12.1 Created via the passage of the E-Government Act in 2002, the Federal CIO is a role within the US Government's Office of Management and Budget (OMB) in the Executive Office of the President. It has a small staff and oversees federal technology spending, IT strategy, cyber security and digital transformation to enhance public services and operational efficiency. It has jurisdiction of around 430 departments and agencies and until recently used specialised funds to incentivise desired behaviour from entities against its priorities. Such funds are tailored for ICT modernisation and uplift of services to the public.
12.2 Each department and agency is responsible for its own procurement. Progress against the Federal CIO’s priorities is monitored by the CIO Council which establishes standards against which the success of individual agencies' programs are measured which include optimising Federal Government information resources and investments.
12.3 Other US Government entities also play a role in overseeing procurement:
12.4 Given its size, the US Government has an approach which is based on the influence and power of individuals and is completely decentralised. The large departments such as the Departments of Defense, Treasury, Agriculture and Transport can use their size to leverage discounts from sellers, but smaller entities do not get access to these. This can mean there is enormous inequity in costs paid for products and services. Thus the large sellers have limited interest in helping to drive change as they greatly benefit from the current lack of transparency and coordination.
12.5 There is limited meaningful aggregated data on where the US Government is spending its money on ICT products and services. Data collected relies on self-reporting often from personnel without the requisite skills or knowledge. While some progress has been made over recent years, the true knowledge probably sits with the large sellers who have no commercial interest in assisting with transparency.
12.6 The US started the Better Contracting Initiative to meet with sellers and start strategic partnering conversations, however this often ended up being a mechanism for the sellers to gain insight into the US Government’s strategies to use for commercial advantage.
12.7 Companies like Microsoft are typically engaged through a reseller and the reseller is responsible for landing the Microsoft capability in the agency and supporting implementation. Again, large entities have the capability and capacity to negotiate with resellers, but getting this expertise into smaller agencies is problematic.
12.8 Similar to the Small and Medium Entity procurement pathways introduced by the Australian Government (e.g. the SME exemption within the Commonwealth Procurement Rules), the US has the Small Business Development Program to help small, disadvantaged businesses compete for federal contracts through certification, offering access to sole-source and competitive set-aside contracts, business development assistance, and other benefits.
12.9 The underpinnings to future success for the US Government to move towards a posture where it could better leverage its technology buying power begins with:
12.10 The issues which did drive changed behaviour in the US Government in the last few years were cybersecurity, and in future years the shift to cloud services and artificial intelligence. These were viewed as platforms which can be leveraged to hasten change.
12.11 The US Government itself must maintain sufficient ICT expertise in its workforce in order to have the capability to validate proposals from the private sector for ICT.
12.12 The US Government needs to be prepared to invest money perhaps to the point of temporarily doubling its costs to build digital twins rather than try to cobble together improvements on top of infrastructure - in order to ultimately save money especially through automation.
12.13 Responsibility for improving the UK Government’s digital performance rests with the Central Digital and Data Office (CDDO) and the Government Digital Service (GDS), which are both part of the Cabinet Office. The CDDO, created in 2021, leads the digital, data and technology function of government and is responsible for strategy, standards, and capability development. The GDS, created in 2025, has refocused its role on building products and services that help provide a simple, joined-up and personalised experience of government to the public. However, individual departments are responsible for the day-to-day delivery of their own programmes.
12.14 The extant Shared Services Strategy was launched in March 2021 by the Cabinet Office. The Strategy is focused on creating efficiencies by replacing 286 departmental systems with 5 ERP systems clustered through five shared service centres. The clusters were determined by factors such as existing relationships and departmental characteristics such as technology, size, scale, complexity, service requirements and historic and current investments. The Public Accounts Committee (PAC) reported in 2023 that the 2021 Strategy was underfunded blaming the Cabinet Office for failing to make a proper business case whilst also acknowledging that the Strategy was still on course to save £1.8bn over the next 15 years through modernising back-office systems and moving to cloud-based technology and standardising processes and data. The PAC also reported that the clusters had forecast that they would need an additional £480m of investment after 2024-25 to deliver the full Strategy.
12.15 The position of Chief Commercial Officer (CCO), formerly Chief Procurement Officer is responsible for implementing the UK Procurement Act 2023 which came into force in February 2025. The Act aims to:
12.16 The CCO in the Cabinet Office oversees the Government Commercial Function (GCF) which was formed in 2015 and incorporates around 6,000 people working in commercial roles across the UK Government. In this decentralised model, the commercial teams in departments are supported by a central team, including the Crown Commercial Services within the GCF, providing cross-cutting functional coordination support, as well as specialist services and expert advice on complex transactions, key sellers and market stewardship. This helps to ensure that the Government can effectively leverage its significant scale, benefit from greater efficiency and drive improved value for money from its sellers and the wider supply chain. The Crown Commercial Services have framework agreements, dynamic agreements and strategic memorandums of understanding with companies such as HP, IBM, AWS, ServiceNow and Cisco. Companies such as Microsoft often provide services to government through value added resellers. (A full list of these suppliers is available.) Government departments tend to use central frameworks and rather than run tender process for the following reasons: efficiency and speed, accessing discounts, legal compliance, quality assurance, risk management, HMG Policy Alignment. The GCF also provide Playbooks to guide policy and practice for sourcing and procurement and offer skilling and training in these areas for the rest of government.
