Share Draft Data Breach Response Policy on FacebookShare Draft Data Breach Response Policy on X (formerly Twitter)Share Draft Data Breach Response Policy on LinkedinEmail Draft Data Breach Response Policy link
Council reviewed the Draft Data Breach Response Policy and Draft Data Breach Response Management Directive at its meeting on 23 July 2026.
This consultation relates to the Draft Data Breach Response Policy which was endorsed for public exhibition following this meeting.
Background
The Privacy and Personal Information Protection Act 1998 (NSW) requires Council to have a policy for managing data breaches involving personal information, and to follow the Mandatory Notification of Data Breach (MNDB) scheme when a breach meets the threshold of an eligible data breach. The draft Policy supports Council's commitments to accountability and transparency, consistent with Council's Governance and Quality Service priorities.
Data Breach Response Policy
Lane Cove Council is seeking community feedback on the Draft Data Breach Response Policy.
This document sets out Council's commitments for managing data breaches involving personal or health information and Council's obligations in the case of a data breach.
While Council was provided with a copy of the Draft Data Breach Response Management Directive as part of the report to the 23 July meeting, this is an operational document and does not require public exhibition.
Together the draft Policy and Management Directive set out how Council will:
Identify, triage, contain, assess, manage and review data breaches
Provide clear pathways to report a suspected or actual data breach
Notify the NSW Privacy Commissioner and affected individuals where required
Maintain a register of data breaches
Set requirements for third party service providers who access Council information
Provide staff training and test Council's data breach preparedness
Have Your Say
Have your say on the Draft Data Breach Response Policy by providing a submission using the Survey button below.
Alternatively, you can lodge a written submission to the General Manager by including "SU9994" in the subject through:
Post: Lane Cove Council, PO BOX 20, LANE COVE, NSW, 1595
Submissions are due by 9 September 2026.
Council reviewed the Draft Data Breach Response Policy and Draft Data Breach Response Management Directive at its meeting on 23 July 2026.
This consultation relates to the Draft Data Breach Response Policy which was endorsed for public exhibition following this meeting.
Background
The Privacy and Personal Information Protection Act 1998 (NSW) requires Council to have a policy for managing data breaches involving personal information, and to follow the Mandatory Notification of Data Breach (MNDB) scheme when a breach meets the threshold of an eligible data breach. The draft Policy supports Council's commitments to accountability and transparency, consistent with Council's Governance and Quality Service priorities.
Data Breach Response Policy
Lane Cove Council is seeking community feedback on the Draft Data Breach Response Policy.
This document sets out Council's commitments for managing data breaches involving personal or health information and Council's obligations in the case of a data breach.
While Council was provided with a copy of the Draft Data Breach Response Management Directive as part of the report to the 23 July meeting, this is an operational document and does not require public exhibition.
Together the draft Policy and Management Directive set out how Council will:
Identify, triage, contain, assess, manage and review data breaches
Provide clear pathways to report a suspected or actual data breach
Notify the NSW Privacy Commissioner and affected individuals where required
Maintain a register of data breaches
Set requirements for third party service providers who access Council information
Provide staff training and test Council's data breach preparedness
Have Your Say
Have your say on the Draft Data Breach Response Policy by providing a submission using the Survey button below.
Alternatively, you can lodge a written submission to the General Manager by including "SU9994" in the subject through:
Share Draft Data Breach Policy Response Feedback on FacebookShare Draft Data Breach Policy Response Feedback on X (formerly Twitter)Share Draft Data Breach Policy Response Feedback on LinkedinEmail Draft Data Breach Policy Response Feedback link
Draft Data Breach Response Policy is currently at this stage
This consultation is open for contributions from 29 July 2026 to 9 September 2026.
Under Review
this is an upcoming stage for Draft Data Breach Response Policy
Contributions to this consultation will be closed for evaluation and review on 9 September 2026. The project team will report back on key outcomes.
Report to Council
this is an upcoming stage for Draft Data Breach Response Policy
A report on any submissions received and any proposed amendments to the Policy documents will be considered at an Ordinary Council meeting before the end of the year.
Policy Adopted
this is an upcoming stage for Draft Data Breach Response Policy
After the amended policy has been adopted by Council, the final version will be posted in the Policies section of the Council website: www.lanecove.nsw.gov.au/policies