Privacy Policy

Date of last update: January 2026

Introduction

Clifton Group Consulting (“CGC,” “we,” “us,” “our”) is committed to protecting your privacy. We comply with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth).

This Policy explains how we collect, use, store, and disclose your personal information, including information provided through our website, during consulting engagements and during general business activities.

1. What Personal Information We Collect

We may collect the following types of personal information:

1.1 Contact Information
  • Name
  • Business name
  • Job title or role
  • Email address
  • Phone number
  • Postal or business address
1.2 Business and Operational Information
  • HR, WHS or organisational details relevant to consulting engagements
  • Information about your team or business operations that you choose to provide
  • Employee-related information supplied during HR/WHS consulting (e.g., role descriptions, performance concerns, employment documents)
1.3 Financial or Payment Information

Where required to process transactions:

  • ABN
  • Bank account details
  • Billing information
1.4 Website and Digital Information

When you visit our website, we may automatically collect:

  • IP address
  • Browser type
  • Device information
  • Pages visited
  • Time spent on pages
  • Cookies and analytics data
1.5 Sensitive or Regulated Information (NDIS or WHS)

Where necessary for HR, WHS or NDIS-related consulting:

  • Incident reports or WHS records you choose to provide
  • Policies, procedures, audit information
  • NDIS documentation provided for compliance preparation

We do not actively seek to collect sensitive information unless you voluntarily provide it and it is reasonably necessary for our work.

2. How We Collect Personal Information

We collect personal information from you in various ways, including when you:

  • Engage us for HR, WHS, leadership or consulting services
  • Submit a form or contact us through our website
  • Email, call, or meet with us
  • Subscribe to updates or request information
  • Participate in surveys or assessments
  • Provide documents for compliance or audit support
  • Use our website (cookies, analytics)

Where reasonable, we collect information directly from you.

In HR/WHS consulting, you may also provide information relating to employees, contractors, workers, or business operations. You represent that you have the authority to provide this information.

3. Why We Collect, Use and Disclose Personal Information

We collect personal information to:

  • Provide HR, WHS, leadership and consulting services
  • Support NDIS readiness, certification, or audit preparation
  • Understand business needs and tailor our services
  • Provide reports, recommendations, templates, or documents
  • Improve our website, content, and services
  • Communicate with you and respond to enquiries
  • Send newsletters or updates (opt-out available)
  • Meet legal, regulatory or risk management obligations

We only collect personal information that is reasonably necessary for our functions.

4. Disclosure of Personal Information

4.1 Third-Party Service Providers

Who assist us with:

  • Accounting, auditing or bookkeeping
  • IT and website hosting
  • Cloud document storage
  • HR or WHS software platforms (where authorised)
  • Email newsletter or communication tools
4.2 Subcontractors or Associates

Only where necessary to enable delivery of HR, WHS or leadership consulting services.

4.3 Legal or Regulatory Authorities

Where required by law, including:

  • Court orders
  • Government regulators
  • Where unlawful activity or misconduct is suspected

We do not sell or rent your personal information.

5. Overseas Disclosure

Your data may be stored or processed using reputable cloud providers in Australia or overseas (e.g., United States, Europe, Asia). We take reasonable steps to ensure compliance with privacy and security requirements.

6. Marketing Communications

We may send newsletters, insights or service updates. You can unsubscribe at any time using the link provided or by contacting us.

7. Security

We take reasonable steps to protect personal information from:

  • Misuse
  • Interference
  • Loss
  • Unauthorised access
  • Modification
  • Disclosure

This includes secure storage, password protection (where requested), restricted access, and use of reputable cloud platforms.

However, no system is completely secure, and we cannot guarantee absolute security.

Access, Correction and Managing Your Information

You may request access to or correction of your personal information. We aim to respond within 30 days unless restricted by legal or confidentiality obligations.

We may refuse access in limited circumstances permitted by law.

We do not charge a fee to make a request, but may charge reasonable costs for retrieving information.

Cookies & Website Analytics

Our website uses cookies and similar technologies to:

  • Improve user experience
  • Analyse site traffic
  • Understand visitor behaviour
  • Support website functionality

You may disable cookies through your browser settings, but some features may not work correctly. Analytics data is aggregated and does not personally identify you.

Changes to This Privacy Policy

We may update this Policy occasionally. The updated version will be published with the most recent “Date of Last Update.” Continued use of our website indicates acceptance of the updated Policy.

Contact Us

If you have questions about this Privacy Policy, or wish to access or correct your personal information, please contact:

Clifton Group Consulting (CGC)
Email: info@cliftongroup.net.au

Sydney, Australia

If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au
.