12.17 In March 2025 the UK Government announced a £3.25bn Transformation Fund to boost government efficiency and invest in digital and emerging technology such as AI. Some reductions on civil service staff have been made already in the expectation that investment in technology can make the provision of services more efficient.
12.18 The UK Government has been working towards improving government efficiency through shared services and centralised procurement arrangements for over 15 years. Whilst success has been mixed and slow, some savings have been achieved and the buying power of the UK Government has been leveraged – particularly around so-called back office functions such as finance, HR etc as they continue to move toward 5 shared service centres. The UK is at an inflection point and this year has strengthened governance of procurement in the Cabinet Office and recognised that the next stage of realising more savings will take concurrent financial investment to take advantage of modern ICT.
12.19 The UK has centralised functions with accountability for driving improved digital transformation, shared services and efficiencies within the Cabinet Office. Like Australia, it has had these functions in some form for many years. These functions are not legislated and are given effect to by the power and governance at the centre of a Westminster system.
12.20 The UK is improving its ability to share and learn from historical failures – the decade long journey of one ERP process was provided as an example, where the technology was adapted to the business process of individual agencies thus creating bespoke systems with limited interoperability. The UK Intelligence Community (UKIC) has become an exemplar for what may be possible in the broader government, and this has taken time and strong and united leadership to achieve whereby now one team in the UKIC enters into contracts on behalf of the whole UKIC.
12.21 Following a 2010 Budget Review of government administrative functions, Shared Services Canada (SSC) was created on 4 August 2011 and reports to Parliament through the Minister of Public Services and Procurement Canada. With its formation, SSC initially brought together 5,000 IT positions and resources from 42 departments with a mandate to provide email, data centres and network services. At its stand up, its budget was cut by CAN$500m per year, which in hindsight gave the organisation a challenging start.
12.22 On 1 April 2012, SSC became an independently functioning department in terms of its governance and financial responsibilities.
12.23 SCC centrally delivers email, data centres and networks to the Canadian Government. End user devices and applications are the responsibility of individual departments and agencies.
12.24 The Canadian Security and Intelligence Service and the Communications Security Establishment are the only fully optional clients that are not obligated to use the bulk of SSC’s services (they are however required to use SSC’s purchasing vehicles for certain items). SSC also provides services to border, defence and law enforcement; the sole exemption is for dedicated mobile communications (for example deployed equipment with the Canadian Armed Forces) and SSC also provides technology support to border posts and Royal Canadian Mounted Police detachments. SSC maintains a high threshold for gaining an exception to its enterprise standard, this threshold was lower at the stand up of the SSC and has been addressed since whereby all exceptions are done openly through an enterprise architecture review board.
12.25 SSC is responsible for setting up IT contracts, standing offers and supply arrangements for the Government of Canada. SSC has a role to ensure only trusted equipment and software are used. In practice, this has meant that departments with delegated authority can buy IT goods from SSC’s national master standing offers, such as printers, scanners, toner and other IT peripherals and components, such as keyboards, USB keys and computer mouses. However some goods are excluded in order to leverage volume discounts and ensure the ‘best value to Canadians’. These include: docking stations, monitors, desktops, notebooks, tablets and thin clients.
12.26 The SSC’s Centre of Expertise in Agile and Innovative Procurement was established in 2019 and focuses on removing barriers to entry to complex government RFT processes for organisations not large enough to contend with them. It uses the well documented agile method of incubation, encouraging innovation and solution finding. Its ScaleUP program, launched in 2021, targets micro and small businesses especially those led by minorities essentially by setting aside procurement opportunities that SSC judges can be addressed by those groups.
12.27 SSC also have a program that gives favour to sellers who can demonstrate energy efficient or ‘green’ initiatives.
12.28 Through the consolidation of goods and services contracts, leveraging better pricing and reducing duplication, SSC claims to save $209 million annually in overall IT expenditure.
12.29 SSC is also bringing centralised services support to government organisations, applying industry standards for service delivery and enabling more effective, efficient and cost-effective practices. For example:
12.30 SSC is a service delivery agency. It oversees an array of single seller arrangements. Whilst progress has been slow since its stand up in 2011, some significant cost savings are now being realised along with cost avoidance and improved negotiating power given the scale of the Government of Canada‘s buying capacity. In some cases, cost efficiencies have also been achieved because of improved technology.
