Skip to content

Office Hours · In partnership with CyberCX (part of Accenture)

Bring the problem. Watch intelligent GRC run it, in person.

A working breakfast for senior GRC, cyber and risk leaders. CyberCX and 6clicks in one room, shaped around the challenges you bring. A roundtable, not a stage. Frame the problem from the front line, then watch it answered and built live, done by late morning so you're back to your day.

In partnership with:
The 2026 tour
AUG 13

Melbourne

Thursday • 330 Collins St

OPEN
SEP 10

Adelaide

Thursday • 95 Grenfell St, Adelaide

OPEN

Choose your city and register now.

FORMAT Roundtable Breakfast included
when 8:30 to 11:00 Select your city
COST Free Invite only
TOUR 2026 Australia
THE MORNING, END TO END

One breakfast. From your challenges to working solutions.

Office Hours is simple: the experts hold time open for you. This one's with CyberCX and 6clicks, shaped around the challenges you share at registration. See them framed from the front line, answered in the platform, and built live in the room. Done by 11:00, so you're back to your day.

8:30

Doors open, breakfast served

Hot breakfast and coffee as the room fills.

8:45

Welcome and introductions

A quick round so everyone knows who's in the room.

9:00

What the room is facing [by CyberCX]

The risk and assurance landscape from the front line, shaped by the challenges you submitted at registration.

9:15

The 6clicks response, with Andrew Robinson

Turning the room's challenges into working assurance

9:30

Solutions in action

See the solutions demonstrated live, mapped to the challenges you shared.

10:15

Roundtable and close

Peer discussion and what's next

10:45

Closing remarks

11:00

Networking

Coffee and conversation for those who can stay.

BUILT ON THE 6CLICKS WORKFLOW BUILDER

If you can describe the workflow, you can build it.

Andrew Robinson, Co-Founder & Chief Customer Officer of 6clicks, wanted better third-party assurance, so he built a security scanner inside 6clicks. No custom code, no extra licence, just the Workflow Builder and free public data. Here's what it does, and the point is you could build it too. Read more here.

Four public signals, one grade

Email security, TLS, web hardening and reputation, each graded A to F and rolled into a weighted score.

Straight onto the vendor record

Grades and scores written back to your register, sortable and filterable, so you review the riskiest vendors first.

Trend, not just a snapshot

Tracks whether each vendor is improving, holding or slipping, so you catch drift between reviews.

Built on the Workflow Builder, so you can too

No custom code, no extra licence. This was assembled from 6clicks capabilities you already have, which means you can build, reshape or extend it yourself.

BRING A REAL PROBLEM

See it run, on your terms.

Bring a real GRC challenge and we'll run it end to end in 6clicks, right there in the room. You leave with defensible outputs your team can use straight away.

1

Control Assurance (Evidence validation + gap findings)

“I need to upload evidence, validate it, and make sure it actually meets the control requirements.”

Validate evidence against clear criteria and surface gaps with recommended actions, so you can prove control effectiveness, not just tick it off.

2

Risk Accountability

“Show me every risk we’ve accepted at medium or above, and who signed off on it.”

Surface high-impact accepted risks and make ownership explicit, so accountability is clear and nothing sits unowned.

3

Privileged Access Compliance

"We run quarterly access reviews across AD and Entra ID. I need them tested against ISM controls and packaged for audit, without chasing evidence by email."

Bring your access review evidence together, test it against your controls, and package it audit-ready, so you can prove privileged access compliance without the email chase.

4

Continuous Assessment Management

"I need my team to review and update assessments together, and keep answers current as our evidence and posture change, without losing track of who changed what."

Collaborate on assessments at the question level, with comments and reopen in context, so reviews stay in one place and your records stay accurate and audit-ready.

5

Third Party Risk Management

"I need to be able to automate the onboarding and assessment of third-party suppliers. Understanding the level of risk, they pose and ensure their compliance to my required frameworks and standards."

