Helios Salinger

  • About
    • About Salinger Privacy – now Helios Salinger
    • Meet our team
    • Work with us
    • Videos, Podcasts and Media Mentions
    • Privacy Awareness Week
  • Consulting
    • Overview – Our Consulting Services
    • Privacy Impact Assessment
    • Privacy Maturity Assessment
    • Privacy by Design advice
    • Privacy Compliance and Gap Analysis
    • Algorithmic Impact Assessment
    • Re-identification Risk Assessment
    • Data ethics
    • Privacy Helpdesk
  • Training
    • Overview – Our Training Services
    • Privacy Compliance Training
    • Privacy Professionals Training
    • All Online Modules
    • Training Calendar
    • Public Courses and Workshops
    • In-house Privacy Training and Workshops
    • Webinars
    • IAPP Certifications
    • Training Advisory Services
    • Login
  • Resources
    • Overview – Our Resources
    • THE PRIVACY PULSE
    • Privacy Act Reforms
    • Compliance Kits
    • Resources on key privacy topics
    • Free Handbook
    • Newsletter
    • Login
  • Case Study
  • Blog
  • Calendar
  • Contact
  • Compliance Kits
    • For Business & Non-profits
    • For Peak Bodies
    • For Australian Government
    • For NSW Public Sector
    • For VIC Public Sector
    • For QLD Public Sector
    • For WA Public Sector
    • Login

The Tribunal is curious: is your privacy program up to scratch?

January 29, 2015, Anna Johnston

Does your organisation have a program to train staff about their privacy obligations?  Have you identified technical or procedural ways to minimise the risk of privacy breaches such as unauthorised access to records?

If you can’t point to demonstrable and proactive steps you have taken to prevent privacy breaches, your organisation could be found in breach of the Data Security principle.  That’s the takeaway message from a recent case involving WorkCover NSW.

In a case involving the internal circulation and storage of a complainant’s psychiatric report, the NSW Civil & Administrative Tribunal was unimpressed with the ‘passwords and access cards’ security safeguards as described by WorkCover, and found the government agency in breach of Health Privacy Principle 5, the Data Security principle in the Health Records & Information Privacy Act 2002 (NSW).  The Tribunal instead articulated a number of steps which together it would have considered ‘reasonable safeguards’ to protect health information, including tracking read-only access to electronic files, procedures to restrict access to particularly sensitive types of information, and a program of repeatable staff training about privacy obligations.

One way to quickly implement an enterprise-wide privacy compliance training program is to use e-learning.  E-learning offers your staff flexibility of timing, and you could adopt a requirement for staff to repeat the course every few years, without any incurring additional cost.

We have recently refreshed our Privacy E-learning Program, updating both the style and the content.  We now include more interactions to focus the learner’s attention, and we have streamlined the product development process – which means the cost for you has come down too!

Unique amongst privacy compliance training providers, we customise both the style and content of our Privacy E-learning Program, to meet our clients’ needs.  So if you choose Salinger Privacy for your compliance training needs, you can quickly roll-out privacy awareness training across your organisation, knowing that it reflects your branding and the privacy law that actually applies to you – not some generic version.

Our customisation also includes particular privacy messages and tips, that we design in consultation with you, to ensure that they are relevant for your staff.  Take a look at our Demo module, or see more information here.

 

Photograph © Shutterstock

Filed Under: Uncategorized

If you enjoyed this blog, subscribe to our newsletter to receive more privacy insights and news every month.

Privacy Compliance Kits

Recent Posts

  • Tick and flick: what ’I agree’ really means to Australians in 2026
  • Inching towards individuation: OAIC decision on pixels broadens scope of the Privacy Act
  • How dark patterns can land you in hot water: new case offers lessons for all
  • How to sniff out the landmines that can ruin your AI project
  • Privacy reforms to impact over 100,000 small businesses
  • The view from the summit: trust and hope, caution and concern, and plenty of hard work
  • Is identifiability in the eye of the beholder?  EU case tests limits of pseudonymisation
  • Mind the gap: when legal permission is not enough to ensure compliance
  • Why “Don’t worry it’s de-identified” should (still) be a red flag when considering privacy risk
  • How to get ahead of the new ADM rules before they rule you

Archive

  • 2026
  • 2025
  • 2024
  • 2023
  • 2022
  • 2021
  • 2020
  • 2019
  • 2018
  • 2017
  • 2016
  • 2015

Search

Helios Salinger can help you navigate the complexity of the regulatory environment, and ensure the trust of your customers.

CONTACT US

T: 02 9043 2632
Level 37, 180 George Street
Sydney NSW 2000
Email Enquiry

© Helios Salinger Pty Ltd
ACN 655 748 593
ABN 59 655 748 593

Our Privacy Policy

Terms of Engagement

Subscribe to our newsletter.

These details will be added to our mailing list to receive the Helios Salinger eNews and Product News newsletters. You can unsubscribe or adjust your preferences at any time, from the bottom of any newsletter.