12.31 SSC continues to need to build credibility and reliability in its reputation among government despite having a clear mandate in legislation. Whilst it supports 3,800 locations around Canada, when only one has a service problem due to an unavoidable incident this impacts the agency’s reputation. The reputational challenge is also a consequence of the agency’s original stand-up where 5,800 staff were transferred to SSC but not moved from their physical locations. This meant that people stayed in their own locations but Shared Services Canada was given all of the money. Other legacy challenges such as an early failure to deliver a one email system for the Government still contribute to today’s reputational challenges.
12.32 Managing competition remains challenging for SSC and they are working to change the current models of procurement to ensure that companies do not become entrenched in monopolies.
12.33 There are several different models used by SSC for central procurement.
12.34 Small items such as laptops and mobile phones are bought under arrangements where an amount is negotiated per item without a commitment for how many items might be bought over time.
12.35 SSC is moving to a ‘Platform As A Service’ model where it provides an application as a service allowing individual departments to avoid the implementation cost and simply pay for consumption. Take up of this service is voluntary but SSC runs the data centre so most departments and agencies do not want the cost of running their own.
12.36 SSC has other initiatives to manage competition. They are moving to a model where SSC negotiate a five-year initial term then annually afterwards. This means that if the Government wishes to move sellers, it has five years to get off a product and the seller has equal warning. SSC are also implementing an approach whereby they do not allow an actual single seller arrangement but instead either have a two-seller arrangement or a two plus one seller arrangement. The latter being where two major sellers are providing services and one small seller provides the same service.
12.37 The challenges of multiple seller arrangements are that SSC has to have teams with the skills to support multiple products. It also means that it has less buying power when negotiating with one seller because it is buying half the service or product.
12.38 Legacy ICT remains a challenge and SSC is looking at ways they may be able to move agencies faster off legacy ICT as allowing them to move slowly has proven to be more expensive. It also means that SSC is carrying unhealthy application layer capabilities that are still managed by individual agencies on its infrastructure which creates risk.
12.39 Interoperability remains a challenge and SSC provided the example of cloud services where they are moving some data back into private clouds so that they have better control of that data from a security and privacy point of view but also as part of recognising that data is critical to the Government of Canada‘s operations. The example provided was HR data. Negotiations with cloud providers is challenging given that those clouds are deliberately not interoperable hence the move to increase private clouds.
12.40 Looking forward, Canada is thinking carefully about the future move from data sovereignty to digital sovereignty. This is a reflection of challenges in technology supply chains, including as experienced during the COVID-19 pandemic and more recently the rise of geopolitical tensions.
12.41 SSC expects the next generation of savings will be to remove duplication of effort in individual departments and using contract negotiations to remove locked-in monopolies.
12.42 SSC expects to increase the use of pre-commitments when negotiating contracts. It uses these to get good discounts with big sellers. The Treasury has concerns about this approach because the Government is committing to expenditure against future revenue but is starting to appreciate the savings that can be realised by using pre-commitments in negotiations.
12.43 SSC is also reviewing its approach to commodities among its various procurement models including on how to encourage the private sector to bring more innovation to the process.
12.44 SSC also negotiates such that it only pays when it starts to consume services and expects this to continue to be a useful lever in the future.
12.45 The Government Chief Digital Officer sits within the NZ Department of Internal Affairs and Chief Digital Officer. Following the 2022 Election, the Digital Investment Office was stood up within the GCDO to increase its influence over public sector digital investments as articulated in the policy document the Digital Investment Mandate. The GCDO reports to the Minister for Digitising Government.
12.46 The GCDO is responsible for setting digital policy and standards; improving investments; establishing and managing services; developing capability and system assurance (assuring digital government outcomes).
12.47 The GCDO’s mandate applies to all Public and non-Public Service departments as well as major Crown agents. Other public sector agencies are also participating in many of the initiatives GCDO is leading.
12.48 The GCDO is designated as a system leader under the Public Service Act 2020 to ‘coordinate best practice in a particular subject matter area’ by the Public Service Commissioner. The details of their mandate in policy is to further centralise the digital government function, and take a whole of public service approach to strategic planning and investment in digital technology.
12.49 One of the main areas of work is for the GCDO and DIO is to streamline common ICT procurement processes. There are two goals for this line of work:
12.50 All six of Australia’s SSAs are on this list, except for IBM.
12.51 The GCDO also has in place a programme for what it calls a Common Capability ICT, defined as any technology that can be used by one or more agencies, or across all-of-government, to support business outcomes. Under this model, the lead agency takes responsibility for procurement and contract maintenance, allowing other agencies to focus on service delivery. The idea is to use the scale of government as a single customer. It allows agencies to share ICT investment, pool resources and move to shared standards.
12.52 The Infrastructure as a Service and Telecommunications as a Service Common Capability agreements will expire in 2026 and will be replaced by the Common Capabilities Cloud Programme as part of NZ’s cloud first policy.
