The OAIC’s latest Notifiable Data Breaches Report (Jul – Dec 2023) reveals the risk for organisations that outsource the handling of personal information to third party service providers and contractors – as well as risks of retaining personal information for longer than needed. In this Update we review the OAIC’s latest findings and provide guidance on steps an organisation can take to minimise risk and harm and to protect confidential information/data.
Read more
Under Australian Privacy Law, organisations that hold Personal Information must take reasonable steps to destroy or de-identify personal information that the entity no longer needs – or face risks of incurring high penalties and reputational damage. An effective Data Retention and Destruction Policy provides an entity with a clear roadmap to ensure compliance with its obligations at law.
Read more
During the period of 2016 to July 2024, the awards for compensation for privacy breaches in Determinations made and published by the Australian Information and Privacy Commissioner (OAIC) have ranged from about $1,000 to $20,000. In this update, Stephens Lawyers & Consultants provides a review of the OAIC Determinations and compensation awards for privacy breaches made during the period October 2022 to July 2024 – and factors taken into account by the OAIC in making those awards.
Read more
Digital economy including digital platforms and on-line market-places continue to be compliance and enforcement priorities for regulators in Australia – including ACCC, ASIC and OAIC. This update provides a review of recent Australian technology cases and ensuing compliance and risk management issues.
Read more
Malicious or criminal attacks and human error continue to be the major causes of notifiable data breaches reported to the OAIC during the 6 month period to 30 June 2023 according to the OAIC Notifiable Data Breaches Report – January-June 2023. This Update provides a summary of some key findings and statistics contained in the OAIC’s Report as well as steps which organisations and businesses can take to minimise the risk and harm of privacy data breaches.
Read more