Training AI With Personal Information – Important Considerations
There was a flurry of activity about the training of large language models in Europe...
There was a flurry of activity about the training of large language models in Europe...
Late last year, our team got together to discuss the privacy happenings in 2024 and...
The Digital Personal Data Protection Act, 2023 (DPDPA) – India’s new, comprehensive privacy law -...
In November 2024, the International Association of Privacy Professionals (IAPP) published its annual Privacy Governance...
As 2024 draws to a close, our team got together to reflect on the state...
This week, Meta (Facebook) and OAIC announced they had agreed to an enforceable undertaking (EU),...
Organisation-wide privacy training should be a no-brainer: it’s in the top messages from all regulators...
In October 2024, the Office of the Australian Information Commissioner (OAIC) released two significant guides...
Combining CCTV with facial recognition technology is a new-ish technology that has slipped under the...
In 2023, Brian Hood (an Australian mayor) made headlines for what was going to be...
If you’re curious about the status of the first tranche of Privacy Act reforms, here’s...
The privacy issues associated with the use of cookies in Australia has arguably been unclear...
In October 2024, Australia’s OAIC released updated privacy guidance for charities and other not-for-profit organisations. This...
You’ve worked there before. The company where you get cupcakes every time it’s someone’s birthday,...
The last ten days of September were tough for Australia’s largest medical imaging provider, I-MED....
Draft new cyber security bills were released this month. The purpose of the new laws...
On Thursday 12 September 2024, the Privacy and Other Legislation Amendment Bill 2024 (Bill) was...
The January to June 2024 Data Breach Report from the Office of the Australian Information...
After nearly five years of discussion, the much-anticipated Privacy Act changes were introduced into Parliament...
Human error data breaches through email are extremely common. The convenience, familiarity, and relative informality...
The Australian Federal Government announced in September 2024 that it will release ten mandatory AI...
We all know about hoarders – but what about data hoarders? Is it a ‘thing’...
Employee records of current or former private sector employees are exempt from the Australian Privacy...
On July 19, 2024, we saw a major global IT outage caused by a faulty...
Understanding and managing your data is becoming a fundamental piece of any privacy compliance program....
The last few years have seen a shift from data being the new oil to...
Data brokers play a significant (and extremely personal information-intensive) role in Australia’s business ecosystem. However,...
ISO 29100 Privacy Framework is a standard all privacy practitioners should be aware of. Substantially...
If you’re taking the CIPP/E or just interested in how European and EU data protection...
Australia’s Privacy Awareness Week wrapped up on 12 May, but the components of its theme,...
We’ve analysed two determinations from the Australian Information Commissioner relating to data breach reporting and...
We’ve prepared this guide for personnel who engage in direct marketing activities, particularly those who...
What will the proposed changes to Australia’s Privacy Act mean for transparency? For Privacy Awareness Week...
For Privacy Awareness Week 2024 (from 6-12 May 2024), organisations are being asked to 'power...
Australia’s privacy law landscape doesn’t grant the same rights individuals resident in the EU and...
We recently published our comprehensive guide to managing vendor privacy risk in 2024. The 17-page ebook...
You know you need to do it, but the data minimization project is overwhelming. You...
Things are changing quickly in cybersecurity regulation in Europe. Here’s a list of the existing...
Privacy Impact Assessments are a powerful and often overlooked tool. They’re a compliance requirement, in...
As the end of 2023 approaches (thank goodness say some!), let’s reflect on some of...
ISACA’s 2023 Privacy in Practice report included a list of the most common privacy failures...
Third-party vendor management extends far beyond the initial signing of your contract. It’s an ongoing...
In February 2023, a hacker used an SMS phishing scheme on a HR employee in...
Optus has lost a bid in the Australian federal court to keep secret a Deloitte...
In November 2023, the Office of the Australian Information Commissioner (OAIC) announced the commencement of...
Queensland looks to join NSW as the only other Australian state with a mandatory data...
Privacy for technologists is a rapidly developing field. The IAPP’s CIPT Body of Knowledge has...
Data catalogues provide a unified and searchable view of an organisation’s data and data sources....
Changes to the Privacy Act changes have been been flagged in the Australian Government’s response...
In July 2023, the Australian Federal Court ordered two subsidiaries of social media giant Meta...
Key Findings in the OAIC’s Data Breach Report: January – June 2023 Some of the most...
Passwords are probably the most well-known account security feature that exists today. But they’re problematic....
Earlier this year, news broke about a third-party data breach that impacted the personal information...
Preparing for managing customer complaints after a privacy breach is a critical step in your...
Privacy skills are in demand. And as the demand grows and the privacy industry matures,...
Interested in what Australians think about privacy, use of AI and facial recognition and the...
Following the highly-publicised ban of TikTok on government devices, Australians are starting to pay more...
