Remediation and reports

Guides for understanding and acting on your AI-generated remediation plan, managing evidence, and producing compliance reports.

Once your assessment has been analysed, CyberSmart360 builds a personalised 12-month remediation plan.

Task cards

Each task shows:

  • Task title — what needs doing, in plain language
  • Priority badge — Critical (red), High (orange), Medium (yellow), Low (green)
  • Month — which month the task is scheduled for
  • Estimated effort — approximate hours
  • Estimated cost — an approximate range in AUD
  • DIY flag — whether you can do it yourself or need a professional

Filtering

Use the filter controls to view tasks by month (1–12), priority or status.

Status Options

  • Not started — the default
  • In progress — you’ve begun
  • Completed — done (add a completion note)
  • Deferred — postponed (add a reason)

Priority Levels

Priority is set by the AI based on risk and impact — Critical, High, Medium or Low — and can’t be changed manually.

Tip: Work through the Critical and High tasks first. Even partial progress on a critical item makes a real dent in your risk.

Your plan flags each task as either “DIY feasible” or “needs an IT professional.”

Usually DIY

  • Turning on multi-factor authentication for email and cloud services
  • Setting up automatic software updates
  • Configuring regular backups
  • Reviewing and documenting who has admin access
  • Writing a basic password policy

Usually needs an IT professional

  • Configuring application control (allow-listing)
  • Centralised patch management
  • Operating system hardening
  • Centralised logging and monitoring
  • Advanced macro restriction policies

Don’t have an IT provider? The cost estimate on each task card helps you budget for one when you need it.

Evidence references record your proof of compliance. CyberSmart360 uses reference-based tracking, so you note where each piece of evidence lives without uploading the files themselves.

Evidence Types

  • Document — policies, procedures, guides
  • Screenshot — screen captures of settings
  • URL — links to admin portals
  • Policy — formal business policies
  • Configuration — system settings or exports
  • Other — anything else

How to Add Evidence

  1. Open the Evidence Tracker from your dashboard
  2. Find the control
  3. Click “Add evidence”
  4. Fill in the type, title, location and notes
  5. Click “Save”

Tips: Start with the controls where you’ve claimed compliance. Keep your descriptions clear enough that someone else could find the document from your note alone.

CyberSmart360 produces professional, audit-ready PDF compliance reports.

What’s in the Report

  • Executive summary with your compliance score
  • Domain-by-domain breakdown
  • AI analysis findings
  • Evidence references
  • Remediation plan summary
  • Your organisation details and the date

How to Generate

  1. Go to your Dashboard or Assessment View
  2. Click “Generate PDF Report”
  3. Click the download link when ready

Good to know: Download links are valid for 7 days. Reports carry your organisation name and are ready to share with external parties.

Can't find what you need?

Our support team is here to help. Email us at support@cybersmart360.com and we’ll get back to you within 24 hours (Standard subscribers) or 48 hours (trial users