12.53 The GCDO does not sit in the Finance Portfolio and therefore does not have direct control of financial levers which might drive new behaviours among agencies. Whilst they are a recognised ‘system leader’ under the Public Service Act, this does not give them any particular legislative mandate and they rely on declared strategies, useful services, cabinet authority and the will of Ministers and Government leadership to comply.
12.54 Given their smaller size, the NZ Government has achieved significant progress in the last decade on streamlining and harmonising services to NZ citizens. They have had a cloud first policy in place since 2012 and have 40% of all agencies now on the cloud, in part highlighting the extensive timeframes required to replace or relocate core technology assets. They have also achieved digitisation of almost all agencies’ services to the public.
12.55 New Zealand’s arrangements are very similar to Australia’s. They currently have three layers of how companies can engage with the NZ Government.
12.56 The first layer is the current Common Capability Agreements where the GCDO issue Requests For Proposals (RFPs) to create a standard contract and service level agreements for a range of services. There are currently two of these Agreements, one for telecommunications including mobiles, Wi-Fi access and helpdesk support. The second Agreement is for infrastructure as a service which provides compute power and managed service providers.
12.57 The second layer is panels which are similar to how the Australian Government creates panels for agencies to draw from. In the NZ case, the GCDO has completed the primary procurement processes including due diligence, proof of ownership, terms and conditions and security checks such that agencies can do the secondary procurement process.
12.58 The third layer is creation of a marketplace which is a work in progress for New Zealand, where they hope to achieve smaller panels that are opened more regularly for competition to increase innovation and competitive tension.
12.59 NZ does have a number of single seller arrangements. Microsoft is one which they have in common with Australia having signed a whole of government deal in August 2024. This has standardised pricing and contracts for Microsoft services such as O365 and Azure. Agencies can then have a supplementary agreement for any bespoke requirements. The benefit NZ advised they have achieved is principally that the agency has clarity on rates and those rates stay unchanged for three years. Similar arrangements are in place for cloud providers which currently include: AWS, Google and Datacom. There are SSAs for Software as a Service and Platform as a Service with Oracle, SAP and TechnologyOne, and for Enterprise Resource Planning (ERP) arrangements including with Workday.
12.60 Looking forward, the New Zealand government is considering how it might improve their arrangements including issues such as:
12.61 The GCDO is considering the benefit of controlling the appropriation of budget to agencies for digital investments, similar to the model the DTA has with the Investment Oversight Framework and the soon to be introduced Digital Investment Plans. This was emphasised in the example that New Zealand has had a cloud first policy since 2012 and that 40% of all agencies are already on the cloud but the goal to moving to 60% has become extended due to the challenges of Capex and Opex rules within the New Zealand government funding arrangements.
12.62 In the context of its November 2024 White Paper on Shared Commitments in a Blended reality, the World Economic Forum (WEF) notes that open standards and shared global services and operations have been vital to the underpinnings of a robust and largely open internet. The WEF publishes on these issues at a high principles level and does not address more tactical issues of single seller arrangements of shared services as used by governments.
12.63 The OECD has from time to time written about shared services. Notably in 2021 it published a paper in the OECD Journal on Budgeting, Volume 2021 Issue 2 in which an Oxford scholar investigated the implementation of the UK Government’s shared services to date. The conclusions were that over the five year period of the study, there were no quick wins, that this was a long-term strategy where difficult trade-offs of the advantages of collective endeavour had to be managed by minimising downsides and managing a sense of a loss of control sometimes impacting the high functioning of often smaller agencies.
