Like all businesses that hold people’s personal information, Vision Super has a responsibility to protect the privacy and integrity of all the data we hold on behalf of our members. As you probably know, there have been several high-profile cyber security incidents at well-known Australian businesses, which have resulted in personal information being obtained by hacking groups and published on the dark web. So we want to highlight some of the measures Vision Super has in place to protect your data and provide some best-practice cyber security tips that may help you more generally.
What we do to protect you
Training
We have implemented a comprehensive suite of security protections designed to keep your information safe, which are independently assessed on an annual basis and reviewed by our Board. Combined with these controls, staff are given regular training on cyber security, including their responsibilities around data protection, in line with the Commonwealth Privacy Act 1988 (Privacy Act).
While our staff are trained in the importance of confidentiality and maintaining the security of your information, we restrict access to member records to those who need it to manage your account. Before staff can access member accounts, they must be authorised and appropriately trained. We also mask sensitive personal information wherever possible.
Website and app
Along with these safeguards, you may have noticed enhanced security on our website and the Vision Super mobile app. The app now uses multi-factor authentication, which adds an additional layer of security compared with just using a username and password, and is one of the most effective ways to protect against unauthorised access to your valuable information and your money.
Both Vision Super’s public website and your secure online account are protected by internet protocols that secure communications and any data transfer between your web browser and our websites. We have also introduced a new file upload form that provides a secure way to share forms and documents with us electronically.
Our offices
At Vision Super, we have a strict clean desk policy. This means any files that contain member or employer data must be locked in cabinets/drawers when an employee is not actively working on them, including during lunch and other breaks.
We also conduct regular outbound calling to help our members, but we will always try to send a text beforehand to let you know that we’re about to call, or alternatively, to call us. If you get a call from us that you weren’t expecting or is outside of our contact centre operating times of 8:30am and 5pm EST, then feel free to hang up politely and give us a call back yourself – we won’t be offended!
Remember: we will never ask for your username or password to your online account. If someone calls, messages or emails you asking for either of these, it’s not us! Cyber threats do change over time, and we will continue to evolve our cyber security strategy and controls in line with global and regulatory best practices to protect the data you provide to us.
Tips to protect yourself
While we take our data protection responsibilities very seriously, we are only part of the overall approach to good cyber security practices. We need your help as well – so here are a few tips to help you protect yourself more widely:
For more information about our approach to data security and privacy, visit www.visionsuper.com.au/privacy-policy.
Member Hotline 1300 300 820
Employer Hotline 1300 304 947
Retirement Hotline 1300 017 589