Security & Compliance

Compliance isn't a document. It's how we run your IT.

Dental practices hold some of the most sensitive data there is — health records protected under the Privacy Act. We build that obligation into the day-to-day, not into a folder no one opens.

The framework

Built on the ACSC Essential Eight.

The Australian Cyber Security Centre's eight baseline mitigations. We assess where you sit and move you up the maturity levels at a sensible pace.

01

Application control

Only approved software runs on practice devices.

02

Patch applications

Browsers, PDF readers and PMS clients kept current.

03

Configure macro settings

Block the Office macros attackers hide in.

04

User application hardening

Lock down the risky bits of everyday apps.

05

Restrict admin privileges

Fewer admin accounts means a smaller blast radius.

06

Patch operating systems

Windows and server patches applied on schedule.

07

Multi-factor authentication

A second factor on email, remote access and PMS logins.

08

Regular backups

Backed up, and recovery tested — not assumed.

Privacy Act 1988

Australian Privacy Principles

Health information is sensitive information. We help you handle it the way the APPs require — access controls, retention, and only the people who need it.

NDB scheme

Notifiable Data Breaches

If patient data is exposed, there are obligations to notify affected people and the OAIC. We help you detect breaches fast and have a response plan ready before you need it.

We provide IT and security services aligned to these frameworks. We are not lawyers — for legal interpretation of your obligations, consult a qualified practitioner.

Where does your practice sit today?

Our audit maps you against the Essential Eight and shows the gaps in plain English.

Book a free IT audit →