Following the recent release of version 2 of the Business Impact Level (BIL) Table by the Office of the Victorian Information Commissioner (OVIC), we have updated the compliance risk classification questions in RCAT for our Victorian Government subscribers. The answer options and explanations for the questions regarding Confidentiality, Integrity and Availability have been revised to align them with the new VPDSF business impact levels.
The mapping between the version 1 and 2 is below for your reference:
- N/A (new)
- Negligible > Minor
- Low-Medium > Limited
- High > Major
- Very High > Major
- Extreme > Serious
We have not included the top level of Exceptional, as its application in Victoria will be extremely rare. Instead we have included this within the Serious category by referring to the protective markings of Secret and Top Secret within this level.
See our website for more information on RCAT https://www.votar.com.au/rcat