[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-169194-en":3,"doc-seo-169194-105":30,"detail-sidebar-cat-1-en-105":91},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":11,"category_id":12,"category_name":13,"doc_title":14,"doc_description":15,"doc_content":16,"file_id":17,"file_url":18,"file_type":19,"file_size":20,"view_count":11,"is_deleted":4,"is_public":11,"is_downloadable":11,"audit_status":11,"page_count":21,"language":22,"language_code":23,"site_id":24,"html_lang":23,"table_of_contents":25,"faqs":26,"seo_title":27,"seo_description":15,"update_tm":28,"read_time":29},169194,1099514067415,"Rowan","https://ap-avatar.wpscdn.com/avatar/100002539d78ffe74a7?x-image-process=image/resize,m_fixed,w_180,h_180&k=1779092875211072502",1,18,"Letters","[INSERT ORGANISATION NAME] DATA BREACH RESPONSE PLAN - v3 - template","Data breach response plan template defining key terms and establishing clear procedures, authority lines, and roles for [insert organisation name] staff when a suspected or confirmed data breach occurs. The plan supports timely containment, assessment, and response to mitigate potential harm, and it documents reporting obligations under Australia’s Notifiable Data Breaches (NDB) scheme. It includes guidance on what constitutes a data breach, when notification is required, and how to activate the Data Breach Response Team with primary and secondary contacts.","[Insert organisation name/logo]\n[INSERT ORGANISATION NAME] DATA BrEACH RESPONSE PLAN\n(Note*\n*Please delete note before finalising this document\nThis template has been developed to meet the needs of a diverse range of services and includes items for consideration in policy and procedure.\nAll material provided by the Network of Alcohol and other Drugs Agencies (NADA) is for guidance purposes only. Not all content will be relevant to your service. Organisations are encouraged to review the material in relation to your organisation’s individual circumstances and policies and edit, add and delete content to ensure relevancy.\nAll notes (like this one) should be considered and deleted before finalising the document, and the contents list should be updated as changes are made and when content is finalised. See the NADA Policy Toolkit User Guide for more editing tips.\n(Note*\n*Please consider adding the information below to existing, relevant policies and/or delete note before finalising this document\nThe passage of the Privacy Amendment (Notifiable Data Breaches) Act 2017 established a Notifiable Data Breaches (NDB) scheme in Australia. Commencing from 22 February 2019, the NDB scheme requires organisations covered by the Australian Privacy Act 1988 (the Act) to notify any individuals likely to be at risk of serious harm by a data breach. The notice must include recommendations about the steps individuals should take in response to the data breach, including notifying the Australian Information Commissioner.\nWhat is a data breach?\nA data breach occurs when personal information is lost or subjected to unauthorised access, modification, use or disclosure or other misuse. Personal information is information or an opinion about an identified or reasonably identifiable individual. Data breaches may include (but are not limited to) unauthorised access by a third party, information accidentally being uploaded to a public website or a laptop or USB drive containing personal information being lost or stolen and can be caused by or exacerbated by a variety of factors, affect different types of personal information and give rise to a range of actual or potential harms to individuals, agencies or organisations.\nWhich data breaches are notifiable?\nNot all data breaches require notification. The Notifiable Data Breaches (NDB) scheme only requires organisations to notify when there is a data breach that is likely to result in serious harm to any individual to whom the information relates. The purpose of this plan is to enable that assessment to be undertaken and for [insert organisation name] to meet its reporting obligations. Where a data breach is assessed as having occurred then the Data Breach Response Team will take action immediately.\nData breach Response plan\nThis data breach response plan outlines definitions, sets out procedures and clear lines of authority for [insert organisation name] staff in the event that [insert organisation name] experiences a data breach, or suspects that a data breach has occurred.\nThis response plan is intended to enable [insert organisation name] to contain, assess and respond to data breaches in a timely fashion and to help mitigate potential harm to affected individuals. It sets out contact details for the appropriate staff in the event of a data breach, clarifies the roles and responsibilities of staff, and documents processes to assist [insert organisation name] to respond to a data breach.