Privacy Policy
1. Purpose of this Policy
1.1 The purpose of this Privacy Policy is to let you know what kind of information Attain Healthtech Pty Ltd (ACN 655 851 755) (‘Attain Healthtech’) and our Related Bodies Corporate (“Attain Healthtech”, “we”, “us” and “our”) may gather about you when you visit this Site, and to inform you how we comply with the requirements of the Privacy Act 1998 (Cth) including the Australian Privacy Principles. Please note that as some of our Related Bodies Corporate may have different functions or specific legal requirements, they may have separate privacy policies (in which case, this Privacy Policy will not apply to those entities). You should check each time you interact with any of our companies which policy is applicable.
1.2 This Privacy Policy also explains:
- how Attain Healthtech collects and holds Personal Information;
- the purposes for which we collect and hold Personal Information;
- how we may use that Personal Information, and to whom we may disclose it to;
- our disclosures of Personal Information to entities overseas;
- how you can gain access to your Personal Information and seek its correction;
- how you may inquire or make a complaint about our collection, handling, use or disclosure of your Personal Information; and
- how that inquiry or complaint will be handled.
1.3 “Personal Information” is, broadly speaking, any information or opinion about a person, or otherwise relating to a person, where that person is identified or could reasonably be identified. “Sensitive information” is a special subset of Personal Information, and includes information about a person’s physical and mental health (including any injuries or disabilities they may have) and other information about things like their racial or ethnic background, religious beliefs, membership of a professional or trade association or a trade union, sexual orientation, and criminal record. In this Policy, references to “Personal Information” include sensitive information.
1.4 Protecting your privacy is very important to Attain Healthtech. We are committed to maintaining the security of Personal Information provided to Attain Healthtech by individuals and organisations who use this Site.
1.5 This Policy applies to Visitors to the Site, including Candidates and Preferred Candidates. This Policy does not apply to employment records once a Candidate accepts a job offer at a Related Entity.
2. Definitions
2.1 The following definitions apply in this Privacy Policy:
- “Affiliates” means Attain Healthtech’s Related Bodies Corporate, joint ventures, or other companies under a common control;
- “Candidate” means a person who enters into a Recruitment Process by submitting an application for an employment opportunity or open role at a Related Entity;
- “Corporations Act” means the Corporations Act 2001 (Cth), as amended from time to time;
- “Policy” means this Privacy Policy as amended from time to time;
- “Privacy Act” means the Privacy Act 1998 (Cth), as amended from time to time;
- “Preferred Candidate” means the Candidate that is assessed throughout the Recruitment Process to be the most suitable Candidate for an employment opportunity or open role;
- “Police Check” means a Nationally Coordinated Criminal History Check Certificate obtained through a link that a Related Entity provides to the Preferred Candidate in the category of Standard AA – Employment;
- “Recruitment Process” means the steps that a Candidate must take to apply for an employment opportunity at a Related Entity which may include: a phone screen, one or more interviews and professional reference checks;
- “Related Bodies Corporate”, also referred to as “Related Entity” or “Related Entities”, has the meaning assigned to “Related Bodies Corporate” in the Corporations Act. The Related Entities under AttainHealth Tech are:
Entity
ACN/ABN
Site
N/A
- “Site” means the attainhealthtech.com.au website including without limitation all subpages;
- “Site Terms” means the agreement between Attain Healthtech and each Visitor which sets out the terms and conditions in respect to the Site and are located at attainhealthtech.com.au;
- “Visitor” means an individual that visits and browses the Site.
3. Who does Attain Healthtech collect Personal Information from?
- Visitors when they visit our Site;
- Candidates;
- any individual that decides to provide us with Personal Information, solicited or unsolicited; and
- our Related Entities.
4. Visitor consent
5. Types of data we collect
- Information you provide to us
- If you are a Candidate, we collect Personal Information from you that you provide us as part of a Recruitment Process. Personal Information may be provided in-person and/or via telephone or email. This information may include your full name, contact information, information from your resume, CV and/or cover letter including work history and titles, educational qualifications, and any other Personal Information provided by you to us throughout the Recruitment Process. This also includes a Police Check for the Preferred Candidate as a precondition to commencing employment at a Related Entity.
