Last updated by: RamGcia, Last updated on: 16/05/2026
Scope Statement
Redback Operations – ISO27001:2022 ISMS
| Document Code | RO – ISMS – 001 |
|---|---|
| Version | 1.0 |
| Document Owner | Ethics / GRC Team |
| ISO27001 Reference | Clauses 4.1, 4.2, 4.3 |
| Review Interval | Start of each Trimester |
Scope Statement
This Information Security Management System (ISMS) aims to cover the assets, processes, procedures, and staff of Redback Operations for Trimester 1 2026. This ISMS will be relevant to all teams active and will be maintained by the Cyber-Security team.
Organisation
Redback Operations is a student-led company at Deakin University which focuses on the development of cutting-edge technology for connected health, fitness and sport to allow safe and smart exercise. Students rotate every trimester, with a maximum duration of two trimesters.
Active Teams in Trimester 1, 2026
| Team Name | Project Classification |
|---|---|
| Smartbike VR | Application Development |
| Orion | Application Development |
| Garmin Watch | Application Development |
| E-Waste Battery Extraction | Robotics |
| Data Warehouse | Data Storage, Processing, Analytics and AI |
| Blue Team | Information Security |
| Ethics / GRC | Compliance Education / Awareness |
| SecDevOps | Code Monitoring / Rectification |
Out of scope statement
| Exclusion | Justification |
|---|---|
| Personal Emails | Redback Operations does not have control over developer's personal email. |
| Personal Student Devices | Redback Operations does not have control over developer's personal tools but access to Redback systems is governed by Redback. |
| Deakin University login credentials | Deakin University IT handles the management of login credentials. |
| Network utilised for Redback tasks | The network that is used to conduct tasks for Redback is out of control for Redback Operation members to manage. The network infrastructure is managed by personal ISPs or Deakin. |
| Inactive Github Repositories | Github Repositories that have not been utilised in a while is no longer maintained. |
| Inactive Microsoft Teams channels | Teams channels that are inactive are no longer maintained. |
| Physical Environment | Redback Operations does not have control or can manage the physical environment in which the developers choose to work in. |
| Deakin University IT administrative procedures | Outside of Redback Operation's ability to manage. |
| Former developers (students and tutors) | Redback Operations is no longer responsible for those who are no longer enrolled. |