The ASD is retiring the Essential Eight over the next two years. This page tracks every confirmed development in the transition, what remains unknown, and what Australian businesses should do at each stage. Bookmark it. We update it as the ASD moves.
Last updated: 14 September 2026. Last checked against cyber.gov.au: 14 September 2026. Current status: consultation on the first chapter has closed. Final guidance not yet published. The Essential Eight remains the live, supported baseline, and the November 2023 Maturity Model is still the current release. The September 2026 ISM release and ASD’s new agentic AI harness guidance are the strongest signals yet of the new series’ direction: see the update log below.
ASD opened consultation on evolving the Essential Eight into the Essentials series
ASD expects to begin deprecating the Essential Eight, roughly 12 months from the announcement
Essential Eight expected to be fully retired, roughly 24 months from the announcement
Enterprise IT, cloud, and operational technology flagged, with agentic AI a likely fourth
The short answer: the Essentials series, a set of domain-specific chapters grounded in the ASD’s Information Security Manual.
On 15 June 2026 the Australian Signals Directorate opened consultation on the biggest change to Australia’s baseline cyber guidance since the Essential Eight replaced the Top Four in 2017. The Essential Eight is being retired and replaced by the Essentials series: prioritised, threat-informed mitigations organised by technology domain rather than a single eight-control checklist. The first chapter is Essentials for enterprise IT, the closest successor to the current framework. Chapters for cloud and operational technology are planned to follow, and the ASD has flagged agentic AI as a likely chapter of its own.
The ACSC has been direct that the change is not a punishment for anyone who invested in the Essential Eight. Organisations using the framework today can expect their existing controls, tools, and platforms to map into the new series. Patching, MFA, application control, privileged access, and backups are not going anywhere. What changes is the packaging: domain-specific guidance built for cloud, SaaS, and AI-era environments the 2017 framework was never designed to cover. Our full analysis of the retirement announcement covers the reasoning in depth.
For Perth businesses mid-way through an Essential Eight uplift, and for the government suppliers and defence businesses we support nationally, the practical guidance on this page is the same one the ASD gives: keep going. Your rating today still decides tenders, insurance, and DISP membership tomorrow.
Plenty of commentary blurs this line. Here is exactly where it sits as of 14 September 2026.
The Essential Eight will be retired and both frameworks run side by side during the transition. The staged timeline, deprecation at around 12 months and retirement at around 24 months, comes from the ACSC’s head of cyber security resilience speaking publicly on 24 June 2026, not from an ASD publication. No deprecation or retirement date has been published, and the Maturity Model page carries no deprecation notice.
The replacement is the Essentials series, grounded in the Information Security Manual, delivered as domain chapters starting with Essentials for enterprise IT.
Consultation on the first chapter ran from 15 June to 12 July 2026 through the ASD Cyber Security Partnership Program portal.
Existing Essential Eight controls and investments are expected to align strongly with the new guidance. The ASD describes the approach as cost-conscious and building on what organisations already have.
The final control set for Essentials for enterprise IT, including whether the number eight survives at all.
Whether the current maturity model (ML0 to ML3) carries over, changes shape, or is replaced.
Assessment, evidence, and exception handling under the new series.
A publication date for the final enterprise IT chapter, and timing for the cloud, OT, and agentic AI chapters.
How the PSPF, DISP, cyber insurers, and government contracts will re-reference their Essential Eight requirements. Until they do, existing obligations stand as written.
The Essentials series is chapter-based. Here is what each planned domain covers and how we read the ASD’s direction so far.
The direct successor to the Essential Eight and the only chapter consulted on so far. Expected to carry today’s core controls forward while fixing the framework’s known blind spots around SaaS and identity. Status: consultation closed, final guidance pending.
A confirmed future chapter. Splitting cloud into its own domain lets the ASD address shared-responsibility boundaries the current framework blurs, which matters for every Microsoft 365 and Azure environment we manage. Status: announced, no draft.
A confirmed future chapter recognising that OT environments cannot be governed like enterprise IT. Most relevant to our mining, engineering, and critical infrastructure clients. Status: announced, no draft.
Flagged by the ASD as a likely chapter, and now the one with the clearest preview. The September 2026 ISM added a block of new controls (ISM-2124 to ISM-2167) that treat AI agents as their own class of principal: each agent gets its own identity, sits in an agent register, runs with least privilege, has its tool calls logged, and needs a human in the loop before high-impact actions. On 11 September the ASD went further and published guidance on agentic AI harnesses, the software layer connecting a model to an organisation’s data, tools and systems, which it describes as the component an organisation can most directly govern. Read alongside the six-agency joint guidance from April, the direction is hard to miss. The ACSC’s May 2026 guidance on AI in cyber defence laid the groundwork. As Australia’s first AI-led MSP, this is the chapter we watch closest. Status: flagged, direction now visible in the ISM and in dedicated ASD guidance.
