Privacy &
Confidentiality Policy
This policy and procedure sets out staff responsibilities relating to collecting, using, protecting, and releasing personal information, in compliance with privacy legislation.
It applies to all:
LME Care staff
Aspects of LME Care’s operations
Staff and client personal information
This policy and procedure should be read in conjunction with LME Care’s Records and Information Management Policy and Procedure. It meets relevant legislation, regulations, and Standards as set out in Schedule 1: Legislative References.
Outcome:
Management of each client’s information ensures that it is identifiable, accurately recorded, current, and confidential. Each client’s information is easily accessible to the client and appropriately utilised by relevant workers.
Indicators:
Outcome:
Each client accesses supports that respect and protect their dignity and right to privacy.
Indicators:
Regulates how personal information about individuals is handled. The Act includes thirteen Australian Privacy Principles (APPs), which set out standards, rights, and obligations for handling, holding, using, accessing, and correcting personal information.
The Act protects the privacy of an individual’s information where it relates to Commonwealth agencies and private businesses (including not-for-profit organisations) with a turnover of more than $3 million. All organisations that provide a health service and hold health information (other than in a staff record) are covered by the Act.
Personal information or an opinion about:
That is also:
Information or an opinion about an identified individual, or an individual who is reasonably identifiable:
Personal information or an opinion about an individual’s:
That is also:
Protected Information:
Queensland has privacy legislation that applies to its public sector, including public health service providers. The Information Privacy Act 2009 (Qld) regulates how personal information is handled by Queensland public sector agencies.
Health Information:
Personal information about an individual that includes:
Personal Information:
Information or an opinion, including part of a database, whether true or not and recorded in any form, about an individual whose identity is apparent or can reasonably be ascertained.
Sensitive Information:
Personal information that includes details such as:
Private sector service providers must comply with the Privacy Act 1988 (Cth) when handling health information.
Oversight Bodies:
LME Care recognises, respects, and protects everyone’s right to privacy, including the privacy of clients and staff. All individuals (or their legal representatives) have the right to decide who has access to their personal information.
LME Care’s privacy and confidentiality practices support and are supported by its records and information management processes (see the Records and Information Management Policy and Procedure).
All staff are responsible for maintaining the privacy and confidentiality of clients, other staff, and LME Care.
The Privacy Officer is responsible for ensuring that LME Care complies with the requirements of the Privacy Act 1988 (Cth). This includes developing, implementing, and reviewing processes that address:
The Privacy Officer reviews these processes regularly through annual Privacy Audits (see LME Care’s Privacy Audit Form and Schedule 2. External Audit and Internal Review Schedule).
All staff are responsible for complying with this policy and procedure and their privacy, confidentiality, and information management obligations. Staff must keep personal information about clients, colleagues, and other stakeholders confidential, in accordance with the confidentiality provisions in their employment or engagement contract.
For information about how we manage consent and privacy related to SMS communication, please refer to: https://www.lmecare.com.au/sms-marketing-terms-conditions/