Chapter 9: Law Flashcards
What is the Privacy Act (1988)?
Sets out the ways in which organisations collect, use, or distribute personal data. FEDERAL.
Who does the privacy act apply to?
1) Government organisations
2) Local councils
3) Any organisation that is contracted to a government organisation
Which organisations is the act mandatory for?
1) Organisations under a government contract
2) Organisations with a turnover over 3 million a year
3) Organisations that store medical information
4) Organisations that sell or distribute personal information
APP1) Open and transparent management of personal data
Data needs to be managed in an open and transparent way
APP 2) Anonymity and Pseudonymity
While making enquiries/complaints, individuals have the option of not identifying themselves
APP 3) Collection of Solicited personal information
An organisation must not collect personal information UNLESS the information is required, sensitive information must be collected with the users consent
APP4) Dealing with UNsolicited personal information
What the organisation must do with information they didnt ask for. They must determine whether they are permitted to collect it, if not then it should be immediately de-identified
APP5) Notification of the collection of personal information
An organisation must make the individual aware at the time or ASAP after collecting their personal information. Theyre also required to notify them of the privacy policy
APP6) Use & Disclosure of personal information
An organisation must only use or disclose information for the purpose for it was originally collected for