Victoria's privacy watchdog, the Office of the Victorian Information Commissioner (OVIC), released a report into how...
It’s rare for an organization to not use at least one third party – whether...
The HWL Ebsworth data breach has sent shivers down the spine of every professional consulting...
The OAIC are again investigating the Australian Federal Police over AI surveillance concerns, this time...
Regulating AI has been on the agenda globally for some time, amid growing concern over...
After three years of limbo, personal data can flow from the EU to companies in...
In May, hundreds of AI experts warned that AI (if left unchecked) could pose an...
In Australia, privacy protections don't apply once you're dead. What do Kylie Minogue, John Lennon, Madge...
What do these scenarios have in common? Images of a woman sitting on a toilet...
The Organisation for Economic Co-operation and Development (OECD) published a report on privacy enhancing technologies...
ChatGPT promises to revolutionise the way we write and work. In late May, Thomson Reuters...
Sending unsolicited emails, or spam, can not only damage your organisation’s reputation but also land...
This month the Commonwealth Attorney-General, Mark Dreyfus, announced that a stand-alone Australian Privacy Commissioner will...
Dark patterns is a subject close to our heart. We’ve written about them before, including: Dark...
In February 2023, the Australian Attorney-General released its Privacy Act Review Report 2022 and we...
In the spirit of Privacy Awareness Week 2023, we are sharing 3 tips to safeguard...
Privacy Awareness Week 2023 runs from May 1 to May 7. To build on this...
We’ll continue our deep dive into Australia’s Privacy Act Review report in this article. We...
Privacy Awareness Week 2023 is May 1 to 7, 2023. This year the theme is...
We’re continuing our deep dive into the Privacy Act Review Report. You can read our...
Organisations covered by the Australian Privacy Act must provide access to the personal information the...
Australian financial services provider, Latitude Financial, has announced that it has suffered a data breach...
Differential privacy is a formal mathematical definition of privacy. At its core, implementing differential privacy...
The importance of organisational data is growing each year. And today, a data management strategy...
Key Findings in the OAIC’s Data Breach Report: July – December 2022 The OAIC highlighted the...
An accurate and up-to-date data inventory is the basis of any privacy program. And with...
When a potential hire sends you their CV, you will likely collect their personal information....
In January 2022, Austria became the first EU country to state that the continuous use...
Around 400 parents of current and former Mount Lilydale Mercy students were recently alerted to...
The widespread information about website requirements for organisations covered by the GDPR and California Privacy...
Can you record conversations in Australia? This is the most common question we get asked...
ISO is set to launch a new privacy standard in February: ISO 31700 Privacy by...
DNA testing – should we care? You may have seen The Lost King, a fascinating film...
The recent ACCC v Google LLC decision provides useful advice. Google recently defeated an action by...
Big data offers huge benefits: it improves human life with new medical and health solutions...
TechCrunch recently released its list of the most badly handled data breaches in 2022. Surprisingly...
A free online webinar on February 8th 2023 by Dr Andelka M. Phillips - Senior...
Biometrics technologies have been developed to help employers accurately track employee attendance and hours, track...
The OAIC’s latest reporting shows that 33% of human error data breaches in Australia are...
Call centres are hotbeds for the collection – and theft and misuse - of personal...
The CPRA (California Privacy Rights Act) is set to change the face of privacy in...
The increase in data breaches has highlighted that organisations are holding onto data, a lot...
It has been some time since we covered data flows between the EU and US....
The days of board directors delegating oversight of cybersecurity to department managers are long behind...
With Optus and Medibank data breaches affecting over 10 million Australians, many have pointed to...
Biometric technologies have been making their way into schools for years. It's not uncommon for...
While million-dollar fines are commonplace in Europe, the $1.2million settlement following the Sephora Enforcement Action...
Email marketing can be exceptionally effective – but engaging in it is also rife with...
There has been a great deal of backlash in the wake of the Optus data...
The Optus data breach has exposed how harmful a cyber incident can be. Many are...
Using privacy by design to bake privacy in early is becoming a must. The benefits...
Dr Jodie Siganto was one of the privacy and security experts interviewed by the ABC...
In September 2022 the Commonwealth Ombudsman reported a major spike in surveillance involving telco metadata...
Roe v Wade, the US Supreme Court case which protected the right to abortion for...
Key takeaways: Employee photos may be personal information for the purposes of the Privacy Act,...
Privacy has been in the headlines recently following the CHOICE investigation into the use of...
Email marketing is remarkably effective. In its 2021 Email Marketing ROI Statistics report Barilliance cites the average return-on-investment...
Like many countries Australia has an AI ethical framework. But how influential will it be...
One of the most common privacy questions is: are work email addresses considered personal information...
