---
title: "ASD Essential Eight + ASD AI guidance — KYE Protocol™ coverage"
description: "ASD Essential Eight + ASD AI guidance coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it."
url: https://kyeprotocol.com/compliance/asd-essential-eight/
lang: en
source: "KYE Protocol"
---

> ASD Essential Eight + ASD AI guidance coverage by KYE Protocol™ — every requirement bijection-mapped to the KYE™ artefact that enforces it.

ASD Essential Eight + ASD AI guidance

# ASD Essential Eight + ASD AI guidance — 100% of in-scope requirements covered.

4 requirements · 4 in scope (4 enforced). The 100% is weighted over the in-scope base.

**Source:** Australian Signals Directorate (ASD) / Australian Cyber Security Centre (ACSC) Essential Eight Maturity Model (November 2023 release) + ASD 'Engaging with Artificial Intelligence' guidance (2024). Scoped to the mitigation strategies KYE™'s runtime-authority + evidence layer can enforce for the AI-agent action path. · **License:** ASD/ACSC publications are Commonwealth of Australia works published under CC BY 4.0.

## By category

| Category | Reqs | Enforced | Designed | Advisory | Deferred | Coverage |
| --- | --- | --- | --- | --- | --- | --- |
| Restrict administrative privileges | 1 | 1 | 0 | 0 | 0 | **100%** |
| Multi-factor authentication | 1 | 1 | 0 | 0 | 0 | **100%** |
| Monitoring, logging & detection | 1 | 1 | 0 | 0 | 0 | **100%** |
| AI supply-chain governance | 1 | 1 | 0 | 0 | 0 | **100%** |

## Every requirement → the KYE™ artefact that enforces it

| ID | Title | Status | KYE™ enforcement |
| --- | --- | --- | --- |
| `asd-essential-eight.e8-restrict-admin` | Essential Eight — Restrict administrative privileges (least-privilege administration, validated and time-bound privileged access) | enforced | **audit\_events**: `kye.purpose.admissibility.v1`, `kye.risk.authority_register.v1` **engines**: `internal`, `internal` **constitution\_refs**: `constitution/12-PURPOSE-PERMISSION.md` |
| `asd-essential-eight.e8-mfa` | Essential Eight — Multi-factor authentication for privileged and high-risk actions | enforced | **audit\_events**: `kye.purpose.admissibility.v1`, `kye.evidence.decision_map.v1` **engines**: `internal` **constitution\_refs**: `constitution/12-PURPOSE-PERMISSION.md` |
| `asd-essential-eight.e8-monitoring` | Essential Eight + ASD AI guidance — centralised, tamper-evident logging and monitoring of security-relevant events for detection and incident response | enforced | **audit\_events**: `kye.evidence.pack.v1`, `kye.replay.context_seal.v1` **engines**: `internal`, `internal` **constitution\_refs**: `constitution/30-AUDIT-WORM-RETENTION.md`, `constitution/35-STREAMING-LOGS.md` |
| `asd-essential-eight.asd-ai-supply-chain` | ASD 'Engaging with Artificial Intelligence' guidance — understand and govern the AI supply chain, including which components and authorities an AI system acts under | enforced | **audit\_events**: `kye.risk.authority_register.v1`, `kye.evidence.tool_call.v1` **engines**: `internal`, `internal` **constitution\_refs**: `constitution/21-DELEGATED-AUDITABILITY.md` |

Canonical KYE™ surfaces referenced on this page: [KYE Protocol™](https://kyeprotocol.com/).
