The platform I couldn't buy, so I built it.
Zoib Cyber is an Australian training platform that solves a real problem: professionally-made compliance training your staff will actually finish, and the tools to build your own — without the hidden costs.
Perth, Western Australia
Australian-built, Australian-owned, Australian-run.
Hi, I'm Jack.
I started my career as a sys admin in cyber security and have transitioned into compliance and governance — currently as the compliance director at an ASX-listed Australian fintech. Along the way I've led ISO 27001, IRAP, and Essential Eight implementations, sat on government cyber security working groups, and contributed to Australia's Age Assurance Trial.
None of that is why I built Zoib. It's how I know what was missing.
When I went looking for training tools for my own staff, I hit the same wall every compliance lead does. Professionally-made training was expensive, opaque on pricing, and locked behind a sales call. Build-your-own tools were empty LMS shells with no content.
The best compliance training isn't the one that ticks a box. It's the one your staff remember the next time they hover over a suspicious link.
Zoib is still just me. When you email hello@zoibcyber.com.au , I read it and I reply.
Training that changes what people do
Most compliance training is bought to tick a box. Staff click through, nothing sticks, and six months later someone still opens the phishing email that costs the business real money. That's what Zoib exists to change.
Every module is short (around 12 minutes), written in plain English, and designed to leave your staff with something they'll actually use — not just a certificate. Content is grounded in primary Australian sources so it's accurate to how the regulators here actually see things, and the modules are regularly updated to suit the ever-changing landscape.
For AML-regulated businesses, the AML Program Kit does the same job for your program documents. A guided, plain-English intake generates five AUSTRAC-aligned documents tailored to the business — no consulting bill, no six-week engagement, no jargon.
And when someone does ask you to prove staff have been trained, every completion is an immutable, timestamped record you can export in a click. Managing onboarding and refresher training has never been easier — and this is just the start.
The documents and training help your business meet its obligations. They are not legal advice.
The rules I built this on
- 01
Training that sticks
Short, plain-English modules designed to change what staff actually do — not something they can click through and forget by lunchtime.
- 02
Australian primary sources
Every module is grounded in OAIC, AUSTRAC, ASD/ACSC and other primary Australian sources — verified, cited, and updated when the guidance materially changes.
- 03
Pricing on the pricing page
No sales calls to find out what it costs. No hidden overages at renewal. From $39 a month, published upfront — and anyone who joins in the first 12 months keeps their sign-up price.
- 04
Security you'd expect from a compliance company
Enforced MFA for every admin. Tenant-locked SSO with Google and Microsoft. Strict tenant isolation. Append-only audit logs.
Made for Australia, from Australia
Zoib Cyber is built and run from Perth, Western Australia. That's not marketing — it changes how the platform works. Content is written against Australian primary sources, not repurposed US or UK material. Support runs on Australian business hours. And when a regulator here changes something, it's on Zoib within the same week.
-
Headquartered in Perth, WA
Australian owned and operated. No offshore ownership, no offshore data.
-
Primary sources, not paraphrased
Every fact traces back to an OAIC, AUSTRAC, or ASD/ACSC citation. Nothing lifted from a competitor's white paper.
-
Australian business hours
Support delivered on AEST/AWST — not routed to a queue on the other side of the world.
-
Kept current, on a schedule
Every source is on a quarterly currency watchlist. Superseded guidance is retired, not left to rot.
The regulators, agencies, and standards behind every module
- OAIC — primary source, opens in a new tab
Office of the Australian Information Commissioner — Privacy Act, APPs, Notifiable Data Breaches scheme.
- AUSTRAC — primary source, opens in a new tab
Australian Transaction Reports and Analysis Centre — AML/CTF Act, Rules, and Tranche 2 obligations.
- ASD / ACSC — primary source, opens in a new tab
Australian Signals Directorate — Essential Eight, ISM, and current cyber threat guidance.
- DVS / IVS — primary source, opens in a new tab
Document Verification Service and Identity Verification Services Act — for identity verification training.
- ISO — primary source, opens in a new tab
ISO/IEC 27001 — for information security management modules aimed at managers and governance roles.