AusCERT
AusCERT is Australia's pioneer not-for-profit Computer Emergency Response Team, founded in 1993 and hosted at the University of Queensland. It delivers incident support, vulnerability management, threat intelligence, training, and GRC advisory to 500+ member organisations nationwide via a membership-based subscription model.
- Company typePrivate
- Founded1993
- HeadquartersBrisbane, Australia
- Headcount11–50
- GTM typeB2B
- OfferingServices
What AusCERT does
AusCERT is Australia's pioneer Computer Emergency Response Team (CERT), founded in 1993 and headquartered at the University of Queensland in Brisbane. Operating as a not-for-profit membership organisation, it provides five core services — incident support, vulnerability management, threat intelligence, training and education, and governance/risk/compliance advisory — to more than 500 member organisations across all Australian states and territories. Its service portfolio targets organisations of all sizes across government, financial services, education, automotive, and professional services verticals, with named members including ING, BDO, Carsales, the Victorian Government, and the University of Queensland.
The underlying technology stack is built around human-curated threat intelligence and secure communications rather than an AI-driven platform. Core technical components include a member-only portal distributing daily ESB (External Security Bulletins) and ASB (Alert Security Bulletins) covering vulnerabilities across UNIX, Linux, Windows, and network appliances; a long-tenured PGP key infrastructure (rotated to a new 4096-bit key on 30 April 2024) used for secure incident reporting; and an active MISP (Malware Information Sharing Platform) instance for distributing Indicators of Compromise to members and the broader security community. The organisation also publishes a weekly 'Week in Review' digest and an annual Year in Review, and runs the AUSCERT Conference — Australia's longest-running cybersecurity conference, which celebrated its 25th edition in 2026.
Revenue is generated through recurring annual membership subscriptions on a quote-based, tiered model that is not publicly disclosed. Go-to-market is enterprise field sales supplemented by content marketing (blog, podcast, newsletter), events (annual conference, training courses), and community-driven demand generation, with no public listing, external funding rounds, acquisitions, or ownership changes evidenced in the source data.
AusCERT firmographics
Firmographics- Name
- AusCERT
- Legal name
- AUSCERT
- Website
- https://auscert.org.au
- Company type
- Private
- Founded year
- 1993
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- AusCERT is Australia's pioneer not-for-profit Computer Emergency Response Team, founded in 1993 and hosted at the University of Queensland. It delivers incident support, vulnerability management, threat intelligence, training, and GRC advisory to 500+ member organisations nationwide via a membership-based subscription model.
- Ownership category
- akta.pro rank
AusCERT industry classification
Industry- Product category
- Cybersecurity Services (Computer Emergency Response)
- NAICS
- Other Computer Related Services (541519), Emergency and Other Relief Services (62423)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Business Continuity, Crisis Management & Resilience Planning (BPAKADAI)
Keywords
Where AusCERT is headquartered
LocationHeadquarters
- HQ city
- Brisbane
- HQ country
- Australia
- HQ region
- Oceania
Offices1 record
Markets served
AusCERT business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Marketing or Sales
Revenue model
- Membership Subscriptions: AusCERT operates as a not-for-profit organization generating revenue through membership packages. Membership provides access to incident support, vulnerability management services, threat intelligence, training programs, and governance, risk and compliance advisory services. Membership is available for businesses of all sizes across Australia.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Annual | Membership packages for organizations of all sizes |
Go-to-market motion1 record
Distribution channels2 records
Marketing channels6 records
AusCERT product offering
Product offeringCore offering
AusCERT is Australia's pioneer Computer Emergency Response Team, delivering a portfolio of membership-based cybersecurity services to over 500 Australian organisations. Core offerings include incident response support during cyber attacks, daily vulnerability management bulletins and custom reports, threat intelligence with Indicators of Compromise, training and education courses, and governance, risk and compliance advisory — all delivered through a secure member portal.
Product overview
AUSCERT operates as a not-for-profit Computer Emergency Response Team for Australia with over 30 years of industry experience, serving over 500 member organisations. The organisation offers a portfolio of five core security services: Incident Support (assistance during cyber incidents), Vulnerability Management (daily bulletins and custom reports), Threat Intelligence (threat indicators and alerts), Training & Education (cyber security short courses with Credly badges), and Governance, Risk & Compliance advisory services. These services are delivered through a secure Member Portal platform and supplemented by Security Bulletins (ESB/ASB series) covering multi-vendor vulnerabilities. AUSCERT also publishes weekly 'Week in Review' reports and hosts Australia's longest-running annual cyber security conference. The organisation is affiliated with The University of Queensland.
Differentiator
Problem solved
Functional benefit
Brands
- AUSCERT Conference: Australia's longest-running cybersecurity conference held annually on the Gold Coast
Products and services
- Incident Support Provides member organisations with hands-on guidance to resolve and contain cyber incidents and recover systems during active security breaches.
- Vulnerability Management Identifies, assesses, and mitigates system weaknesses through daily security bulletins and on-demand custom vulnerability reports for member organisations across operating systems and vendors.
- Threat Intelligence Aggregates, analyses, and distributes cyber threat data including indicators, reports, and alerts on sensitive information leaks to enhance members' security posture and response capability.
- Training & Education Short courses covering Introduction to Cyber Security, Cyber Security Risk Management, and ASD Essential Eight implementation, delivered as workshops and short courses with Credly digital badge certification.
- Governance, Risk & Compliance Advisory Advisory services on governance, risk, and compliance to align cybersecurity practices with member organisations' business objectives.
