Built for institutions that carry systemic risk.
Testamark is an Australian company building the standard, the platform and the certification for continuous control assurance. One name across all three, because the claim and the thing that produces it should not be separated.
We built it because industry demanded it.
Compliance was never the objective. Security is. The threat landscape moves daily, suppliers change, models change, exposure changes, and an annual attestation cannot govern any of it. Industry told us plainly that it needed to move beyond compliance paperwork to a live, defensible view of control state, and to manage that dynamic cyber landscape as it actually behaves. So we built it.
It began with a problem defined by an industry and led by Insignia Financial. CPS 232 demanded more than an attestation model could honestly carry, and the sector needed a genuine uplift rather than another annual sign off.
Supply chain risk was selected unanimously by more than twenty CISOs from the largest financial services businesses in the country. That decision started the build, and their input shaped every depth, state and record in the standard.
We emerged with our first customers and have been growing the network of suppliers and institutions ever since, here in Australia and soon well beyond it. Testamark is a product of the industry it serves.
Who you will be dealing with.

Jason Murrell
Leads assurance strategy for regulated finance and superannuation.

Chris Lane
Works with enterprise clients across supply chain and AI assurance.