Small businesses[1] are largely exempt from the Australian Privacy Act 1988 (Cth) and this is...
The Office of the Australian Information Commissioner (OAIC) recently released its Notifiable Data Breaches Report: January...
ISO 27701 provides guidance on the protection of privacy, including how organizations should manage personal...
Privacy is an exciting field that’s attracting plenty of attention in the media. It’s an...
The Privacy 108 team has reviewed OAIC determinations published since 1 November 2010 and identified...
Data mapping is one of the most critical steps in any privacy program. Maintaining a...
Rushed, imprecise and unlikely to be enforced? And most importantly, why? In November 2020, the Australian...
Australian federal law enforcement agencies can now alter online data and take over on-line accounts....
Ransomware in Australia is on the rise! As a result, regulators are paying more and...
Google Trends tells us there has been a slow and steady increase in interest in...
The Woolworths Group have updated their Privacy Policy. The new policy is good but could...
In June, Swedish furniture chain IKEA was ordered to pay a fine of 1 million...
Flight Centre, Australia’s largest travel agency suffered a data breach affecting nearly 7,000 customers, as...
Today, there’s no such thing as the ‘ideal background’ for a privacy professional. Privacy is...
Privacy 108’s analysis of Australian privacy jobs advertised in September 2022 is now available. Main Findings...
Privacy 108’s analysis of Australian privacy jobs advertised in June 2022 is now available. Main Findings...
Thinking of taking the iapp CIPP/E exam but not sure how to prepare or whether...
Privacy Awareness Week 2022 runs from 2-8 May. To highlight this year’s theme: Privacy –...
In 2019, we reported on three (3) Australian data breach class actions. Nearly 2 years...
5 practical tips on CIPP/E exam prep for anyone thinking of taking the exam. What is...
Australia has a patchwork of state laws that cover listening devices and the surveillance of...
Cookies, aggregated data, dark patterns, and ransomware are just a few of thousands of privacy-related...
Organisations are getting used to the extraterritorial scope of privacy laws enacted in other countries,...
Compliance with Australia’s Privacy Principles is non-negotiable for organisations covered by Australia’s privacy laws (APP...
Canada appears to be looking to update and strengthen its digital privacy with the introduction...
Queensland is updating its Information Privacy and Right to Information Framework, with a consultation paper...
The American Data Privacy and Protection Act (ADPPA) is making its way through the US...
The ISACA updates the content of its curriculum and exams around every five years. The...
The frequency of ransomware attacks is rising, as is the average cost of a privacy...
The Australian Competition and Consumer Commission (ACCC) has proposed a “three-pronged approach” to ensure Australia...
Thailand enacted its comprehensive privacy law on 28 May 2019. After giving covered organisations three...
Dark patterns regulation has emerged as a focus in both the US and EU over...
Privacy breaches and enforcement in Europe, the US, and Australia garner much media attention in...
Privacy 108’s analysis of Australian privacy jobs advertised in March 2022 is now available. Main Findings...
The penalties for sending unsolicited (or spam) marketing emails in Australia can be severe –...
We revealed in our December 2021 Privacy Jobs Report that larger organisations are increasingly implementing...
In a world where there’s no cookie cutter template to privacy, companies are hungry for...
Europe’s landmark General Data Protection Regulations (GDPR) came into effect (just over) 4 years on...
"Distrust is now society’s default emotion”. This is the no. 1 Takeaway from the 2022...
Under Australian law, organisations are required to notify the Office of the Australian Information Commissioner...
The Whitehouse and EU Commission announced the impending arrival of Privacy Shield 2.0 on 25...
The EU General Data Protection Regulation (GDPR) requires certain organisations to appoint a data protection...
Australia’s Privacy Act 1988 requires APP entities to have a clear and up-to-date privacy policy...
China’s privacy law, the Personal Information Protection Law (PIPL), came into effect on November 1,...
On January 19, the International Committee of the Red Cross (ICRC) published a press release...
Results from our 2021 Privacy Professional Survey are now available. Thank you to everyone who...
EU privacy regulators last year levied fines totalling more than €1 billion for GDPR breaches,...
Privacy 108 has submitted its response to the Privacy Act Review Discussion Paper. You can...
Privacy 108’s analysis of Australian privacy jobs advertised in December 2021 is now available. Main Findings...
The Privacy Act Discussion Paper, the latest stage in the comprehensive review of Australia's Privacy ...
The World Economic Forum (WEF) recently released an article about “How to overcome mistrust of...
As the new year approaches, it’s time to consider your resolutions for 2022. Business owners...
Many Australian organisations have suffered the double whammy of being caught by the extra territorial...
In October 2021, the Australian Attorney-General's Department issued a discussion paper seeking further submissions on...
In 2019 we ran our first Australian Privacy Professionals Survey. Time has flown and the privacy...