- If you send us a query or otherwise provide us Personal Information, we may keep and use that information in accordance with this Policy.
- Sensitive Information
- We collect Sensitive Information in the form of a Police Check from the Preferred Candidate in a Recruitment Process provided by a third-party provider. At times, the Police Check is required at law. The Police Check also assists to establish a relationship of trust with the preferred Candidate which is necessary to be employed by a Related Entity in the care sector.
- We may collect sensitive information (including health or genetic information, criminal history, racial or ethnic origin, religious beliefs) from a Candidate when they choose to provide information about themselves, such as information related to racial or ethnic origin and health information. Where we collect this information, we will obtain separate consent to disclose it, unless otherwise set out in this Policy.
- Other ways we may collect Personal Information
- We may collect and retain Personal Information about a Candidate during a Recruitment Process provided by a professional referee, including their opinions on your work performance.
- We may collect and retain Personal Information about a Candidate that is publicly available, such as information on social media sites or media articles, such as LinkedIn, Twitter, Facebook or articles published by media outlets.
- We may also collect information that confirms you have a right to work within Australia or work with children or vulnerable people
- We may also collect information about a Candidate from a current employee under Attain Healthtech or a Related Entity where that current employee has referred the Candidate for the role.
- If you provide us with feedback or contact us via email or online form, we will collect your name and email address, as well as any other content included in the message, in order to send you a reply or otherwise action your feedback.
- Information collected via technology
- To make our Site more useful to you, our servers (which may be hosted by a third party service provider) collect information from you, including your browser type, operating system, Internet Protocol (IP) address, domain name, and/or a date/time stamp for your visit.
- Like many other website operators, we use cookies on our Site. Cookies are very small files which a website uses to identify you when you come back to the site, and which store details about your use of the site. Cookies are not malicious programs that access or damage your computer. We use cookies to improve the experience of Visitors to access secure areas of our Site. You may choose to disable cookies by adjusting the privacy settings in your browser, but you may not be able to access some parts of our Site if you do so.
- We may also use or enable:
- third party analytics services to track and analyse anonymous data from Visitors of our Site; and
- If, in future, you use and enable the location-enabled services, Attain Healthtech may receive information about your location (such as GPS signals sent by a mobile device or via your web browser when on the Site).
- Information about you may also be inferred using machine learning tools.
- Information from Related Entities
- Unsolicited Information
We may receive Personal Information from our Related Entities. Where this occurs, the Personal Information will be stored and used in accordance with our obligations under the Privacy Act or in accordance with any consent that you provide.
Where we collect unsolicited information (being information provided to us without us having sought the information), we will only hold, use and disclose that information if we could otherwise do so had we collected it by the means described above. If that unsolicited information could not have been collected by the means described above, then we will destroy, permanently delete or de-identify the information as appropriate.
6. Use of Personal Information
6.1 General use
In general, we use the Personal Information we collect either to provide the Site to you, to respond to requests that you make, or to aid us in serving you better, including in the following ways:
- to provide improved administration of our Site;
- to improve the quality of experience when you interact with our Site;
- to improve the quality and ease of experience when you interact with Related Entities;
- to improve the integration between the products and services of our Related Entities when you engage more than one;
- to inform you of roles, products and services managed by Attain Healthtech or our Related Entities that may be of interest to you;
- to assess a Candidate’s Personal Information in connection with an employment opportunity or open role at a Related Entity;
- to contact a Candidate in connection to an employment opportunity or open role at a Related Entity;
- if a Candidate has been unsuccessful for the employment opportunity or open role they have applied for, we may keep their Personal Information on file to assess against future employment or engagement opportunities;
- to contact employment references provided by a Candidate to Us as part of a recruitment process for an employment opportunity; and
- to customise the advertising you may see on the Site.
