Notifiable Data Breaches scheme

Notifiable Data Breaches scheme starts 22 Feb 2018

Robust data security was legislated in Australia under the Privacy Amendment (Notifiable Data Breaches) Act 2017, which makes it mandatory for businesses to report eligible data breaches from 22 February 2018.

Under the Notifiable Data Breaches (NDB) scheme, businesses need to notify individuals and the Australian Privacy Commissioner in the case of eligible data breaches which are likely to result in serious harm to the individual.

The new requirements not only affect IT and cloud computing, but also social media and mobile device usage.

Not all data breaches are eligible.

For example, if an entity acts quickly to remediate a data breach, and as a result of this action the data breach is not likely to result in serious harm, there is no notification requirement. If 20,000 people are affected by a data breach in a minor way, with no serious harm, this also would not be captured under the legislation.

Finally, each business needs to ensure that it is constantly addressing its own compliance needs, and monitoring changes to legislation. This means the business must keep its strategy for using IT current, and ensure that arrangements with service providers address regularly changing business compliance issues.

For more guidance on what constitutes an eligible data breach, what serious harm means and the notification process download CPA Australia’s IT checklist for small business (PDF) or call the team at Omnis Group in Perth on 08 9380 3555.

Related reading: What a data breach means to your business

Source CPA Australia

Justin Flavel

Managing Director

Justin’s experience spans across 20 years in accounting, financial analysis and general business practice.

Although born and bred on the land, Justin’s interest was more in spreadsheets, ledgers, and finance which led him to attend university. In 1992, Justin graduated with a Bachelor of Business majoring in Accounting and Finance. As well as qualifying as a CPA member and becoming a Fellow of the Taxation Institute of Australia, he began gaining practical experience in small and mid-tier accounting practices.

During the late 90s, Justin decided to expand his horizons and travel through Europe. It was during this time that he seized the opportunity to expand his knowledge on the workings of large organisations by taking on roles in multinational corporations.

Today, Justin’s passion is in facilitating businesses to grow and evolve. His focus is on acting in the role of business mentor to help clients develop the full potential of their businesses. He joins clients on their unique journey, and provides the tools and knowledge they need along the way to make the right decisions.

Justin’s aim for his clients parallels his own philosophy and personal journey—focusing on his own career growth and business success while maintaining balance in his life with his wife and three daughters.

Omnis Group Managing Director - Justin Flavel