Online Privacy Training For Australian Businesses
Online privacy training for Australian businesses often walks through all thirteen Australian Privacy Principles. Most of them are organisational obligations that no frontline employee can act on, and covering them evenly wastes the attention you have.
The ones staff genuinely touch are few.
- Collection. Only collect what is needed for the purpose, and tell the person why you are collecting it.
- Use and disclosure. Use it for the purpose it was collected for, and not for something else because it is convenient.
- Security. Protect it, and dispose of it properly when it is no longer needed.
- Access and correction. Recognise a request when someone makes one, and know who to pass it to.
Cross-border disclosure, governance and policy sit with the organisation. Staff need to know they exist and who owns them, not the detail.
The Office of the Australian Information Commissioner publishes the principles. This is general information rather than legal advice, and obligations vary by state and territory.
See Sentrient’s privacy training course and policy management software.
Employee Privacy Breach | Employer Fined $60,000 | What Can We Learn?
Case Study: A Thursday Morning Nobody Planned For Picture this: it is Thursday morning. The compliance manager at a mid-size Australian organisation arrives at the office, coffee in hand, ready for an ordinary day. By 10 am, three employees are sitting in front of them, visibly upset. What followed was a serious employee privacy breach: […]