Appendix G
Appendix H
| Name | Position | Organisation | Date |
|---|---|---|---|
| Emmanuelle Hose | General Manager | Rimini Street | 9/04/2025 |
| Paul Hill | Director, Customer Engagement | ||
| Nicholas Flood | Managing Director, IBM Australia & New Zealand | IBM | 11/04/2025 |
| Primod Govender | Technology Leader for DTA | ||
| Claire Dunworth | Advisory Innovation Designer, Client Engineering | ||
| Kate Tollenaar | Director, Government & Enterprise | ||
| Nathan Ashley | APAC Enterprise Licencing Leader | ||
| Adrian Motherway | Director, Federal Government, Defence & Intelligence | Microsoft | 14/04/2025 |
| Vivek Puthucode | General Manager, Public Sector Australia & NZ | ||
| Brad Fisher | Federal Government Lead | Amazon Web Services (AWS) | 29/04/2025 |
| Sebastian Wojtkiewicz | ANZ Frameworks Lead | ||
| Brian Senior | Executive General Manager | SAP | 30/04/2025 |
| Phil Gray | Commercial Lead | ||
| Julie Canning | Account Executive, Government Services | ||
| Merrily Willis | SSA Admin and Oversight | ||
| Ramah Sakul | Head of Government Affairs | ||
| Richard Gray | Strategic Client Director, Federal Government | Oracle | 6/5/2025 |
| Name | Position | Organisation | Date |
|---|---|---|---|
| Alan Marjan | First Assistant Director, General Cyber Security Resilience | Australian Signals Directorate | 9/04/2025 |
| Michael Harrison | Chief Information Officer | Attorney-General's Department | 14/04/2025 |
| Scott Sharp | Chief Financial Officer | ||
| James Allen | Project Manager, Corporate Division | ||
| Paul Boehme | Assistant Secretary, Capability Sustainment | ||
| Name withheld | Director | ||
| Timothy Neal | Assistant Secretary, Commonwealth Security Policy | Department of Home Affairs | 14/04/2025 |
| Nichole Franks | Director, Government Cyber Security Policy | ||
| Monique Hamilton | First Assistant Secretary, Group Operations Division | Department of Defence | 15/04/2025 |
| Maureen Greet | Assistant Secretary, Commercial Branch | ||
| Name withheld | Commercial Director, Commercial Advice, Performance and Engagement | ||
| Tony McDonald | First Assistant Secretary, Digital Competition and Payments Division | Treasury | 16/04/2025 |
| Alex Maevsky | Assistant Secretary, Competition and Digital Platforms Branch | ||
| David Hicks | Chief Financial Officer | Department of Health, Disability and Ageing | 24/04/2025 |
| Lisa Tepper | First Assistant Secretary, Information Technology Division | ||
| Layla Morrow | Assistant Secretary, Enterprise Portfolio Management and Commercials Branch | ||
| Name withheld | Deputy Director, IT Services | Commonwealth Scientific and Industrial Research Organisation (CSIRO) | 28/04/2025 |
| Name withheld | Head of Contract Governance and Procurement | ||
| Mark Sawade | Chief Information Officer | Australian Taxation Office | 1/05/2025 |
| Matthew Hay | Deputy Commissioner, Strategy and Architecture | ||
| Peter Walker | Assistant Commissioner, IT Commercial Services & IT Strategic Sourcing | ||
| Adrian Jeczewski | Assistant Commissioner, ATO Sourcing, Commercial Services and Leasing | ||
| Ian Scensor | General Manager, Technology Security | Australian Bureau of Statistics | 1/05/2025 |
| Name withheld | Director, IT Seller Management | ||
| Name withheld | Director, Procurement and Business Services | ||
| Brooke Paterson | Chief Technology Officer | ||
| Kim Laybutt | National Manager, Technology Sourcing | Services Australia | 5/05/2025 |
| Richard Windeyer | Deputy Secretary, Commercial Group | Department of Finance | 5/05/2025 |
| Andrew Danks | First Assistant Secretary, Procurement Division | ||
| Grant Lovelock | First Assistant Secretary, Shared Services Division | ||
| Name withheld | Director, ICT Procurement | ||
| Peter Qui | Chief Information Officer | ||
| Name withheld | Director, ICT Contracts and Procurement | ||
| Karl Hartmann | Chief Technology Officer | Australian Prudential Regulatory Agency | 9/05/2025 |
| Eugene Jalba | Chief Financial Officer | ||
| Name withheld | Head of IT Governance | ||
| Justin Keefe | First Assistant Secretary, Digital, Security and Workplace Operations Division | Department of the Prime Minister and Cabinet | 12/05/2025 |
| Chloë Bird | Branch Head, Supply Chain Initiatives | Department of Climate Change, Energy, the Environment and Water | 13/05/2025 |
| Name withheld | Director, Sustainable Procurement | ||
| Name withheld | Assistant Director, Sustainable Procurement | ||
| Abi Bradshaw | Director-General, ASD | Australian Signals Directorate | 14/05/2025 |
| Stephanie Crowe | Head Australian Cyber Security Centre | ||
| Yvette Sims | First Assistant Secretary, Technology and Finance Division | Department of Veterans Affairs | 15/05/2025 |
| Terri Dreyer | Branch Manager, Digital Strategy and Planning | ||
| Doug Pereira | Chief Financial Officer | Intellectual Property (IP) Australia | 20/05/2025 |
| Chris Rathborne | Chief Information Digital Officer | ||
| Steve Moore | Assistant General Manager, Infrastructure & Technology Operations | ||
| Jennifer Hutchinson | General Manager, Governance Group | ||
| Fern Lees | Director Procurement | ||
| Kieran Sloan | Deputy Chief Financial Officer | ||
| Martin Mane | Chief Information Officer | National Disability Insurance Agency | 28/05/2025 |
| Elita Barrett | Branch Manager, Procurement | ||
| Name withheld | Director, Finance | ||
| Name withheld | Director, Procurement | ||
| Name withheld | Director, IT Procurement | ||
| Scott Wallace | Chief Information Officer | Department of Employment and Workplace Relations | 4/06/2025 |
| Frances McNamara | Assistant Secretary, IT Workplace, Environment and Customer Support | ||
| Name withheld | Director | ||
| Name withheld | Director, Procurement |
Note, the Department of Industry, Science and Resources (DISR) were engaged with exclusively in writing.
