About this document
When you trust us with your personal information, you expect us to protect it and keep it safe.
We are bound by the Privacy Act 1988 (Cth) of Australia (‘Privacy Act’) and will protect your personal information in accordance with the Australian Privacy Principles. These principles govern how we can collect, use, hold and disclose your personal information, as well as ensuring the quality and security of your personal information.
If you would like more information about how we protect your privacy, please contact us.
About this policy
What is personal information?
Personal information includes any information or opinion, about an identified individual or an individual who can be reasonably identified from their information. The information or opinion will still be personal information whether it is true or not and regardless of whether we have kept a record of it.
The information that we seek to collect about you will depend on the products or services that we provide. If you do not allow us to collect all of the information we request, we may not be able to deliver all of those products or services effectively.
What kinds of personal information do we collect and hold?
When you apply for our products or services we may ask for identification information. This could include your name, address, contact details and date of birth. We will also be required to collect your Tax Identification Number.
Throughout the life of your product or service, we may collect and hold additional personal information about you. This could include transaction information or making a record of queries or complaints you make.
The collection of sensitive information is restricted by the Privacy Act. This includes information about your religion, racial or ethnic origin, political opinions, criminal record, and sexual orientation. It also includes biometric information.
Generally, we only collect this sort of information if it is necessary to provide you with a specific product or service and you have consented to that collection. For example, we may collect voice biometric information to verify your identity or authorise transactions.
For what purposes do we collect, hold, use and disclose personal information?
The main reason we collect, use, hold and disclose personal information is to provide you with products and services. This includes:
- checking whether you are eligible for the product or service;
- providing the product or service; and
- helping manage the product or service.
We may also use your information to comply with legislative or regulatory requirements in any jurisdiction, prevent fraud, crime or other activity that may cause harm in relation to our products or services and to help us run our business. We may also use your information to tell you about products or services we think may interest you.
How do we collect personal information?
We also collect information from you electronically. For instance, when you visit our website or whenever you apply for or access Westpac Group products and services electronically (see "Do we collect personal information electronically?").
Sometimes we collect personal information about you from other people or organisations. This may happen without your direct involvement. For instance, we may collect personal information about you from:
- other Westpac Group companies;
- publicly available sources of information, such as public registers;
- your representatives (including your legal adviser, mortgage broker, financial adviser, executor, administrator, guardian, trustee, or attorney);
- your employer;
- other organisations, who jointly with us, provide products or services to you;
- commercial information service providers, such as companies that provide fraud prevention reports; and
- insurers, re-insurers and health care providers.
What laws require or authorise us to collect personal information?
We are required or authorised to collect certain identification information about you by the:
- Australian Anti-Money Laundering and Counter-Terrorism Financing Act 2006 (Cth) and Anti-Money Laundering and Counter-Terrorism Financing Rules Instrument 2007 (No. 1);
- Financial Transactions Reporting Act 2004; and
- Tax Administration Decree 2009.
How do we hold personal information?
Much of the information we hold about you will be stored electronically in secure data centres which are owned by the Westpac Group. Some information we hold about you will be stored in paper files. We use a range of physical and electronic security measures to protect the security of the personal information we hold. For example:
- access to information systems is controlled through identity and access management;
- employees are bound by internal information security policies and are required to keep information secure;
- all employees are required to complete training about information security; and
- we regularly monitor and review our compliance with internal policies and industry best practice.
- We take reasonable steps to destroy or permanently de-identify any personal information after it can no longer be used.
Who do we disclose your personal information to, and why?
We may share your personal information with other companies within the Westpac Group.
We may also provide personal information about our customers to organisations outside the Westpac Group. To protect personal information, we enter into contracts with our service providers that require them to comply with the Privacy Act. These contracts oblige them to only use the personal information we disclose to them for the specific role we ask them to perform.
