Skip to main content
NexusGroup Employee Portal

Policy · Information & security

Privacy & Information Handling

How we collect, use and protect personal information.

Purpose

Nexus Group collects personal information from customers, employees and others to do our work. This policy explains how we handle that information in line with the Privacy Act 1988 and the Australian Privacy Principles (APPs).

What we collect

We only collect personal information that we reasonably need — for example, a customer’s contact and order details, or an employee’s payroll and emergency-contact information. Nexus Care also handles sensitive information (such as health information), which has extra protections.

How we use it

Personal information is used only for the purpose it was collected, or a closely related purpose the person would expect. We do not sell personal information.

Your responsibilities

Every worker who handles personal information must:

  • access information only when needed for their job;
  • keep it accurate and secure;
  • never share it with people who are not authorised to see it;
  • follow the IT Security & Acceptable Use policy when storing or sending information.

Keeping information secure

We protect personal information with access controls, secure systems and staff training. Paper records are stored securely and disposed of confidentially.

Data breaches

If you think personal information has been lost, accessed or disclosed without authorisation, report it immediately to the IT Service Desk and your manager. We assess every suspected breach and, if it is likely to cause serious harm, notify affected people and the Office of the Australian Information Commissioner (OAIC) as required.

Access and correction

Individuals can ask for access to the personal information we hold about them, and ask us to correct it. Direct these requests to Operations via people@nexusgroup.example.com.