The moment the ASD publishes the final Essentials for enterprise IT chapter, we will publish a control-by-control mapping: each current Essential Eight strategy, its equivalent in the new guidance, what carries forward unchanged, and what needs new work. The template is built and waiting. Expect it on this page within 48 hours of release.
14 September 2026. On 11 September the ASD published Agentic AI harnesses: the layer above the model. It defines the harness as the software layer that lets a model interact with data, tools and systems, and positions it as the part of an agentic system an organisation can most directly govern, secure and control. Its companion, the six-agency Careful adoption of agentic AI services published in April and May, names accountability as one of five principal risk categories and warns that agentic architecture obscures what caused a given action. Neither is an Essential Eight change and neither moves a maturity level, so nothing on your current assessment shifts. Both matter here because they show the ASD building out agentic AI guidance as a domain in its own right, which is what a future Essentials chapter would need. Checked against cyber.gov.au today: the Essential Eight publication set is unchanged, the November 2023 Maturity Model is still current, and no retirement date has been published.
10 September 2026. The ASD published the September 2026 Information Security Manual in early September, and it matters here because the Essentials series is grounded in the ISM. A new control block (ISM-2124 to ISM-2167) treats AI agents as principals in their own right: individual agent identities, an agent register, least privilege, logged tool calls, and a human in the loop before sensitive actions. The release also tightens OAuth application approval, adds risk-based access informed by contextual signals, and rescinds the old IPv6-disable control. We read this as the clearest preview yet of the agentic AI chapter, and have updated our Chapter watch and FAQ to match. We also counted every control in the new release: the Essential Eight draws on 126 of the ISM’s 1,143 controls, and none of September’s 44 additions are among them.
15 August 2026. Tracker published. Consultation closed 12 July; no final chapter yet. Added analysis connecting the ACSC’s updated AI cyber defence guidance (revised 12 August) to the Essentials series direction: it is organised by the ISM’s six functions rather than the eight controls, and addresses agentic AI directly.
12 July 2026. Consultation on Essentials for enterprise IT closed via the ASD Cyber Security Partnership Program portal.
24 June 2026. ACSC set out the staged retirement timeline publicly: deprecation from roughly mid-2027, retirement by roughly mid-2028. Our analysis of the announcement.
18 June 2026. We published guidance on what the retirement means for DISP members: the ML2 obligation stands and carries forward.
15 June 2026. ASD opened consultation on the evolution of the Essential Eight into the Essentials series.
Yes. The ASD announced in June 2026 that the Essential Eight will be replaced by the Essentials series, a set of domain-specific chapters grounded in the Information Security Manual, starting with Essentials for enterprise IT. The roughly two-year timeline that gets quoted comes from a public interview with the ACSC rather than an ASD publication, and no retirement date has been published. Treat the direction as settled and the dates as indicative.
No. The Essential Eight remains the live, assessable standard until the transition completes, and the ASD has said existing controls and investments will align strongly with the new guidance. Insurers, government contracts, and DISP still assess against it today. Our Essential Eight implementation service continues unchanged.
The ASD has not confirmed a publication date. Consultation on the first chapter closed on 12 July 2026, and deprecation of the Essential Eight is expected to begin around mid-2027, which suggests final enterprise IT guidance before then. We update this tracker as soon as dates firm up.
Nothing changes today. ML2 remains the benchmark most government contracts, insurers, and DISP require, and the ASD has not confirmed how the maturity model translates into the new series. A documented ML2 rating is the strongest possible baseline to carry into the transition.
The ASD has flagged agentic AI as a likely future chapter of the Essentials series, and the September 2026 ISM already moves that way: new controls give AI agents their own identities, an agent register, least privilege, and a human in the loop before sensitive actions. ASD’s September 2026 guidance on agentic AI harnesses goes further again, focusing on the layer that connects a model to your data and systems. If your business is deploying AI agents, that chapter will apply to you. Our AI governance service covers this ground today.
No. SMB1001 is a separate framework run by CyberCert, not the ASD, and it is unaffected by this change. For many smaller businesses, SMB1001 certification remains a practical starting point that feeds naturally into ASD-aligned controls.