Our approach to privacy
This policy describes how Onset Group Pty Ltd (ABN [*]) collects, uses, stores and discloses your personal information in accordance with our legal obligations, including under the Privacy Act 1988 (Cth) (Privacy Act).
In this policy, when we say:
- “Onset”, “we”, “us” or “our” refers to Onset Group Pty Ltd and its related entities.
- “you” refers to you, the reader of this policy.
We may modify this policy from time to time by publishing updates on our website. We encourage you to check our website periodically to ensure you are aware of our current privacy policy.
What personal information do we collect?
Personal information includes information or an opinion (whether true or not) about an identified or a reasonably identifiable individual.
We may collect and hold the following types of personal information:
- Candidates – name, address, phone number, email, work history, qualifications, references, referee opinions, aptitude/competency test results, right-to-work status, identity documents (passport, driver’s licence, visa), health/disability information, workplace accident details, insurance information, payment details for temporary/contract work, performance feedback, complaints.
- Clients – name, contact details, company details, recruitment service requirements, communications history.
- Referees – name, contact details, employment information, authority to provide references, professional opinions.
- Participants (mentoring, training, coaching) – name, contact details, program participation details.
- General – communications with us (via phone/email/website), IP address and device/browser identifiers (if using our website), digital signatures, photographs, CCTV footage when attending our premises, event participation records, survey responses, and IT usage information if you are engaged as a contractor or employee.
- Sensitive information – racial/ethnic origin, political or religious beliefs, union membership, sexual orientation, criminal record, health information, disability information, expressed health preferences, medical test results.
How do we collect your personal information?
Depending on the type of information and the relationship with us, personal and sensitive information will be collected from you directly when you attend an interview (both phone and in-person), during the client meeting, when taking the references or filling out and submitting your details or any other information in connection with your application to us, either in person/phone/email or via our website.
Personal and sensitive information will also be collected when:
- we receive any reference about you,
- we receive results of inquiries that we might make of your former employers, work colleagues, professional associations, registration body or relevant third parties – for example, background checks, eLearning, licence and credential management,
- we receive the results of any work competency or medical-related test,
- we receive performance feedback (whether positive or negative),
- we receive any complaint from or about you in the workplace (previous and current),
- we receive any information about a workplace accident in which you are or were involved (including any information about insurance investigation, litigation, registration or professional disciplinary matter, criminal matter, inquest or inquiry in which you are involved),
- any additional information you provide us with at any point in time. For example, to verify your identity we may ask proof of identification from you including copies of your passport, driving license, visa, or other required documents.
- insurance investigations or disciplinary matters.
Why do we collect, use and disclose your personal information?
We collect, hold, use and disclose your personal information for purposes including:
- Candidates – recruitment and placement, performance appraisals, competency/medical assessments, right-to-work checks, payroll for contract work, training needs identification, workplace rehabilitation, insurance claims, complaint management.
- Clients – recruitment services, client relationship management, marketing, statistical purposes.
- Referees – assess candidate suitability, verify references and identity.
- Participants – deliver coaching, mentoring, training and career management services.
- Operations – improve business processes, respond to complaints, conduct research and marketing.
- Legal obligations – comply with laws or our contractual requirements, and assist government or law enforcement agencies.
- Data analytics – we may also use your data for training and statistical purposes, business development, corporate transactions, and other businesses which we use to generate data insights to improve recruitment services and candidate experience.
- Automated decision making – We may use recruitment technologies, such as AI-assisted screening, chatbots, and automated matching systems. These tools are intended to improve efficiency and candidate experience. Where automated decisions may significantly affect you, we will ensure human oversight and take steps to prevent bias.
If you do not provide personal information, our ability to provide recruitment and placement services will be limited.
Who do we share your personal information with?
We may disclose your personal information to:
- potential and actual employers and clients,
- nominated referees,
- insurers,
- professional associations or registration bodies,
- government agencies verifying work rights,
- workers compensation bodies,
- contractors and suppliers (e.g., IT, payroll, recruitment software),
- persons with lawful entitlement to information.
Using our website, cookies and tracking
We may collect and store information about your use of our website, including pages visited, time/date, IP or MAC address, device/browser type, and downloads. We may use cookies or similar technologies to provide services, personalise your experience, deliver targeted content, and improve analytics. Most browsers accept cookies automatically; you can disable them, but this may affect functionality.
How do we store and keep your information secure?
We hold personal information in secured offices and systems, including a password-protected database on secure servers. Access is limited to authorised staff who are bound by confidentiality agreements. Whilst we take reasonable steps to protect your information, no system is 100% secure. We maintain incident response procedures to manage potential data breaches.
We retain data for as long as required by law. At the end of this period, or if you request deletion and we no longer require the information, it will be securely destroyed.
Accessing or correcting your personal information
You have rights under the Privacy Act and Spam Act 2003 (Cth) to:
- request access to personal information we hold about you,
- ask us to update or correct inaccurate, incomplete or outdated information,
- request a statement of disputed information if correction is refused.
Requests can be made by contacting our Privacy Officer (see below). We may verify your identity and, in some cases, may refuse access where permitted under the Privacy Act.
Notifiable data breaches
In the event of any unauthorised access, disclosure or loss of your personal information likely to result in serious harm, we will investigate and notify you and the Office of the Australian Information Commissioner (OAIC) as required by the Privacy Act.
Making a complaint
If you believe we have breached the Privacy Act or mishandled your personal information, you may contact us (see below). We will investigate and respond. If you are not satisfied with our response, you may lodge a complaint with the OAIC at enquiries@oaic.gov.au or 1300 363 992. See www.oaic.gov.au for more information.
Contact us
Contact our Privacy Officer:
Phone: +61 438 706 627
Email: contact@theonset.com.au
Business hours: 8.30 am – 5.30 pm, Monday to Friday.