|
Acryn
Pty Limited ABN 62 123 934 083 (“Acryn, we or
our”) regards the privacy of the users of its
products and services seriously. This privacy
policy applies to ACRYN’s Knowledge Community
software product.
Acryn
has adopted the
Australian National
Principles for the Fair Handling of Personal
Information as
published by the
Federal Privacy
Commissioner.
In
accordance with the Privacy Commissioner's
guidelines we disclose that we provide to our
licensed clients our software product, known as
Knowledge Community
Our
Knowledge Community software system:
-
allows our licensees access to Knowledge
Community. Each licensee of the software has
a run time licence.
-
allows Administrators of our licensees to
operate and update relevant information for
their run time licenced version of Knowledge
Community; and
-
allows Users authorised by a licensee to
utilise the version of Knowledge Community
that has been licensed to the authorising
licensee.
“ACRYN
web site” means
https://www.acryn.com
“Personal Information” means information or an
opinion (including information or an opinion
forming part of a database), whether true or
not, and whether recorded in a material form or
not, about an individual whose identity is
apparent, or can reasonably be ascertained, from
the information or opinion.
We disclose our
practices regarding the following information:
-
Information collected and its purpose.
-
Who
has access to information collected.
-
Whether you can have access to the
information collected.
-
Policy on correcting and updating Personal
Information.
-
Policy on deleting or deactivating Personal
Information.
-
How
we secure data.
-
How
we prevent data misuse.
1. Information
collected and its purpose
a)
Corporate information
-
To
enable a licensee of Knowledge Community to
operate their run time licence, we collect
information like that listed below:
-
Licensee name and ABN
number
-
Licensee addresses
-
Licensee contact
information (ie telephone and facsimile
numbers, email and web sites addresses)
-
The
names and contact information of the
licensees key personnel identified by the
licensee as holding responsibility for the
operation of Knowledge Community
-
Technical information about the computer
server, environment and systems, which will
be used to service the licensee’s run time
licence of Knowledge Community
b)
Personal information
To
assist licensee Administrators to operate their
run time licenced version of Knowledge
Community, we collect information like that
listed below:
-
First and second names of key personnel who
will operate Knowledge Community for the
licensee.
-
Key
personnel work contact information (ie
telephone and facsimile numbers, work
addresses and email addresses)
2. Who has access to
information collected?
All
data that we collect from or for a licensee is
only ever made available to the following
people:
-
authorised users within the licensee’s
organisation, who can access the information
with a valid username and password;
-
our
employees or contractors, who assist in the
configuration of the Knowledge Community
software for a licensee;
-
our
Help Desk Support service providers, who
provide support to the licensee and help to
maintain the Knowledge Community software;
-
Third parties who are contracted by ACRYN to
assist with support and maintenance of the
Knowledge Community software and the
hardware platforms;
-
Law
enforcement agencies that have provided us
with the required legal documentation or
court order to show that they may legally
access Personal Information.
Note -
ACRYN reserves the right to collect and analyse
information from each licenses Knowledge
Community software system, however this
information will not include any Personal
Information.
3. Whether you can have
access to the information collected
Licensees are able to access their data at any
time, either through the Knowledge Community
software system or via data export facilities.
4. Policy on correcting
and updating Personal Information
Licensees have full administration access and
responsibility to update their own data within
the Knowledge Community software system. ACRYN
does not hold any Personal Information outside
the Knowledge Community software system.
5. Policy on deleting
or deactivating Personal Information
If a
licensee terminates their Knowledge Community
software licensing agreement, we will delete
all of the licensee’s data from our servers,
when requested by the licensee.
6. How we secure data
a)
Database security
The
data for each licensee is stored in a separate
database schema, into which each authorised user
is authenticated upon logging into the Knowledge
Community software system. This ensures that
data is only accessible to authorised users for
that specific entity. It is not possible for any
one licensee of the Knowledge Community software
system to access data belonging to another
licensee.
b)
Internet
Strict
security is employed in order to prevent
unauthorised access. Our web-based application
uses the HTTPS protocol with SSL technology and
security certificates. Data traffic between
users and our servers is encrypted.
c) Servers and physical data
Our
servers are housed in a secure data centre.
Offsite data backups are stored in a fireproof
safe and redundant backup data is destroyed
periodically.
d)
Third party access to data
Anyone
to whom ACRYN provides access to the ACRYN
database for the purpose of providing the
Knowledge Community services has a contractual
obligation to ACRYN to keep all data secure and
confidential.
7. How we prevent data
misuse
a)
Access privileges
Every
authorised user has a unique username to access
the Knowledge Community software system, to
access data at the level of access designated to
them.
b)
Revocation of access
ACRYN
consultants initially have access to all
licensee data as they help to set up a
licensee’s database. Once the initial
consultancy project is completed, user accounts
for ACRYN consultants are deactivated and access
to the licensee’s data is revoked.
ACRYN
(and nominated third-parties such as IT support
staff) may require occasional access to licensee
data to support use of the application and
investigate support incidents. Once a support
incident is completed, user access is revoked.
c) Non-disclosure agreements
All
employees and contractors of ACRYN sign full
non-disclosure agreements. All third parties
that work with ACRYN have signed full
non-disclosure agreements. Failure to comply
with the terms of these agreements will result
in severe legal and financial penalties for the
offender.
Notification of Change
If we
change our information usage practices that
affect personal information, we will post a
notice on our ACRYN website.
If you
have any questions about our privacy policy,
please complete the Contact Us section of the
ACRYN website.
Date 31st March 2008
|