About UNICEF Australia
UNICEF is a children's organisation with the determination and care to deliver long-lasting impact for every child, no matter what. UNICEF operates in more than 190 countries in some of the world's toughest places to reach the most disadvantaged children.
UNICEF Australia identified growing risks associated with a cyber breach - especially after one such incident impacted many in the not-for-profit space. Although UNICEF Australia was not part of those breaches, with its supporters' interests at heart, the organisation wanted to ensure that any risk was minimised.
The Challenge
UNICEF Australia, like many in the sector, uses third parties for telephone services - and one such third party had recently suffered a significant data breach. While UNICEF Australia's data was not affected, the organisation wanted to conduct a review to ensure its processes were best practice.
- Assess whether existing data strategy and governance policies were fit for purpose and aligned to best practice
- Minimise risk of future data breaches involving supporter data held by third-party providers
- Ensure Personally Identifiable Information (PII) was tagged, retained, and backed up correctly
- Build internal capability to manage data governance on an ongoing basis without full reliance on external support
"They wanted to first understand whether their data strategy and governance policies were up to the task and, from there, what needed improvement." - Tony Butler, Managing Director, Decision Inc. Australia
