BYBestYou·AI
PRIVATE TRAINING PROVIDER

Security awareness training for Australian agencies

BestYou-AI is a private training provider. Its 11 courses each cite selected controls from PSPF Release 2026, the ISM (June 2026) and related Australian Government standards — 32 ISM controls of 1,101 in total, listed in full on every course page.

Professionals at work in an Australian office
Selected controls, namedEach course cites specific control identifiers. 32 of the ISM’s 1,101 controls are covered.
Source citedEvery citation names its source document and version so a reviewer can check it.
Version controlledUpdates are tracked against framework, legislative and guidance changes.
Stated provenanceEach course records how it was produced and which controls it cites. No endorsement is claimed.
Catalogue

Training catalogue

Eleven courses, each citing named controls from the framework it covers. Coverage is selective, not framework-wide.

LAB All courses
Hands-on practice layer

Scenario Lab

Put every course into practice in real-life situations

Sixty-one hands-on scenarios — one for every module of every course — so students can touch and feel the relevance of what they learn. Every scenario carries an AI governance angle, and each course closes with a governed response in the ai.heart canon: eight layers, a verdict, Node 9 and an append-only audit trail.

61 scenarios All 11 courses AI governance Canon governed responses
Open the lab
BY-BX1 Practitioner
Our own floor

Governing AI: Duties of Boards

What the system refuses, what it permits, and how it behaves in between

The only course here that cites its own framework rather than someone else’s. It sets out the doctrine the ai.heart floor is built from — one life is infinity, strive then trust, and the three verdict states — and maps every clause to a named construct in the running system so a reviewer can check it rather than take it on faith.

50 min 5 modules 13 controls cited ai.heart Canon 2026-08-05
Open course
BY-G1 Foundation

PSPF 2026 Fundamentals

Recognise contacts, risks and incident reporting pathways

Build foundation awareness of PSPF Release 2026 security responsibilities, including contacts, foreign interference and incident response. The course supports personnel to notice, report and escalate concerns through agency processes.

45 min 5 modules 9 controls cited PSPF Release 2026
Open course
BY-G3 Foundation

Protective Markings

Apply protective markings with consistent judgement

Build practical understanding of how protective markings are chosen, recorded and applied across documents, systems and email. The course is mapped to PSPF Section 09 and the Email Protective Marking Standard.

40 min 5 modules 11 controls cited PSPF Section 09 + Email Protective Marking S
Open course
BY-GX3 Foundation

Email Protective Marking

Apply email protective markings correctly

Build foundation capability in applying Australian Government email protective marking syntax to email subjects, bodies, attachments and metadata. Learn how to choose values, resolve system differences, and understand tool limits.

15 min 6 modules 9 controls cited Australian Government Email Protective Marki
Open course
BY-G7 Foundation

Fraud Prevention

Apply layered fraud prevention and measurement

Build foundation capability in layered fraud prevention using IPSFF measurement-scoped concepts. Learn how FRA, FLM, conduct, data and AI support better control decisions.

40 min 6 modules 5 controls cited IPSFF Fraud Prevention Savings Framework (pa
Open course
BY-G2 Practitioner

ISM 2026

Apply ISM governance controls in practice

This 60-minute practitioner course builds capability in ISM accountability, training, policy and reporting controls. It also covers selected June 2026 changes and secure building practices for information security roles.

60 min 6 modules 13 controls cited Information Security Manual (June 2026)
Open course
BY-G4 Practitioner

Personnel Security

Make sound personnel security access decisions

Build practitioner capability to apply personnel security concepts across suitability, clearances, need-to-know and ongoing assurance. The course is mapped to PSPF personnel security requirements and the Personnel Security Adjudicative Standard 2026.

55 min 5 modules 13 controls cited PSPF Sec 16-22 + Personnel Security Adjudica
Open course
BY-G5 Practitioner

AI Governance in Government Systems

Govern AI systems with accountable human oversight

Build practical capability to govern AI use in government systems. The course is mapped to the ISM AI control set, GOV-08 and the PSPF recommended approach to AI training.

65 min 6 modules 13 controls cited ISM AI control set + GOV-08 + PSPF AI-traini
Open course
BY-GX1 Practitioner

Gateway Security

Govern gateway controls with evidence and risk ownership

Build capability to govern gateway security across domains. Learn how requirements, risk ownership, evidence and assurance support gateways aligned to the PSPF Gateway Security Standard.

45 min 6 modules 10 controls cited Australian Government Gateway Security Stand
Open course
BY-GX2 Practitioner

Hosting Certification

Apply hosting certification decisions before procurement

Learn to apply hosting certification requirements before procurement. Build capability to assess workloads, assurance, certification level, ongoing change, and contract boundaries.

40 min 6 modules 8 controls cited Hosting Certification Framework (DTA, March
Open course
BY-G6 Advanced

Cyber Resilience & Critical Infrastructure

Authorise resilient technology and cryptography decisions

Build advanced capability to authorise technology, manage shared risk information, and plan post-quantum transition activities. The course is mapped to PSPF Sec 13-15 TECH domain expectations and ISM cryptography guidance.

60 min 6 modules 10 controls cited PSPF Sec 13-15 (TECH domain) + ISM cryptogra
Open course
Adoption

How training works

Choose modules, assign learners and track completion through straightforward reporting for internal oversight.

01

Choose by topic

Pick the courses covering the topics your people need. Each course lists the specific controls it cites; none covers a framework end to end.

02

Complete governed modules

Staff complete short modules, knowledge checkpoints and a governed tutorial scenario to build capability and support consistent judgement.

03

Keep the record

Receive completion records and the list of controls each course cited. This is a training record, not assurance evidence and not an assessment.

Assurance

Content assurance

Materials are reviewed for currency and mapped to relevant legislation, standards and organisational policy settings.

What these courses do

Each course is written against named source documents and cites specific control or requirement identifiers. Every citation is listed on the course page so a reviewer can check it against the source.

Courses build capability: they help staff recognise obligations, apply the right handling, and escalate correctly.

What these courses do not do

They do not discharge a legal or policy obligation, and they are not accredited, endorsed or approved by any Commonwealth entity. BestYou·AI is a private provider.

Where a framework is only partly covered, the course says so on its page rather than implying full coverage.