DETSI drives data privacy compliance

DETSI Drives Data Privacy

The Queensland Department of Environment, Tourism, Science and Innovation (DETSI) unveiled an extensive update to its Privacy Compliance Policy and Privacy Breach Management Policy. This initiative enhances the department’s governance regarding the collection, use, and safeguarding of personal information across all digital platforms, third-party systems, and community engagement channels. DETSI serves as a key agency for the Queensland Government and manages sensitive information across various portfolios, such as environmental data, tourism services, and scientific innovation. 

In late 2024, the department updated its policies to ensure compliance with the Information Privacy Act of 2009 (Qld) and address increasing challenges related to data governance, cybersecurity, cloud storage, artificial intelligence, and digital government infrastructure. The recent updates apply to all digital and offline engagements involving DETSI’s management of personal information. Their influence shapes the department’s approach to data privacy, compliance risks, analytics tracking, social media practices, and responses to data breaches. The updated policy clarifies DETSI’s transparency and purpose-limitation principles. 

“We are committed to protecting user privacy. We understand and appreciate that visitors to, and users of, this website are concerned about their privacy and the confidentiality and security of information they provide to us,” DETSI stated in its official Privacy Compliance Policy.

Individuals with concerns about analytics tracking should explore opt-out resources like the Google Analytics Opt-out Browser Add-on and the WebChoices browser tool. These tools allow users to restrict or prevent data collection from participating third-party advertisers. The DETSI websites use cookies to enhance navigation, maintain session continuity, and store limited user preferences when necessary. These cookies do not retain any personal data.

The department’s privacy notice states, “This website uses cookies to store information only. If you have configured your browser to reject all cookies you will still be able to generally browse through the site.”

The department incorporates privacy-by-design principles in its engagement with third-party platforms including Facebook and LinkedIn. DETSI does not gather personal information from social media platforms but may engage with publicly shared comments. Users should independently examine the privacy policy of each platform. 

DETSI follows the Public Records Act 2002, the Right to Information Act 2009 and the Information Privacy Act 2009 in response to email correspondence and public feedback. DETSI regards personal emails submitted through its website as public records. They do not appear on mailing lists and will share only with consent or as mandated by law.

Check out: “Ensuring compliance with data privacy standards”

DETSI established a comprehensive Privacy Breach Management Policy in response to breaches. This policy details the necessary immediate containment measures, internal escalation procedures, and the protocol for notifying the Office of the Information Commissioner when required. They will promptly inform individuals impacted based on the seriousness of the incident. Individuals can submit a written privacy complaint. DETSI requires complaints to clearly outline the issue and include a valid address for correspondence. The department commits to ensuring procedural fairness and follows statutory timelines strictly.

The revised privacy policies enable DETSI to meet growing demands for data privacy, cybersecurity and digital trust in the public sector. DETSI sets up rules for how it collects data, responds to cloud storage breaches, and analyses information to build a privacy system that follows the Information Privacy Act 2009 and supports the safe use of artificial intelligence and data sharing. 

The department emphasises that transparency in consent and security are essential pillars. Individuals can seek access to their information or file grievances through established procedures that align with their legal entitlements under the IP Act. DETSI integrates opt-out tools, privacy notifications and breach management procedures to demonstrate a sensible strategy for digital governance and data management. 

Departments collaborate by sharing data to break down silos and enhance public value. DETSI’s model illustrates the value of clear policy direction in fostering secure and interoperable systems. The department commits to evolving its privacy strategy in response to the changing digital landscape and the expectations of citizens throughout Queensland and the wider public service in Australia.

Website |  + posts

Public Spectrum is the first knowledge-sharing platform in Australia to embrace the entire public sector. This website is a platform where you can connect, collaborate, empower, inspire, and upskill with public sector professionals.

Leave a Reply

Your email address will not be published. Required fields are marked *