I hope you take some value from this one hour (or so) CLE where I sketch out the Australian privacy regime as it currently stands including a consideration of notifiable data breaches.
This talk covers four areas:
What is the legislative privacy framework?
How does privacy work in practice? Both "macro" statistics and "micro" examples.
How do you avoid a data breach?
What do you do if a data breach occurs?
I hope there's some value here for anyone advising APP entities.