Where we collect unsolicited information (being information provided to us without us having sought the information), we will only hold, use and disclose that information if we could otherwise do so had we collected it by the means described above. If that unsolicited information could not have been collected by the means described above, then we will destroy, permanently delete or de-identify the information as appropriate.
6.2 Creation of Anonymous Data
We may create anonymous data records from Personal Information by excluding information (such as your name) that makes the data personally identifiable to you. We use this anonymous data to analyse request and usage patterns so that we may enhance the services of Attain Healthtech and Related Entities and improve Site navigation. Attain Healthtech may use anonymous data for any purpose and may disclose anonymous data to third parties as it sees fit.
7. Disclosure of your Personal Information
7.1 We may disclose your Personal Information as described below and as described elsewhere in this Policy.
7.2 We may disclose your Personal Information to our Related Entities. Where this occurs, your Personal Information will be stored and used in accordance with the Related Entity’s Privacy Policy and in accordance with obligations under the Privacy Act.
7.3 External service providers and other third parties
- We may share your Personal Information with our third party service providers to provide you with services that we offer you through our Site.
- Examples of such third party service providers include companies that:
- manage a Recruitment Process in our specialised third-party recruitment system; and
- review and verify information provided by Candidates, and administer and verify background checks, including Police Checks, identity checks and other screening checks.
- We may also disclose your Personal Information to our external service providers and advisers who have been engaged to provide us with legal, administrative, financial, accounting, auditing, insurance, research, marketing, business consulting, technology, support or other services. This includes providers who may assist with managing invoices, including data entry.
- In addition, we may disclose your Personal Information to other external service providers, consultants, or business partners of ours who may work with us to improve or develop our Site, operate or develop our business, conduct surveys or seek feedback from you, conduct market and other research, or facilitate or collaborate with us in relation to promotions.
- We take reasonable steps to ensure these third party service providers, advisers, etc do not use your Personal Information other than for the purpose for which it was provided to them by Attain Healthtech.
7.4 Disclosure of Personal Information to overseas entities
- We may transfer or otherwise disclose your Personal Information to third parties located outside Australia, including to third parties who provide information technology and other services to us. Those third parties may be located in the United States or other countries.
- We may outsource certain aspects of the functions described in section 6.1 to our service providers located overseas, including for:
- recruitment functions;
- accounting functions, including management of invoices;
- product analytics and customer event tracking and analysis; and
- social media management;
- Wherever possible, Personal Information remains on our servers which are located in Australia so that providers are required to access that information via secure access to the servers.
- By providing Personal Information to us, you consent to the transfer of that Personal Information to entities located outside Australia.
- Where we disclose your Personal Information to overseas recipients, we will take reasonable steps to require the protection of your Personal Information in accordance with the Privacy Act.
7.5 Affiliates and acquisitions
- We may share some or all of your Personal Information with and between Affiliates, in which case we will require our Affiliates to honour this Policy unless they have their own privacy policy (in which case, they will act in accordance with their own policy). This includes but is not limited to where you access or attempt to access services provided by our Related Bodies Corporate or agree to have your information shared.
- If another company acquires shares in Attain Healthtech, the business, or our assets, that company will possess the Personal Information collected by us and will assume the rights and obligations regarding your Personal Information as described in this Policy.
7.6 Other disclosures
Attain Healthtech may disclose Personal Information to third parties if it believes in good faith that such disclosure is necessary:
- in connection with any legal or regulatory investigation;
- to comply with relevant laws, or to respond to subpoenas or warrants served on us;
- to lessen or prevent a serious threat to the life, health or safety of an individual or to public safety;
- to investigate or assist in preventing any violation or potential violation of the law;
- where another “permitted general situation” or “permitted health situation” (as defined in the Privacy Act) applies; and/or
- where disclosure is reasonably necessary for a law enforcement related activity.