| Name | Position | Organisation | Date |
|---|---|---|---|
| Name withheld | Chief Negotiation Officer, Commercial and Procurement Branch | Department of Treasury and Finance, South Australia | 15/04/2025 |
| Name withheld | Procurement Lead | ||
| Name withheld | AWS Contract Negotiation Lead | ||
| Name withheld | Executive Director, Capability Sourcing Group | Queensland Government | 1/05/2025 |
| Name withheld | Category Manager | ||
| Name withheld | Category Manager | ||
| Name withheld | Category Manager | ||
| Mark (last name withheld) | Position withheld | United Kingdom Intelligence Community | 4/05/2025 |
| Andrew (last name withheld) | Position withheld | United Kingdom Intelligence Community | 4/05/2025 |
| Clare Martorana | Former Federal Government Chief Information Officer, the White House | United States of America | 5/04/2025 |
| Murray Davey | Deputy Secretary, Digital Services | Internal Affairs and Chief Digital Officer Department, New Zealand | 10/04/2025 |
| Richard Ashworth | General Manager, All of Government Services Delivery | Internal Affairs and Chief Digital Officer Department, New Zealand | 10/04/2025 |
| Scott Jones | President, Canada Shared Services | Canada | 18/04/2025 |
| Name | Position | Organisation | Date |
|---|---|---|---|
| Simon Bush | Chief Executive Officer | Australian Information Industry Association (AIIA) | 15/04/2025 |
| Siew Lee Seow | General Manager of Policy and Media | ||
| Josh Griggs | Chief Executive Officer | Australian Computer Society (ACS) | 16/04/2025 |
| Harry Godber | Head of Policy and Strategy | Tech Council | 22/04/2025 |
| Name | Position | Organisation | Date of first meeting |
|---|---|---|---|
| Wayne Poels | General Manager, Digital Investment Advice and Sourcing | Digital Transformation Agency | 21/03/2025 |
| Nicole Bain | Branch Manager, Whole-of-Government Contract Negotiations | 21/03/2025 | |
| Calan McKay | Director, Whole-of-Government Contract Negotiations | 21/03/2025 | |
| Name withheld | Director, Research | 27/03/2025 | |
| Name withheld | Director, Rimini Street, Oracle, SAP and ERP | 2/04/2025 | |
| Name withheld | Director, Marketplaces and Panels | 3/04/2025 | |
| Lauren Mills | Branch Manager, Strategy and Prioritisation | 3/04/2025 | |
| Name withheld | Director, Digital Sourcing Finance | 3/04/2025 | |
| Chris Fechner | Chief Executive Officer | 7/04/2025 | |
| Name withheld | Director, AWS, IBM and Microsoft | 9/04/2025 | |
| Ben Leech | Branch Manager, Digital Capability Planning | 10/04/2025 | |
| Tom Marwick | Branch Manager, Australian Government Architecture & Policy | 17/04/2025 | |
| Name withheld | Director, Whole-of-Government Contract Negotiations | 26/05/2025 | |
| Name withheld | Director, Whole-of-Government Contract Negotiations | 26/05/2025 |
Various other operational staff within the DTA were also engaged as part of this review.
| Name | Position | Organisation | Date of first meeting |
|---|---|---|---|
| Caroline Atkins | Partner | Maddocks | 4/04/2025 |
| Nick Topfer | Special Counsel | ||
| Brendan Welsh | Partner | Tullius | 3/04/2025 |
Appendix I
Minor | Moderate | Major | Catastrophic | |
| Rare (<1% chance) | Low | Low | Low | Medium |
| Unlikely (<20% chance) | Low | Low | Medium | High |
| Possible (<50% chance) | Low | Medium | High | High |
| Likely (>50% chance) | Medium | Medium | High | Very High |
| Almost certain (>90% chance) | Medium | High | Very High | Very High |
Impact level | Definition |
|---|---|
Minor | Negligible disruption to day-to-day activities, with issues resolved quickly and minimal effort. Insignificant cost implications, well within normal budget tolerances No noticeable effect on the quality or delivery of government services. No changes required to contractual terms and conditions. |
Moderate | Moderate disruption to some business functions, requiring temporary adjustments or workarounds. Manageable financial losses or uncaptured savings that may require reallocating resources but do not compromise overall objectives. Minor service delivery delays / inconvenience, but not long-term. Some changes required to contractual terms and conditions. |
Major | Significant disruption to operations, affecting multiple departments or functions and requiring coordinated remediation efforts. Substantial financial losses or uncaptured savings, necessitating budget adjustments or impacting planned investments. Noticeable degradation in service quality or availability, affecting public satisfaction. Contract entirely unsuitable for use. |
Catastrophic | Severe and widespread operational failure, halting critical services and requiring extensive recovery measures. Devastating financial losses, threatening financial viability or requiring external funding support (e.g. bailouts). Complete interruption of essential services, significantly impacting the community and government reputation. |
Appendix J
16.1 Below is a list of the key artefacts considered throughout the review. It is not a comprehensive list.
| Title | Owner |
|---|---|
| Public Governance, Performance and Accountability Act 2013 | Department of Finance |
| Public Governance, Performance and Accountability Rule 2014 | Department of Finance |
| Competition and Consumer Act 2010 | Several (see legislation) |
| Government Procurement (Judicial Review) Act 2018 | Department of Finance |
| Modern Slavery Act 2018 | Attorney-General's Department |
| Corporations Act 2001 | Department of the Treasury / Australian Securities and Investment Commission |
| Cyber Security Act 2024 | Department of Home Affairs |
| Security of Critical Infrastructure Act 2018 | Department of Home Affairs |
16.2 Note, consideration of legislation was undertaken to identify key gaps if relevant. This review did not audit the compliance of contractual clauses with the requirements of prevailing legislation, nor was any legal advice obtained as part of the review.
| Title | Owner |
|---|---|
| Commonwealth Procurement Rules | Department of Finance |
| Commonwealth Risk Management Policy | Department of Finance |
| APS Net Zero Emissions by 2030 | Department of Finance |
| Commonwealth Australian Industry Participation Plan Policy | Department of Industry, Science and Resources |
| Payment Times Procurement Connected Policy | The Treasury |
| Australian Skills Guarantee Procurement Connected Policy | Department of Employment and Workplace Relations |
| Environmentally Sustainable Procurement Policy | Department of Climate Change, Energy, the Environment and Water |
| Shadow Economy – increasing the integrity of government procurement | The Treasury |
| Indigenous Procurement Policy | National Indigenous Australians Agency |
| Workplace Gender Equality Procurement Principles | Workplace Gender Equality Agency |
| Data and Digital Government Strategy | Australian Government |
| Contract Limits and Reviews Policy | Digital Transformation Agency |
| Consider First Policy | Digital Transformation Agency |
| Panels Policy | Digital Transformation Agency |
| Fair Criteria Policy | Digital Transformation Agency |
| Procurement and Sourcing Policy | Digital Transformation Agency |
| Digital and ICT Reuse Policy | Digital Transformation Agency |
| Digital Service Standard | Digital Transformation Agency |
| Using AI in the Australian Government | Digital Transformation Agency |
| Digital and ICT Investment Oversight Framework (IOF) | Digital Transformation Agency |
| Benefits Management Policy | Digital Transformation Agency |
| Secure Cloud Strategy | Digital Transformation Agency |
| Protective Security Policy Framework | Department of Home Affairs |
| Hosting Certification Framework | Department of Home Affairs |
| 2023-2030 Australian Cyber Security Strategy | Department of Home Affairs |
| Australian Government Information Security Manual | Australian Signals Directorate |
| Australian Privacy Principles | Office of the Australian Information Commissioner |
| APS Reform Agenda | APS Reform Office |
| Title | Owner |
|---|---|
| Single Seller Arrangement Contract: Microsoft | Digital Transformation Agency |
| Single Seller Arrangement Contract: Amazon Web Services | Digital Transformation Agency |
| Single Seller Arrangement Contract: IBM | Digital Transformation Agency |
| Single Seller Arrangement Contract: Rimini Street | Digital Transformation Agency |
| Single Seller Arrangement Contract: Oracle | Digital Transformation Agency |
| Single Seller Arrangement Contract: SAP | Digital Transformation Agency |
| Title | Owner |
|---|---|
| Notification of Significant Events | Department of Finance |
| Standards for digital sourcing | Digital Transformation Agency |
| Buy Australian plan | Department of Finance |
| Australia and New Zealand Government Procurement Agreement | Department of Foreign Affairs and Trade |
| Meeting the Senate Order for Entity Contracts (RMG 403) | Department of Finance |
| Meeting the Senate Order for Consulting Services (RMG 406) | Department of Finance |
| Grants, Procurements and other financial arrangements (RMG 411) | Department of Finance |
| Supplier Pay On-Time or Pay Interest Policy (RMG 417) | Department of Finance |
| Mandatory use of the Commonwealth Contracting Suite for procurement under $200,000 (RMG 420) | Department of Finance |
| Handling complaints under the Government Procurement (Judicial Review) Act 2018 (RMG 422) | Department of Finance |
| Procurement Publishing and Reporting Obligations (RMG 423) | Department of Finance |
| Administrative Arrangements Order - 13 May 2025 | Department of the Prime Minister and Cabinet |
Appendix K
Term | Description |
|---|---|
ABS | Australian Bureau of Statistics |
ACCC | Australian Competition and Consumer Commission |