While not as well-publicised as greenwashing, consumers and regulators are becoming more aware of the...
Working out how to get hired in a field that is relatively new and constantly...
Privacy 108’s analysis of Australian privacy jobs advertised in September 2021 is now available. Main Findings...
How are Cookie laws changing in APAC? We recently covered the move away from the use...
Accessing data for potentially unauthorised purposes has been hitting headlines recently as various state police...
In July 2021, the Australian Privacy Commissioner issued a determination relating to Uber’s well publicised...
Interested in becoming a privacy consultant? Not sure what experience is required or what you...
The repeal of the Old SCCs is just around the corner – on 27 September...
The world of on-line cookies is changing with regulators making their use more difficult, browsers...
If you follow our blog posts, you may have noticed a theme emerging over the...
Another piece is added to the jigsaw of China’s privacy and security laws. The Personal...
Privacy 108’s analysis of Australian privacy jobs advertised in June 2021 is now available. Main Findings...
The constantly changing global privacy landscape may seem overwhelming. More jurisdictions are enacting increasingly robust...
More organisations are looking at automated solutions to support the efficient management of their privacy...
We’re seeing more and more Australian employers seeking privacy professionals with relevant certifications. As more...
China has released a new Data Security Law that adds to the existing web of...
Artificial intelligence (AI) is transforming the world in many aspects. Many countries are considering how...
From July 1, 2021 the CIPP/E body of knowledge and exam will be updated. The changes...
Privacy impact assessments are an underutilised tool that organisations can use to enhance data protection...
On 4 June, the European Commission (EC) published its finalised version of the new Standard...
Last year, Services NSW suffered data breaches that exposed the personal information of more than...
Was privacy a winner in the 2021 Federal budget? Not really …. Unless you think...
Domain 1 questions are the most challenging for the respondents to our on-line CIPP/E. Do you...
The ACCC has successfully argued that Google engaged in misleading and deceptive conduct in a world-first enforcement proceeding....
Global privacy law is undergoing massive change. Different countries are trying to keep up with...
Privacy Awareness Week (PAW) takes place in the first week of May each year. This...
Our earlier article about Flight Centre’s 2017 privacy breach and OAIC investigation received quite a bit of...
In November 2020, the OAIC released its report into Healthscope’s security and privacy processes. According...
The safety of digital files in transit was recently thrown into the spotlight by the Accellion...
Brisbane based Cryptoloc's innovative encryption process may be the supplementary measure your business needs to...
The OAIC 2020 Highlights Infographic gives us plenty of information about the direction of privacy...
ASIC's action against RI Advice Group might be Australia's first cyber security case. On 21 August...
The age-old idiom “less is more” is gaining traction in the privacy sphere. Data minimisation...
The EU Commission’s draft opinion favours recognising UK as an adequate jurisdiction for data transfers,...
In January, WhatsApp users received a popup outlining that they’d need to agree to the new terms...
If you’re reading this, you likely already know that the CIPP/E is the IAPP's European...
Summary of Key Findings in our analysis of job trends for Australian Privacy Professionals: Sydney...
Privacy is experiencing rapid growth around the world. With change looming following the review of the...
In November 2020, the Australian Federal Government commenced its latest review of the Privacy Act...
Following the drama of the Schrems II decision, the EDPB has issued new draft SCC’s...
Interested in GDPR training? We’ve found some of the best FREE on-line resources for you. Selecting...
What can we learn from the HealthEngine case? Is the ACCC taking over from the...
This report outlines trends from our analysis of advertised privacy jobs between December 2018 and...
The OAIC has been busy, releasing eight Determinations between June and September 2020[1]. Given this...
A recent determination from the OAIC (Office of the Australian Information Commissioner) sheds a little...
Our research shows little consistency in titles for advertised privacy jobs in Australia. You can...
Most Australian privacy and security practitioners recognise the growing importance of data protection and the...
Are employers responsible for their employees' data breaches? A recent decision in the UK might allay...
A gap between privacy and security means it’s currently harder for organisations to implement a...
On 26 June 2020, the NZ Parliament passed a bill reforming the nation's privacy law,...
How does Australia’s COVIDSafe App stack up from a privacy perspective? Introduction For most, the exit strategy...
Given the uncertainty about the right to sue for breach of privacy in Australia, introduction...
Test, track and trace is becoming the universal strategy to support a move out of...
There’s a buzz around privacy and privacy jobs. As privacy trainers and consultants, we are...
Privacy concerns outstrip investment A new survey suggests that Australian organisations’ investment in privacy risk and...
Listen to SecureCIO Podcast with Dr Jodie Siganto talking about privacy jobs As a keen observer...
Australian Privacy Jobs Report This report outlines the trends from our analysis of privacy jobs advertised...