- Security Bulletins (ESB and ASB series) Daily External Security Bulletins (ESB) and Alert Security Bulletins (ASB) covering vulnerabilities across UNIX, Linux, Windows, and network appliances, distributed through the secure member portal.
Quantifiable outcome
- 500+ organisations protected across Australia
- +1 more outcomes
Companies that use AusCERT
Customer profileNamed customers6 records
Segments3 records
Ideal customer profiles3 records
AusCERT technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Integration1 record
Feature3 records
AusCERT partnerships and signals
Strategic signalPartnerships
Two partnerships are on record, tiered core.
- University of QueenslandcoreAusCERT is hosted by the University of Queensland, operating as a university-affiliated cybersecurity center. This partnership provides academic credibility, research collaboration opportunities, and institutional infrastructure support.
- MISP (Malware Information Sharing Platform)coreAusCERT maintains an active MISP instance for sharing Indicators of Compromise (IoCs) with members and the broader security community, enabling collaborative threat intelligence distribution.
Scale indicators3 records
Recent moves5 records
Expansion highlights4 records
AusCERT competitors and assessment
Company assessmentDirect peers
- Shadowserver Foundation: A non-profit security organization providing free threat intelligence feeds, vulnerability disclosure, and incident-response data to governments and enterprises globally. Highly comparable to AusCERT on the non-profit, intelligence-sharing axis and serves a similar audience of security teams.
- SANS Internet Storm Center: A community-driven threat intelligence and incident-handling cooperative publishing daily diaries, handler alerts, and IoCs to a global security community. Comparable to AusCERT in mission (volunteer-driven threat analysis and bulletins) and audience overlap, though funded via SANS rather than corporate membership.
- JPCERT/CC: Japan's national CSIRT coordination center, providing vulnerability handling, incident response coordination, and threat intelligence sharing. Operates a near-identical service taxonomy (incident support, vulnerability notes, threat intel feeds) and serves as the Asia-Pacific coordinator for CERT activity, directly comparable to AusCERT.
- CERT NZ: New Zealand's national CERT with a near-identical mandate: incident response, vulnerability advisories, and threat intelligence for organizations across NZ. Operating as a government unit but with the same member/stakeholder model, it is the closest functional peer to AusCERT in the region.
Broad incumbents
- NCSC (UK): The UK's National Cyber Security Centre provides authoritative cyber incident response, vulnerability disclosure, and threat intelligence at national scale. Operates a government-funded superset of AusCERT's services and represents the broader-incumbent view of the same role, but with vastly greater resources.
- Mandiant (Google Cloud): The commercial leader in incident response, threat intelligence, and managed detection, now part of Google Cloud. Operates an adjacent service portfolio (incident response retainers, threat intel subscriptions) that competes for the same Australian enterprise budgets that fund AusCERT memberships.
- CISA / US-CERT: The US Cybersecurity and Infrastructure Security Agency (including US-CERT) is the US federal focal point for cyber incident response and vulnerability coordination. Overlaps with AusCERT's mandate at the broadest level but operates at a much larger national-defense scale and is government-run.
Others
- FIRST: The Forum of Incident Response and Security Teams is the global membership organization for CERTs and CSIRTs. AusCERT is a member of FIRST; both share the mission of fostering incident-response community standards, but FIRST operates as an umbrella body rather than delivering member-facing incident services.
Emerging players
- Team Cymru: A mission-driven threat intelligence provider offering community-funded IP reputation, IoC, and botnet-tracking data to security teams and CERTs. Overlaps with AusCERT's threat intelligence pillar but does not offer incident response, training, or GRC advisory services.
Regional players
- SingCERT: Singapore's national CERT operating under the Cyber Security Agency, providing incident reporting, advisories, and threat intelligence to local organizations. Comparable service model but government-run and jurisdictionally focused on Singapore rather than competing directly with AusCERT.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks5 records
Key highlights7 records
Customer concentration
AusCERT social profiles
Digital presenceAusCERT financial estimates
Financial estimateRevenue estimate
Valuation estimate
AusCERT leadership team
Management profileNumber of profiles
AusCERT funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
AusCERT M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about AusCERT
What does AusCERT do?
AusCERT is Australia's pioneer Computer Emergency Response Team, delivering a portfolio of membership-based cybersecurity services to over 500 Australian organisations. Core offerings include incident response support during cyber attacks, daily vulnerability management bulletins and custom reports, threat intelligence with Indicators of Compromise, training and education courses, and governance, risk and compliance advisory — all delivered through a secure member portal.
Is AusCERT a public or private company?
AusCERT is a private company. It is classified as nonprofit foundation owned and is currently operating.
When was AusCERT founded?
AusCERT was founded in 1993. It employs 11 to 50 people.
Where is AusCERT based?
AusCERT is headquartered in Brisbane, Australia, in the Oceania region.
How does AusCERT make money?
One revenue line is on record: membership Subscriptions.
Who are AusCERT's main competitors?
Direct peers on record are Shadowserver Foundation, SANS Internet Storm Center, JPCERT/CC and CERT NZ. Broad incumbents are NCSC (UK), Mandiant (Google Cloud) and CISA / US-CERT. FIRST is listed as an others. Team Cymru is listed as an emerging player. SingCERT is listed as a regional player.
Does AusCERT have an API?
No public API is recorded for AusCERT.
What industry is AusCERT in?
AusCERT's product category is Cybersecurity Services (Computer Emergency Response). Its primary akta.pro industry code is BPAKADAI, Business Continuity, Crisis Management & Resilience Planning. Its NAICS code is 541519 and its SIC code is 7370.