\n[insert organisation name] Data Breach Response Team\n(Note*\n*Please consider adding the information below to existing, relevant policies and/or delete note before finalising this document\nThe purpose of having a Response Team is to ensure that the relevant staff, roles and responsibilities are identified and documented before the data breach happens. Different skill sets and staff may be needed to respond to one breach compared to another. The Response Team has the authority to take the necessary steps in the event of a br","cbCaitS3HwYxKSYs","https://ap.wps.com/l/cbCaitS3HwYxKSYs","docx",79685,9,"English","en",105,"# Data breach response plan\n## [INSERT ORGANISATION NAME] Data Breach Response Team\n## Response team membership\n## Assessing suspected data breaches\n## Roles for escalation and staff notification","[{\"question\":\"What triggers the Data Breach Response Plan at [insert organisation name]?\",\"answer\":\"If any [insert organisation name] staff member suspects or becomes aware of a data breach, the plan is activated and must be followed, starting with a reasonable and expeditious assessment.\"},{\"question\":\"What is a data breach under this plan?\",\"answer\":\"A data breach occurs when personal information is lost or subjected to unauthorised access, modification, use, disclosure, or other misuse, including common scenarios such as accidental public upload or loss/theft of devices containing personal information.\"},{\"question\":\"When is a data breach notifiable under the NDB scheme?\",\"answer\":\"Notification is required only when the breach is likely to result in serious harm to any individual to whom the information relates, so the organisation must assess seriousness before deciding on reporting actions.\"}]","[INSERT ORGANISATION NAME] DATA BREACH RESPONSE PLAN - v3 - template | DOCX",1788248161,3,{"code":4,"msg":31,"data":32},"ok",{"site_id":24,"language":23,"slug":33,"title":14,"keywords":34,"description":15,"schema_data":35,"social_meta":86,"head_meta":88,"extra_data":90,"updated_unix":28},"insert-organisation-name-data-breach-response-plan-v3-template","",{"@graph":36,"@context":85},[37,53,68],{"@type":38,"itemListElement":39},"BreadcrumbList",[40,44,48,50],{"item":41,"name":42,"@type":43,"position":11},"https://docshare.wps.com","Home","ListItem",{"item":45,"name":46,"@type":43,"position":47},"https://docshare.wps.com/template/","Template",2,{"item":49,"name":13,"@type":43,"position":29},"https://docshare.wps.com/template/letters/",{"item":51,"name":14,"@type":43,"position":52},"https://docshare.wps.com/template/insert-organisation-name-data-breach-response-plan-v3-template/169194/",4,{"url":51,"name":14,"@type":54,"author":55,"headline":14,"publisher":57,"fileFormat":60,"inLanguage":23,"description":15,"dateModified":61,"datePublished":62,"encodingFormat":60,"isAccessibleForFree":63,"interactionStatistic":64},"DigitalDocument",{"name":9,"@type":56},"Person",{"url":41,"name":58,"@type":59},"DocShare","Organization","application/vnd.openxmlformats-officedocument.wordprocessingml.document","2026-09-03","2026-09-01",true,{"@type":65,"interactionType":66,"userInteractionCount":47},"InteractionCounter",{"@type":67},"ViewAction",{"@type":69,"mainEntity":70},"FAQPage",[71,77,81],{"name":72,"@type":73,"acceptedAnswer":74},"What triggers the Data Breach Response Plan at [insert organisation name]?","Question",{"text":75,"@type":76},"If any [insert organisation name] staff member suspects or becomes aware of a data breach, the plan is activated and must be followed, starting with a reasonable and expeditious assessment.","Answer",{"name":78,"@type":73,"acceptedAnswer":79},"What is a data breach under this plan?",{"text":80,"@type":76},"A data breach occurs when personal information is lost or subjected to unauthorised access, modification, use, disclosure, or other misuse, including common scenarios such as accidental public upload or loss/theft of devices containing personal information.",{"name":82,"@type":73,"acceptedAnswer":83},"When is a data breach notifiable under the NDB scheme?",{"text":84,"@type":76},"Notification is required only when the breach is likely to result in serious harm to any individual to whom the information relates, so the organisation must assess seriousness before deciding on reporting actions.","https://schema.org",{"og:url":51,"og:type":87,"og:title":14,"og:site_name":58,"og:description":15},"article",{"robots":89,"canonical":51},"index,follow",{"doc_id":7,"site_id":24},{"code":4,"msg":5,"data":92},[93,98,103,108,113,118,123,126,131],{"id":94,"doc_module":11,"doc_module_name":46,"category_name":95,"show_sort_weight":96,"slug":97},11,"Presentations",90,"presentations",{"id":99,"doc_module":11,"doc_module_name":46,"category_name":100,"show_sort_weight":101,"slug":102},12,"Resumes",80,"resumes",{"id":104,"doc_module":11,"doc_module_name":46,"category_name":105,"show_sort_weight":106,"slug":107},14,"Invoices",70,"invoices",{"id":109,"doc_module":11,"doc_module_name":46,"category_name":110,"show_sort_weight":111,"slug":112},15,"Posters",60,"posters",{"id":114,"doc_module":11,"doc_module_name":46,"category_name":115,"show_sort_weight":116,"slug":117},16,"Social Media",50,"social-media",{"id":119,"doc_module":11,"doc_module_name":46,"category_name":120,"show_sort_weight":121,"slug":122},17,"Forms",40,"forms",{"id":12,"doc_module":11,"doc_module_name":46,"category_name":13,"show_sort_weight":124,"slug":125},30,"letters",{"id":127,"doc_module":11,"doc_module_name":46,"category_name":128,"show_sort_weight":129,"slug":130},21,"Paper Templates",5,"papers-templates",{"id":132,"doc_module":11,"doc_module_name":46,"category_name":133,"show_sort_weight":4,"slug":134},158,"General","general-158"]