8. Data collection
8.1 Information collected by ad networks
We may use third-party advertising companies to serve ads when you visit our Site. These companies may collect and use information (not including your name, address, email address, or telephone number) about your visits to the Site and other websites in order to provide advertisements about goods and services to you that are tailored to your interests. This information is collected using cookies. As indicated above, you can disable cookies by changing your browser settings, but if you do, some parts of our Site may not function properly.
9. Your choices regarding your personal data
9.1 Deletion of Personal Information
- You may request deletion of your Personal Information by us, but please note that we may not delete it if it is reasonably necessary to keep the information (or choose to keep this information for a certain time, in which case we will comply with your deletion request only after we have fulfilled such requirements).
- If we believe that we no longer need your Personal Information for any purpose for which it may be used, kept or disclosed under the Privacy Act, and the information is not otherwise required to be kept under an Australian law or court order, we will take reasonable steps to destroy or permanently de-identify the information.
- When we delete any information, it will be deleted from the active database, but may remain in our archives. We may retain your information for fraud protection or similar purposes if this is permitted pursuant to an Australian law or court order.
- If we have already disclosed some of your Personal Information to third parties, we cannot force the deletion or modification of any such information by the parties to whom we have made those disclosures.
9.2 Correction of your Personal Information
- We take reasonable steps to ensure the Personal Information we hold about you is accurate, complete and up to date.
- Please let us know if you think any of the information we hold about you is incorrect, incomplete or out of date.
- If you ask us to correct your Personal Information, we will take reasonable steps to validate and correct the information, or we will provide reasons for not doing so. If we do not correct your Personal Information, you may make a statement about the requested change and we will take reasonable steps to attach this to the Personal Information in question.
10. Security of your Personal Information
- Attain Healthtech is committed to protecting the security of your Personal Information. We use a variety of industry-standard security technologies and procedures to help protect your Personal Information from unauthorised access, use, and disclosure.
- Any information which we hold about you is stored on secure servers that are protected in controlled facilities.
- No method of transmission over the Internet, or method of electronic storage, is 100% secure, so while Attain Healthtech uses reasonable efforts to protect your Personal Information, we cannot guarantee its absolute security.
- In addition, our employees and contractors who provide services related to our information systems are obliged to respect the confidentiality and privacy of any Personal Information held by Attain Healthtech.
11. Access to your Personal Information
- You can request access to the Personal Information we hold about you by contacting us using the details below.
- We will generally allow you to access the Personal Information we hold about you if you request it, but we may refuse access if we are permitted or required by law to do so.
- We will process requests for access to Personal Information within a reasonable time, and we may charge you reasonable costs associated with providing access (for example, to cover the costs of verifying the request and retrieving the information).
- If we refuse to provide you with access to your Personal Information, we will generally provide reasons for the refusal.
12. Complaints
- If you have any complaints about our dealings with your Personal Information, including any breaches by us of any Australian Privacy Principles, you are able to submit that complaint by contacting us using the details below. You will need to provide sufficient details regarding your complaint as well as any supporting evidence and information.
- Complaints will be referred for investigation by our Privacy Officer and a response will be provided to you within a reasonable time (usually no longer than 30 days). We may seek further information from you in order to provide you with a full and complete response.
- If you are not satisfied with the outcome of our investigation, you can contact us to raise your concerns, or you may wish to contact the Office of the Australian Information Commissioner (oaic.gov.au) by telephone on 1300 363 992, by email to enquiries@oaic.gov.au, or by post addressed to GPO Box 5218, Sydney NSW 2001.
13. Changes to this Privacy Policy
- We may update this Policy from time to time. We will post the updated Policy on our Site, so please check regularly for any updates. The updated Policy will take effect from the date of posting or otherwise stated.
- Your continued use of our Site, or provision of further Personal Information to us after this Policy has been updated, will constitute your acceptance of the amended Policy.
14. Contact Information
- Attain Healthtech welcomes your comments or questions regarding the Site or this Policy.
- Please contact us using the following details. Email: privacy@mable.com.au Telephone: 1300 736 573 , Post: PO Box 20846, World Square NSW 2002
Privacy Policy last updated 30 August 2024.