What information privacy principles have been breached

Assignment Help HR Management
Reference no: EM133330404

CASE STUDY: PRACTICAL APPLICATIONS OF AN INFORMATION PRIVACY PLAN

XYZ University is a medium-sized tertiary education provider in the state of Queensland, Australia. In undertaking its normal business of teaching, learning, and research, the university collects, stores, and uses "personal information," that is, anything that identifies a person's identity.

With respect to students, this information may include, among other things, records relating to admission, enrollment, course attendance, assessment, and grades; medical records; details of student fees, fines, levies, and payments, including bank details; tax file numbers and declaration forms; student personal history files; qualifications information; completed questionnaire and survey forms; records relating to personal welfare, health, equity, counseling, student and graduate employment, or other support matters; records relating to academic references; and records relating to discipline matters.

The bulk of this information is retained in the student management information systems and in the file registry. Academic and administrative staff, at various levels, have access to these records only as required to carry out their duties. Portions of the information held in university student records are disclosed outside the university to various agencies, such as the Australian Taxation Office; the Department of Education, Employment and Workplace Relations; other universities; consultant student services providers; the Department of Immigration and Citizenship; and overseas sponsorship agencies.

The university has a well-documented information privacy policy in accordance with the community standard for the collection, storage, use, and disclosure of personal information by public agencies in Queensland. The policy relies on the 11 principles developed in the Commonwealth Privacy Act of 1988. These principles broadly state the following:

Personal information is collected and used only for a lawful purpose that is directly related to the collector's function.
Before the information is collected, the individual concerned should be made aware of the purpose, whether it is required by law, and to whom the information will be passed on.
Files containing personal information should be held securely and protected against loss; unauthorized access, use, modification, or disclosure; or any other misuse.
Personal information can only be disclosed to another person or agency if the person concerned is aware of it and has consented and the disclosure is authorized or required by law.
Personal information should not be used without taking reasonable steps to ensure that it is accurate, up to date, and complete.
Presented next are three scenarios in which you need to decide how to apply the privacy policy and principles. The following scenarios were sourced from the Griffith University Privacy Plan (https://www.griffith.edu.au/about-griffith/corporate-governance/plans-publications/griffith-university-privacy-plan). As you consider the following three scenarios, use these principles to help you answer the case study questions.

Scenario 1
Roger, a photocopier technician, has been asked to repair an office photocopier that just broke down while someone was copying a grievance matter against an employee of the agency. The officer who was copying the file takes the opportunity to grab a cup of coffee and leaves Roger in the photocopy room while the photocopier cools down. While waiting, Roger flips through the file and realizes that the person against whom the grievance was made lives on the same street as he does.

Scenario 2
Tom telephones a student at home about attending a misconduct hearing. The student is not at home; however, the student's partner, Christine, answers the phone. She states that she knows all about the misconduct hearing but asks for clarification of the allegations. When pressed, Tom provides further details. Tom feels comfortable about providing this information to Christine because she is the student's partner, and she has already told Tom that she knows all about her partner's misconduct hearing.

Scenario 3
Brad works in a student administration center, and Janet is a student. They know each other, as they used to attend the same high school. Occasionally, they get together at the university to have coffee and chat about mutual friends. Brad knows that Janet's birthday is coming up because Janet happened to mention that she'll be another year older in the near future. Brad decides to access the student information system to find out Janet's date of birth and home address. A few weeks later, Janet receives a birthday card from Brad sent to her home address.

Case Study Questions
With regard to the above scenarios, you need to decide

1. what information privacy principles (IPPs) have been breached,
2. how, and
3. what you would do to address the situation.

Reference no: EM133330404

Questions Cloud

Provide examples of three security safeguards and explain : Provide examples of three security safeguards and explain how they would help decrease the likelihood of this type of incident occurring in the future.
How many independent variables are there : PSY 3213 University of South Florida Dr. Elder also is curious as to whether categorization happens similarly for children as it does for adults.
Do you have the right to make an arrest : Do you have the right to make an arrest? (If no, explain why and what you would do. how those got there! You have no right to search me. Get out of my way.
Read the articles about maxwell frost a great young us : What did it make you think of? Are you comfortable knowing that the people who represent us are rarely ever young, lower-income folks? Why?
What information privacy principles have been breached : what information privacy principles (IPPs) have been breached, 2. how, and 3. what you would do to address the situation.
How is human resource management department : How is human resource management department involved in the following: 1- Labour relations 2- Employee relations
Explain the rivalry between church and state : Include some discussion of who "won" and why or how. Also include some discussion on the social impact this conflict caused.
Should be. participation is rated on a 10-point scale : should be. Participation is rated on a 10-point scale relating to contributions to the forum. This is NOT just about quantity, it is about quality - so simply
What are the strategies sbs transit ltd has implemented : What are the strategies SBS Transit Ltd has implemented for an age inclusive workplace? How have these strategies contributed to organisational performance

Reviews

Write a Review

HR Management Questions & Answers

  Improve problem solving capabilities within organization

Types of teams as to their effectiveness that will improve problem solving capabilities within organizations.

  Influence tactics help in reducing organizations politics

Explain the different types of influence tactics that will be of a help “if adopted” in reducing the organizational politics.

  Report on citigroup''s hr service level agreement

Human Resources or Human Resource Management deals with HR Service Level Agreement. HR Service Level Agreement is an agreement made between the employer and the employee, which states that the employee would work under any client and sometimes any ti..

  A project report on hrm

Human Resource Management as the name suggests, it is a management discipline which deals with the human i.e. the workforce aspect of organizations. Need and practices of HRM are inevitable in present scenario of extreme competition where "Talent War..

  Hrp: recruitment and selection

Recruitment and Selection is the initial ladder of any Human Resource Planning process and contains an immense significance for any organisation.

  A project report on study of statutory complainces

Statutory compliance and its immense knowledge are crucial to be understood in an organization. It contains all the forms, procedures and acts applicable in a company.

  Operant conditioning and Reinforcement

Operant conditioning is a learning process where behaviour is controlled by its consequences. In this process an individual's behaviour can be modified through the use of positive or negative reinforcement.

  Effectiveness of training programs in achieving customers an

The main motive for conducting this research is to provide broad range of research of the literature and their reviews related to training and development and assisting the employees in providing customers satisfaction.

  A critical analysis of hr processes and practices in fedex c

FedEx is illustrious for its novel HR processes and practices that have greatly accounted for its success.

  Integrating culture and diversity in decision making

People in the organization are known as Google where they share common goals and have common vision.

  Impact of employee attrition on people management in organis

Talent management implies recognizing a person's inherent skills, traits, personality and offering him a matching job.

  Labour dissonance at maruti suzuki india limited: a case stu

This Case Study focuses on various issues related to Labour Unrest at Maruti Suzuki India Limited.

Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd