagined to reflect real-world protective security challenges faced by critical infrastructure entities. Using short film extracts and practical insider-threat scenarios, we translate magical mishaps into clear lessons on identifying behavioural indicators, recognising manipulation and coercion, strengthening organisational controls, and building resilient insider threat programs.

Disclaimer: This workshop includes short video extracts from the Harry Potter films used solely for educational purposes under the fair-dealing provisions of the Copyright Act 1968 (Cth). Pentagram Advisory does not claim ownership of any Harry Potter content. All rights remain with Warner Bros. Entertainment Inc.


In this workshop, we provide an overview of Pentagram’s CIRMP Maturity Assessment and Evaluation Model, developed specifically for critical infrastructure entities. The model helps organisations assess, evidence, and strengthen the implementation of their CIRMP – and, in turn, enhance enterprise security.

You will hear directly from our special guest speaker, Mark McConnon, Head of Risk and Resilience at TasWater. Mark shares TasWater’s experience applying the model in practice, including how it not only shifted their mindset from “it won’t happen to us to “it will happen to us unless we change” but also set them on a clearer path to embedding a security culture alongside their safety culture.


In this workshop, we take a focused look at the threat of foreign interference and what it means for entities covered under the Security of Critical Infrastructure Act 2018. With foreign interference recognised as one of Australia’s most pressing national security challenges, we explore how it differs from foreign influence, how it manifests in the context of critical infrastructure, and how trusted insiders can be targeted, coerced, or exploited. We also examine practical approaches for identifying, assessing, and responding to insider threat activity, equipping boards and directors with the assurance they require to protect critical assets and operations.

You will hear directly from the Counter Foreign Interference Coordination Centre, Department of Home Affairs, who will share insights on emerging risks, effective board engagement, and real-world examples from recent practice. Watch a short excerpt from the workshop, or register below to view the full event.

To watch the full workshop video, please complete the registration form below.


In this workshop, we explore whether Australia’s long-held assumptions about the resilience of critical infrastructure still hold in an era of heightened geopolitical and economic uncertainty. We examine emerging threats, sector interdependencies, and practical steps to position critical infrastructure protection within a modern, risk-informed national security framework.

Our special guest speaker is Justin Bassi, Executive Director at the Australian Strategic Policy Institute.


0
0
Your Cart
Your cart is emptyReturn to Shop