Generally, we disclose personal information to organisations that help us with our business. These may include:
- our agents, contractors and external service providers (for example technology service providers);
- authorised representatives and credit representatives who sell products and services on our behalf;
- insurers, re-insurers and health care providers;
- payment systems operators (for example, merchants receiving card payments);
- other organisations, who jointly with us, provide products or services to you;
- other financial services organisations, including banks, superannuation funds, stockbrokers, custodians, funds managers and portfolio service providers;
- debt collectors;
- our financial advisers, legal advisers or auditors;
- your representatives (including your legal adviser, accountant, mortgage broker, financial adviser, executor, administrator, guardian, trustee, or attorney);
- fraud bureaus or other organisations to identify, investigate or prevent fraud or other misconduct;
- external dispute resolution schemes; and
- regulatory bodies, government agencies and law enforcement bodies in any jurisdiction.
We may also disclose your personal information to others outside the Westpac Group where:
- we are required or authorised by law or where we have a public duty to do so;
- you may have expressly consented to the disclosure or the consent may be reasonably inferred from the circumstances; or
- we are otherwise permitted to disclose the information under the Privacy Act.
Do we disclose personal information overseas?
We may disclose your personal information to a recipient which is located in another country. This includes international transactions, such as currency exchanges. We may need to disclose your information to the corresponding international party in order to process the transaction. The countries we disclose your information to will depend on the details of the transaction you ask us to carry out.
Do we use or disclose personal information for marketing?
We will use your personal information to offer you products and services we believe may interest you, but we will not do so if you tell us not to. These products and services may be offered by a member of the Westpac Group or one of its preferred suppliers. We may offer you products and services by various means, including by mail, telephone, email, SMS or other electronic means, such as through social media or targeted advertising through Westpac Group or non-Westpac Group websites.
Unless you tell us not to, we will disclose your personal information to companies within the Westpac Group so they can market their products and services to you. We may also disclose your personal information to companies outside the Westpac Group who assist us to market our products and services to you.
If you don’t want to receive marketing offers from us please contact us.
Do we collect personal information electronically?
We will collect information from you electronically, for instance through internet browsing, mobile or tablet applications.
Each time you visit our website, we collect information about your use of the website, which may include the following:
- the date and time of visits;
- which pages are viewed;
- how users navigate through the site and interact with pages (including fields completed in forms and applications completed);
- location information about users;
- information about the device used to visit our website; and
- IP addresses.
We use technology called cookies when you visit our site. Cookies are small pieces of information stored on your hard drive or in memory. They can record information about your visit to the site, allowing it to remember you the next time you visit and provide a more meaningful experience.
One of the reasons for using cookies is to offer you increased security. The cookies we send to your computer cannot read your hard drive, obtain any information from your browser or command your computer to perform any action. They are designed so that they cannot be sent to another site, or be retrieved by any non-Westpac Group site.
We won't ask you to supply personal information publicly over Facebook, Twitter, or any other social media platform that we use. Sometimes we may invite you to send your details to us via private messaging, for example, to answer a question about your account. You may also be invited to share your personal information through secure channels to participate in other activities, such as competitions.
Access to and correction of personal information
You can request access to the personal information we hold about you. You can also ask for corrections to be made. To do so, please contact us.
There is no fee for requesting that your personal information is corrected or for us to make corrections. In processing your request for access to your personal information, a reasonable cost may be charged. This charge covers such things as locating the information and supplying it to you.
There are some circumstances in which we are not required to give you access to your personal information.
If we refuse to give you access to or to correct your personal information we will give you a notice explaining our reasons except where it would be unreasonable to do so.
If we refuse your request to correct your personal information, you also have the right to request that a statement be associated with your personal information noting that you disagree with its accuracy.
If we refuse your request to access or correct your personal information, we will also provide you with information on how you can complain about the refusal.
Resolving your privacy concerns and complaints – your rights
If you are concerned about how your personal information is being handled or if you have a complaint about a privacy breach by us, please contact us.
We will acknowledge your complaint as soon as we can after receipt of your complaint. We will let you know if we need any further information from you to resolve your complaint.
We aim to resolve complaints as quickly as possible. We strive to resolve complaints within five business days but some complaints take longer to resolve. If your complaint is taking longer, we will let you know what is happening and a date by which you can reasonably expect a response.
You may complain to us at Westpac’s Centre of Excellence at email@example.com
Meaning of words
We, us or our means Westpac Banking Corporation (ABN 33 007 457 141)
Westpac Group means Westpac Banking Corporation (ABN 33 007 457 141) and its related bodies.