Onboard and assess suppliers automatically, score the risk they carry, and track their compliance against your frameworks.

6

Issue & Incident Management

"I need to be able to capture our Issues and Incidents and manage them effectively ensuring that they follow our required process."

Capture issues and incidents and run them through your required process, start to finish, with nothing slipping through.

7

Risk Approvals

"I need any risk added and accepted onto our Risk Register to be approved by the right level of the organisation."

Route risk acceptances through approval workflows, so sign-off sits at the right level and nothing is accepted without authority.

8

Multi-Framework Mapping

"We comply with multiple frameworks. I need to streamline evidence collection so my Control Owners aren't duplicating work across them."

Map one control to many frameworks and reuse evidence across them, so Control Owners collect once and satisfy multiple requirements.

9

Connected Compliance

"Our tools don't talk to each other, so GRC data ends up stranded and we reconcile by hand."

Connect 6clicks to your existing stack through new APIs and integrations, so your data flows into one system instead of living in silos.

10

Registers, Built Your Way

"I need registers that match how we actually work, with the right people seeing the right records."

Create custom register types for controls, tests, tasks and evidence, with role-based access, so your structure fits your team and stays secure.

Who it’s for

Senior operators in regulated environments, not the general public, and not competing vendors.

Small rooms. Senior operators.

Roles

Heads of GRC / CISO Risk & Compliance leads AI / Data Platform leaders AI & Data Platform leads CIO/CTO (government + critical infrastructure)

Sectors

Government Defence supply chain Critical infrastructure
What you’ll leave with

You’ll leave with outcomes, not impressions

Validated evidence criteria (what “good” looks like, before you upload)

Clear findings and gaps, prioritised with recommended actions

Accountable owners and tasks created as you go

An audit‑ready narrative your team can use immediately

AUSTRALIA · THE TOUR

One format. One expert perspective.

Office Hours runs across Australia through 2026, starting in Melbourne. Each session is co-hosted with a local partner. Select your city and register your interest.

Melbourne

OPEN

330 Collins St, Melbourne · Thu 13 Aug 2026

Co-hosted with cybercx
Save my seat

Adelaide

OPEN

95 Grenfell St, Adelaide · Thu Sep 10 2026

Co-hosted with CyberCX-ACN-logo
Save my seat
How it works

Steps

1. Request an invite (choose your city)

2. We confirm fit and send your calendar invite

3. Bring a real GRC problem (or choose a guided use case)

4. Watch the build: evidence → validation → findings → posture

5. Leave with your output pack

FAQs

Frequently asked questions

We've compiled the most important information to help you get the most out of your experience. Can't find what you're looking for? Contact us.

CyberCX is a strategic partner of 6clicks and a leading cyber security and cloud services company supporting government and enterprise organisations across cyber resilience, risk management, compliance, and secure transformation initiatives. 

 

6clicks delivers sovereign GRC infrastructure built for government, defence, and critical infrastructure operators. The platform combines AI-powered risk and compliance workflows, flexible sovereign deployment models, and agentic connectivity across complex environments.

Learn more about the CyberCX × 6clicks partnership and joint initiatives.

Yes. Office Hours is an in-person working session in each city. We’ll send venue details and a calendar invite once you register and we confirm capacity. 
You’ll join a small group of peers for a live build. We’ll run a real scenario end-to-end in 6clicks, show evidence validation and findings in real time, and leave time for open operator discussion. You’ll leave with clear outputs you can take back to your team. 
Yes. You can bring up to +2 additional team members, as long as they are operators who can influence decision makers (for example, GRC, cyber, risk, compliance, or platform leaders). 
Yes. Share as much context as you can in the registration form. If you’re invited, we’ll follow up to confirm the scenario and tailor the session so the live build is relevant to your environment. 
No. This is for senior operators in regulated organisations. 
Ready to see intelligent GRC run end‑to‑end?

Register for your city. Seats are limited.