FOR AUSTRALIAN SMALL & MEDIUM BUSINESSES

A clearer view.
A practical
next step.

Cyber security can feel like a long list of unknowns. We’re building a private assessment that helps you understand your gaps, set priorities and prepare the documents to move forward.

In development. Not yet available to purchase.

SENTIENT CYBERTHE PATH FORWARD
FROM UNCERTAINTY TO ACTION
  1. 01
    UnderstandScope, questions & evidence
  2. 02
    PrioritiseGaps & practical next steps
  3. 03
    PreparePolicies & response plans

Illustrative workflow · upcoming product

Less guesswork. A more useful starting point.ASSESSMENT / PRIORITIES / DOCUMENTS

01 / THE UPCOMING PRODUCT

Your business.
Your starting point.

For the people responsible for cyber security, alongside everything else.

Sentient Cyber is developing a guided self-assessment for Australian businesses with 1–199 people in scope, including contractors. It brings your practices, unanswered questions and next steps into one structured picture.

Start with your systems and responsibilities. Record what is in place and what needs checking. Turn that understanding into priorities and draft documents your business can review.

65assessment questions
On your devicelocal assessment workflow
DOCX + PDFplanned document formats

02 / HOW IT WORKS

A considered path
from questions to action.

Explore the three parts of the upcoming experience.

SENTIENT CYBERPRODUCT CONCEPT

01 / ASSESSMENT

Start with what you know.

A self-reported view of your business.

ASSESSMENT BOUNDARYPeople, systems & providers

Clarify what is covered and who is responsible.

Access & identityReported implementation
Unknown
Supporting evidenceA separate record of checks
Not checked

“Unknown” is a useful answer. It gives you a check to follow up.

Illustrative layout with synthetic examples. Not a live assessment or final interface.

03 / SOMETHING TO WORK WITH

Useful documents.
Real decisions.

The planned document pack connects the assessment to work your business can take forward.

EDITABLE DOCXPDF
01

A gap report

A record of reported gaps, unresolved checks and recommended actions to support your next conversation.

12

Policy templates

Covering areas including access control, backups, suppliers, security awareness and responsible AI use.

View the policy topics
  • Information security
  • Access control and MFA
  • Acceptable use
  • Device and application security
  • Patch and vulnerability management
  • Backup and recovery
  • Data handling and classification
  • Cloud and SaaS security
  • Email and web security
  • Supplier and MSP security
  • Security awareness and training
  • Responsible AI use
02

Response plans

Incident Response Plan and Data Breach Response Plan, ready for your business to review and tailor.

Every document needs your review. Confirm responsibilities, contacts and business decisions before approval. A policy document does not establish that a control is operating.

04 / BUILT WITH PERSPECTIVE

Clarity includes
knowing the limits.

/ 01

Keep uncertainty visible.

Reported implementation and evidence checks stay separate. Unanswered questions remain visible, so you can see what still needs attention.

/ 02

Keep the work local.

The current product runs assessments and document generation on your device. Local saving and downloaded backups let you keep your own working copy.

/ 03

Make informed decisions.

Legal triage highlights applicability questions for further review. It is decision support, with business and professional judgement still essential.

Sentient Cyber does not inspect your systems or provide legal advice, certification, a compliance guarantee or an insurance eligibility result.

05 / A FEW USEFUL ANSWERS

Before you
get started.

Is the product available yet?

Not yet. Sentient Cyber is in development and controlled testing. This site introduces the intended product. A public launch date and pricing have not been announced.

Who is it being built for?

Australian small and medium businesses with 1–199 people in scope, including contractors. It is designed to help owners and the people responsible for technology work through their practices and discuss the gaps with their providers.

What if an IT provider manages our systems?

Provider-managed services still need to be considered. The assessment records responsibilities and visibility limits. If you cannot establish an answer, you can record it as unknown and follow it up with your provider.

Does an assessment prove we are secure or compliant?

No. This is a self-reported assessment. It does not scan or independently verify systems, certify maturity or compliance, or determine insurance eligibility. Legal triage is a prompt for further review and does not replace legal advice.

Where does the assessment information go?

In the current local product, assessment and document generation take place on your device. Saved browser data is not encrypted by the app and can be cleared by your browser. Use a trusted device and keep downloaded backups securely.

This presentation website has no assessment form, mailing list, analytics or visitor-data submission feature.

Can we use the documents straight away?

The planned exports are starting points. They need to be tailored, reviewed and approved by the right people in your business. Generating or approving a document does not change the underlying assessment answers or establish that its controls have been implemented.

THE NEXT CHAPTER

Practical cyber security.
Currently taking shape.

We’re working towards a considered launch.
Explore the approach now, and check back for future availability.

Take a closer look