Defence Security Principles Framework compliance
Practical guidance for meeting DSPF requirements across personnel, physical, cyber, and governance security domains — for organisations in the Australian defence supply chain.
DSPF Domains
Compliance Status
DISP
Aligned
Why organisations need DSPF compliance support
Multiple security domains
The DSPF spans personnel, physical, cyber, and governance security. Understanding what's required across all four domains — and how they interact — is a significant undertaking.
Unclear requirements
DSPF requirements can be difficult to interpret, especially for organisations encountering defence security frameworks for the first time.
DSPF underpins DISP
Meeting DSPF requirements is fundamental to DISP membership. Gaps in any domain can delay or derail your DISP application.
What's included in our DSPF support
DSPF gap assessment
Assessment of your current posture against DSPF requirements across all applicable security domains.
Domain-specific remediation plans
Targeted action plans for personnel, physical, cyber, and governance security gaps.
Policy and procedure development
Security policies and procedures aligned to DSPF requirements and your operational context.
DISP alignment mapping
Clear mapping of your DSPF compliance to DISP membership requirements.
Implementation support
Hands-on guidance to implement DSPF controls and build the documentation Defence expects.
Case study to be inserted here
Who this service is for
Pre-DISP organisations
Early StageYou're preparing for DISP membership and need to understand and meet DSPF requirements as the foundation for your application.
Existing DISP members
OngoingYou need to maintain compliance with evolving DSPF requirements and ensure your security posture stays current.
Defence subcontractors
UrgentYour prime contractor or Defence engagement requires demonstrated DSPF alignment across your security domains.
Frequently asked questions about DSPF compliance
What's the difference between DSPF and DISP?
The DSPF is the framework that defines the security principles and requirements. DISP is the program that assesses organisations against those requirements for membership. Think of DSPF as the rules, and DISP as the registration process.
Do we need to comply with all DSPF domains?
It depends on your DISP membership level and the nature of your defence work. We help you determine which domains and requirements apply to your specific situation.
How does DSPF relate to ISM and PSPF?
The DSPF draws on elements from both the ISM (for cyber security) and PSPF (for protective security). We help you understand how these frameworks interact and where your existing compliance efforts already cover DSPF requirements.