🇦🇺
Regional Benchmark
PCI Compliance in Australia
Australia has a mature card payments market regulated by the Reserve Bank of Australia (RBA) and the Australian Payments Network (AusPayNet). Organisations must satisfy PCI DSS mandates alongside APRA prudential standards and the Privacy Act 1988.
Run PCI Benchmark →840
Avg Audit Hours
annually
A$195k
Avg Cost (AUD)
≈ $126k USD
63/100
Avg Maturity
maturity score
APRA CPS 234 Information Security, effective November 2019, requires APRA-regulated entities to maintain information security capabilities commensurate with the size and extent of their information asset exposure. PCI DSS is recognised as a strong control framework for payment data protection.
Top PCI-Active Industries in Australia
Financial ServicesRetailE-CommerceHealthcareHospitality
Regional Compliance Context
APRA CPS 234
Information security obligations for all APRA-regulated entities including banks and insurers
Privacy Act 1988
Australian Privacy Principles (APPs) govern how personal financial information may be collected and used
AusPayNet Security Framework
Australian Payments Network requires PCI DSS compliance for all card scheme participants
Notifiable Data Breaches Scheme
Mandatory breach notification to OAIC and affected individuals within 30 days
Frequently Asked Questions
Get Your Australia PCI Benchmark
See how your compliance programme compares to Australia industry averages.
Run Free Benchmark →