ACS | Australian Computer Society |
ACS Strategy | Australian Cyber Security Strategy |
ACT | Australian Capital Territory |
AGD | Attorney-General’s Department |
AI | Artificial Intelligence |
APRA | Australian Prudential and Regulatory Authority |
APS | Australian Public Services / Australian Public Servant |
ASD | Australian Signals Directorate |
ATO | Australian Taxation Office |
AUD | Australian Dollars |
AusTender | |
Buyer / buyers | Collective term for any entity who utilises the SSA, which includes Commonwealth agencies, State and Territory agencies, and others (such as universities or local governments) |
BuyICT | |
CAF | Central Administration Fee |
CAIP Plan | Commonwealth Australian Industry Participation Plan |
CAPEX | Capital expenditure |
CCE | Commonwealth Corporate Entity |
CFO | Chief Financial Officer |
CIO | Chief Information Officer |
CMP | Capital Management Plan |
Commonwealth | Means the Australian Government |
COPE | Commonwealth’s Centre of Procurement Excellence |
Cost recovery | Cost recovery is used in the general sense of the phrase and conveys an intention not to generate a surplus. Note, SSA cost recovery is not subject to the Australian Government Cost Recovery Policy per paragraph 6 which omits charges between Commonwealth entities. |
CPRs | Commonwealth Procurement Rules |
CRF | Consolidated Revenue Fund |
CSIRO | Commonwealth Scientific and Industrial Research Organisation |
DCCEEW | Department of Climate Change, Energy, the Environment and Water |
Defence | Department of Defence |
DEWR | Department of Employment and Workplace Relations |
DIPs | Digital Investment Plans |
DISR | Department of Industry, Science and Resources |
DTA | Digital Transformation Agency |
DTO | Digital Transformation Office |
ERP | Enterprise Resource Planning |
EULA | End User Licence Agreement |
Finance | Department of Finance |
GCDO | New Zealand’s Government Chief Digital Officer |
GovERP | An whole of Australian Government ERP project |
GST | Goods and Services Tax |
HCF | Hosting Certification Framework |
Health and Aged Care | Department of Health and Aged Care |
Home Affairs | Department of Home Affairs |
HR | Human Resources |
IaaS | Infrastructure as a Service |
ICT | Information Communications Technology |
IOF | Investment Oversight Framework |
IP Australia | Intellectual Property Australia |
IRAP | Infosec Registered Assessors Program |
ISM | Information Security Manual |
IT | Information Technology |
JSF | F-35 Lightning II Joint Strike Fighter |
MMR | Mandatory Minimum Requirements under the Indigenous Procurement Policy |
myGov | Provides access to a range of government services online |
myID | The Australian Government's Digital ID application |
NCE | Non-corporate Commonwealth Entity as defined under the PGPA Flipchart maintained by the Department of Finance. |
NSW | New South Wales |
NT | Northern Territory |
OPEX | Operating expenditure |
PaaS | Platform as a Service |
PEPPOL | Pan European Public Procurement On-Line |
PGPA | Public Governance, Performance and Accountability |
PGPA Act | Public Governance, Performance and Accountability Act 2013 |
PM&C | Prime Minister and Cabinet |
PPA | Private Pricing Agreement |
Privacy Act | Privacy Act 1988 |
PSPF | Protective Security Policy Framework |
QLD | Queensland |
RACI | Responsible, Accountable, Consult and Inform |
RFQ | Request for Quote |
RMG | Resource Management Guide |
SA | South Australia |
SaaS | Software as a Service |
SES | Senior Executive Service |
SME | Small Medium Enterprise |
SOCI Act | Security of Critical Infrastructure Act 2018 |
SON | Standing Order Number |
SSA | Single Seller Arrangement |
SSA seller | Seller with an SSA with the Australian Government. Currently this is: Microsoft, AWS, Rimini Street, IBM, Oracle and SAP |
SSC | Shared Services Canada |
Stakeholder | Interested parties consulted as part of this review - including government agencies, industry and SSA sellers. |
T&Cs | Terms and conditions |
TAFE | Technical and Further Education |
TAS | Tasmania |
Treasury | Department of the Treasury |
U.S. / USA | United States of America |
UK | United Kingdom |
USD | United States Dollars |
VIC | Victoria |
WA | Western Australia |
Appendix L
18.1 The below outlines the scope of the strategic review of Single Seller Arrangements (SSAs).
This guidance has been designed to complement and strengthen existing frameworks, legislation and practices, enabling agencies to harness AI benefits while maintaining their obligations.
Established governance frameworks provide a strong foundation for AI adoption when supported by appropriate human capability and training. These frameworks enable agencies to confidently expand AI use.
Related AI frameworks are available here digital.gov.au/policy/ai/related-frameworks