Tech Translated

IT Security & Technology Blog

Practical IT insights for Australian businesses. Our team covers cybersecurity advisories, compliance updates, and plain-English explainers on the technology your business relies on, published regularly as the landscape shifts.

Privacy Policy | All IT Services
Legal & Compliance · All IT Services

Privacy Policy

How All IT Services Pty Ltd collects, holds, uses, and protects your personal information — in plain English, and in compliance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles.

Effective Date: 31 March 2026 Last Updated: 31 March 2026 19 Sections
APP Compliant All 13 Australian Privacy Principles
NDB Scheme Notifiable Data Breaches — Part IIIC
2024 Amendments Privacy & Other Legislation Amendment Act
We Don't Sell Your data is never sold to third parties
Our Commitments

What You Can Expect From Us

The four principles that shape every decision we make about your data.

Collect Fairly

We collect only what we need, tell you why we're collecting it, and always aim to do so directly from you.

Store Securely

Encryption at rest and in transit, MFA, least-privilege access, and a documented incident response plan — not checkbox security.

Share Minimally

We disclose your information only where necessary to deliver services or meet legal obligations — and never sell it, ever.

You're in Control

You can request access to, correction of, or deletion of your personal information, and opt out of marketing at any time.

Section 01

Introduction

All IT Services Pty Ltd ("All IT Services", "we", "us", or "our") is committed to protecting the privacy and security of personal information. We are an Australian managed IT services provider, and we understand the critical importance of data privacy in our industry.

This Privacy Policy sets out how we collect, hold, use, disclose, and otherwise manage personal information in accordance with the Privacy Act 1988 (Cth) ("Privacy Act"), including the Australian Privacy Principles ("APPs"), as amended by the Privacy and Other Legislation Amendment Act 2024 (Cth).

This policy applies to all personal information collected by All IT Services, whether through our website (allitservices.com.au), our IT services and support operations, or any other means.

Section 02

Australian Privacy Principles (APPs) Compliance

We are bound by the APPs contained in the Privacy Act and are committed to complying with all 13 Australian Privacy Principles. This policy is designed to be open, transparent, and easily accessible, in compliance with APP 1.

Section 03

What Personal Information Do We Collect?

The types of personal information we may collect depend on the nature of your interaction with us.

Identity and Contact Information

Names, email addresses, phone numbers, postal addresses, job titles, and company names.

Technical and IT Service Information

IT system credentials (managed securely on your behalf), device identifiers, IP addresses, network configurations, service desk tickets, remote access session logs, and system performance data collected during the provision of managed IT services.

Financial Information

Billing details, payment information, and account records necessary for providing our services.

Website Usage Data

Information collected automatically when you visit our website, including the domain from which you accessed the internet, date and time of access, referring website addresses, pages accessed, browser type, and operating system.

Communications

Records of correspondence, service requests, feedback, and support interactions.

Employment-Related Information

If you are a prospective employee, we may collect information relevant to your application, including qualifications, work history, and referee details.

We do not intentionally collect sensitive information (such as health information, racial or ethnic origin, political opinions, religious beliefs, sexual orientation, or criminal records) unless required by law, with your explicit consent, or where it is necessary for the provision of IT services.

Section 04

How Do We Collect Personal Information?

Directly from you: When you engage us for IT services, contact us via our website, phone or email, complete a form, subscribe to our newsletters, attend our events, or apply for a position with us.

From third parties: Where necessary and lawful, we may collect personal information from your employer (where they are our client), referees, publicly available sources, industry databases, or other service providers involved in delivering IT services.

Automatically: Through our website via cookies, analytics tools, and similar technologies, as well as through IT monitoring and management tools deployed as part of our managed services.

Where it is reasonable and practicable to do so, we will collect personal information directly from you (APP 3). If we receive unsolicited personal information, we will assess whether we could have lawfully collected it. If not, we will destroy or de-identify the information as soon as practicable (APP 4).

Section 05

Purpose of Collection — Why Do We Collect Personal Information?

We collect and use personal information to provide, manage, and support our IT managed services — including helpdesk support, remote monitoring, network management, cybersecurity services, cloud services, and IT procurement.

We also collect it to communicate with you regarding service delivery, process billing and payments, respond to enquiries, improve our services and website, comply with legal and regulatory obligations, send you marketing or promotional communications where permitted, and assess employment applications.

We will only use or disclose personal information for the primary purpose for which it was collected, or for a secondary purpose that is directly related and reasonably expected, or where you have consented (APP 6).

Section 06

Direct Marketing

We may use your personal information to send you information about our services, industry insights, cybersecurity alerts, and other communications that we believe may be of interest to you. We will only do so where we have your consent or where otherwise permitted under the Privacy Act.

You may opt out of receiving direct marketing communications at any time by contacting us using the details in Section 19 or by using the unsubscribe mechanism in our electronic communications. We will action your request promptly and free of charge (APP 7).

Section 07

Disclosure of Personal Information

We may disclose personal information to third parties where necessary, including service providers and subcontractors (technology vendors, cloud hosting providers, software licensors, telecommunications providers, and other IT service partners), professional advisers (accountants, auditors, lawyers, and insurers), regulatory bodies (government agencies, regulators, and law enforcement where required by law), and related bodies corporate within the All IT Services group.

We will take reasonable steps to ensure that any third party to whom we disclose personal information is bound by privacy obligations consistent with the APPs.

We will not sell your personal information to any third party.

