Privacy Policy

PRIVACY

Our collection use and disclosure of your personal information may be subject to the Australian Privacy Act 1988, and accordingly we will only collect personal information about you that relates to your terms of engagement.

In providing our services to you, we utilise an Australian based Private Cloud hosted server protected by robust Multi-Factor Authentication, and emails are secured by industry leading data protection and security, and access to data is secured and can be accessed only by authorised and authenticated members of our organisation.

All data is managed through RBAC (Role-based access control) methods, which means that fine-grained controls are in place over who can access, edit and share content through the use of Owner, Member and Visitor roles, each with varying levels of access.

Data in  subject to extensive data protection and compliance policies, including;

· Data encryption: Robust encryption mechanisms to protect data both when it’s stored in data centres (at rest) and when it’s being transmitted over the network (in transit).

· In-transit encryption: All data transferred between clients and servers is encrypted using Secure Socket Layer (SSL) or Transport Layer Security (TLS).

· At-rest encryption: Stored data is protected with Advanced Encryption Standard (AES) and unique encryption keys.

· Data loss prevention (DLP): Organisations can create DLP policies that automatically scan documents and emails for sensitive information, such as credit card numbers or Social Security numbers, and enforce actions to prevent unauthorised sharing.

· Customer key management: Encryption keys are managed through a highly secured vault, which is a dedicated key management service. This feature allows our organisation to retain control over encryption keys, enhancing security and provides an additional layer of data protection.

· Sensitivity labels and policies: Sensitivity labels serve to classify content based on its sensitivity level. Labels available include “confidential”, “internal use” or “public”. Labels can trigger specific actions, such as encryption or restricted sharing, to ensure that sensitive content is handled appropriately. This feature assists in complying with data protection regulations like GDPR.

We will not disclose any information relating to your affairs to any third party without your consent, unless required by law. You may provide us with permission to disclose your confidential information in certain circumstances, or place conditions on the disclosure of certain confidential information. If you do so, we will have permission to disclose the relevant information accordingly and as outlined in the IPA Australia Privacy Policy and the member collection notice, in the performance of our services, unless you instruct us otherwise in writing.

Google ReCAPTCHA

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.