Section 08

Cross-Border Disclosure of Personal Information

In the course of providing IT managed services, we may disclose personal information to overseas recipients, including cloud service providers and technology vendors with operations or data centres located outside Australia. Countries may include the United States, the United Kingdom, the European Union, Singapore, India, and New Zealand.

Before disclosing personal information overseas, we take reasonable steps to ensure that the overseas recipient does not breach the APPs in relation to that information, or that the recipient is subject to a law or binding scheme that is substantially similar to the APPs and that you can enforce (APP 8). Where relevant, we will rely on the overseas data transfer framework established under the Privacy Act, including any countries whitelisted by the Minister as providing substantially similar privacy protections.

Section 09

Data Security

We take the security of personal information seriously. In accordance with APP 11 and the enhanced requirements introduced by the Privacy and Other Legislation Amendment Act 2024, we implement appropriate technical and organisational measures to protect personal information from misuse, interference, loss, and from unauthorised access, modification, or disclosure.

Technical Measures

Encryption of data at rest and in transit, multi-factor authentication, intrusion detection and prevention systems, firewalls, endpoint protection, regular vulnerability scanning, and access controls based on the principle of least privilege.

Organisational Measures

Staff training on privacy and data handling obligations, access restricted to authorised personnel on a need-to-know basis, confidentiality agreements, documented incident response procedures, and regular review of security policies and practices.

When personal information is no longer needed for any purpose for which it may be used or disclosed under the APPs, and we are not required by law to retain it, we will take reasonable steps to destroy or de-identify the information.

Section 10

Notifiable Data Breaches

We comply with the Notifiable Data Breaches (NDB) scheme under Part IIIC of the Privacy Act. In the event of an eligible data breach — where unauthorised access to, or disclosure or loss of, personal information is likely to result in serious harm — we will notify affected individuals and the Office of the Australian Information Commissioner (OAIC) as soon as practicable.

We maintain an active data breach response plan and conduct regular testing to ensure readiness.

Section 11

Substantially Automated Decision-Making

In accordance with the new transparency obligations introduced by the Privacy and Other Legislation Amendment Act 2024 (commencing 10 December 2026), we are committed to transparency about any use of substantially automated decision-making that uses personal information and could reasonably be expected to significantly affect an individual's rights or interests.

As at the date of this policy, All IT Services does not use substantially automated decision-making processes that significantly affect individuals' rights or interests. Should this change, we will update this policy to include details of any such automated decisions, the types of personal information used, and how individuals may seek a review of such decisions.

Section 12

Privacy of Children

Our services are directed to businesses and not to children under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have inadvertently collected personal information from a child, we will take reasonable steps to delete or de-identify that information.

We note the requirement under the Privacy and Other Legislation Amendment Act 2024 for the OAIC to develop a Children's Online Privacy Code by 10 December 2026, and we will comply with any applicable requirements when that code is registered.

Section 13

Statutory Tort — Serious Invasion of Privacy

We acknowledge the new statutory tort for serious invasions of privacy introduced by the Privacy and Other Legislation Amendment Act 2024. We are committed to respecting individuals' privacy rights and take all reasonable steps to prevent any intrusion upon seclusion or misuse of personal information.

Section 14

Accessing and Correcting Your Personal Information

You have the right to request access to the personal information we hold about you (APP 12). You also have the right to request correction of any personal information that is inaccurate, out of date, incomplete, irrelevant, or misleading (APP 13).

To request access to or correction of your personal information, please contact us using the details in Section 19. We will respond within a reasonable period (generally within 30 days) and will not charge you for making the request, although we may charge a reasonable fee for providing access if significant resources are required to locate and compile the information.

If we refuse a request for access or correction, we will provide you with a written explanation of the reasons for the refusal and the mechanisms available to you to complain about the refusal.

Section 15

Complaints

If you believe that we have breached the APPs or that your privacy has been interfered with, you may lodge a complaint with us. Please contact us using the details in Section 19 and we will investigate your complaint and respond to you in writing within 30 days.

If you are not satisfied with our response, you may escalate your complaint to the Office of the Australian Information Commissioner (OAIC):

Office of the Australian Information Commissioner

Website: www.oaic.gov.au

Phone: 1300 363 992  |  Email: enquiries@oaic.gov.au

Post: GPO Box 5218, Sydney NSW 2001

Section 16

Cookies and Website Analytics

Our website uses cookies and similar tracking technologies to improve user experience and analyse website traffic. Cookies are small text files stored on your device that help us understand how visitors interact with our website.

You can manage your cookie preferences through your browser settings. Disabling cookies may affect the functionality of certain features on our website.

We may use third-party analytics services (such as Google Analytics) that collect anonymised or de-identified data about website usage. This data does not personally identify you.

Section 17

Links to Other Websites

Our website may contain links to external websites. We are not responsible for the privacy practices or content of those websites. We encourage you to review the privacy policies of any external websites you visit.

Section 18

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will post the updated policy on our website with a revised "Last Updated" date. We encourage you to review this policy periodically.

Material changes will take effect when posted on our website. Where practicable, we will notify you of significant changes by email or through a notice on our website.

Section 19

How to Contact Us

If you have any questions about this Privacy Policy, wish to make a request regarding your personal information, or would like to lodge a complaint, please contact us:

All IT Services Pty Ltd

Phone: 1300 425 548

Email: info@allitservices.com.au

Website: allitservices.com.au/contact-us

Suites 151–153, 117 Old Pittwater Road, Brookvale NSW 2100