Privacy Policy
Document title: Privacy Policy
Entity: Blue Opal Advisory Pty Ltd (ABN 86 674 880 472)
Owner: Managing Director
Version: 1.0 FINAL
Effective date: 21 July 2026
Last reviewed: 21 July 2026
Next review: July 2027
Governing law: Queensland, Australia
1. Introduction
Blue Opal Advisory Pty Ltd (ABN 86 674 880 472) (Blue Opal Advisory, we, us or our) is committed to protecting the privacy of the personal information we collect and hold. We respect your right to privacy and handle personal information in accordance with the Privacy Act 1988 (Cth) (the Privacy Act) and the Australian Privacy Principles (the APPs) contained in that Act.
This Privacy Policy explains how we collect, hold, use, disclose and protect personal information, and how you may access or correct the personal information we hold about you, or make a privacy complaint.
While Blue Opal Advisory may qualify as a small business operator under the Privacy Act, we are committed to handling all personal information in accordance with the Privacy Act and the APPs as a matter of good practice and in recognition of the trust our clients place in us.
2. Purpose and Scope
This Privacy Policy applies to all personal information collected by Blue Opal Advisory in the course of our business, including through our website, our client engagements, our proposal and tender activities, and our dealings with clients, prospective clients, subcontractors, consultants, suppliers and other individuals.
By providing your personal information to us, or by using our website or services, you consent to the collection, use and disclosure of your personal information in accordance with this Privacy Policy.
This Privacy Policy is published on our website and is referenced in our client services agreements, so that clients may review it together with the terms on which we provide our services.
3. What is Personal Information
Personal information has the meaning given in the Privacy Act. In general terms, it is information or an opinion about an identified individual, or an individual who is reasonably identifiable, whether the information is true or not and whether or not it is recorded in a material form.
Sensitive information is a subset of personal information and includes information about an individual’s health, racial or ethnic origin, political opinions, religious beliefs, criminal record and certain other categories. We collect sensitive information only where it is reasonably necessary for our functions or activities and with your consent, or where we are otherwise permitted or required by law to do so.
4. What Personal Information We Collect
The types of personal information we may collect and hold include:
- Name, job title and role, and the organisation you represent
- Contact details, including postal address, email address and telephone numbers
- Information contained in curricula vitae, résumés and professional profiles, including qualifications, security clearances and employment history, where provided in connection with proposals, tenders or engagements
- Correspondence and records of our dealings with you
- Financial and billing information necessary to provide our services and process payments
- Information you provide through our website, including enquiry and contact form submissions
- Any other information you choose to provide to us
We generally do not collect sensitive information unless it is directly relevant to an engagement, for example, security clearance details required for a government or Defence-related tender and you have consented to its collection.
5. How We Collect Personal Information
We collect personal information in a number of ways, including:
- Directly from you, when you contact us, engage our services, respond to a proposal, provide documents, or correspond with us by email, telephone or in person
- Through our website, including when you complete an online form or enquiry
- From third parties, such as your employer, referees, subcontractors, teaming partners or publicly available sources, where it is reasonable and practicable to do so
- In the course of delivering our advisory, bid management and consultancy services
Where it is reasonable and practicable to do so, we will collect personal information directly from the individual concerned. Where we collect personal information about you from a third party, we will take reasonable steps to ensure you are made aware of the matters set out in this Privacy Policy.
6. Why We Collect, Hold, Use and Disclose Personal Information
We collect, hold, use and disclose personal information for purposes connected with our business, including to:
- Provide our advisory, consultancy and bid management services to our clients
- Prepare proposals, tenders and related submissions
- Communicate with you and respond to your enquiries
- Manage our engagements, contracts and relationships with clients, subcontractors and suppliers
- Process payments and manage our accounts
- Maintain and improve our website and services
- Comply with our legal and regulatory obligations
- Any other purpose reasonably necessary or incidental to the above, or as otherwise permitted or required by law
We will only use or disclose personal information for the purpose for which it was collected, for a related purpose you would reasonably expect, where you have consented, or where such use or disclosure is otherwise permitted or required by law.
7. Disclosure of Personal Information
We may disclose personal information to:
- Our employees, consultants and contractors, to the extent necessary to perform their duties
- Clients, subcontractors, teaming partners and other parties involved in an engagement, where relevant to that engagement and with your knowledge or consent
- Our professional advisers, including legal, accounting and insurance advisers
- Third-party service providers who assist us to operate our business, including information technology, cloud hosting and data storage providers
- Government agencies, law enforcement or other parties where required or authorised by law
We take reasonable steps to ensure that third parties to whom we disclose personal information are bound by appropriate confidentiality and privacy obligations.
8. Direct Marketing
From time to time, we may use your personal information to provide you with information about our services, updates and other communications that may be of interest to you. You may opt out of receiving direct marketing communications from us at any time by contacting us using the details in Section 17, or by using any unsubscribe facility included in the communication. We will not use or disclose sensitive information for direct marketing purposes without your consent.
9. Disclosure of Personal Information Overseas
Some of the third-party service providers we use — for example, cloud hosting, data storage and software providers — may store or process personal information outside Australia. Where we disclose personal information to overseas recipients, we take reasonable steps to ensure that the information is handled in accordance with the APPs. The countries in which such recipients are located may change from time to time; where practicable, we will identify those countries on request.
10. Data Quality
We take reasonable steps to ensure that the personal information we collect, hold, use and disclose is accurate, up to date, complete and relevant. If you believe the personal information we hold about you is inaccurate, out of date or incomplete, please contact us and we will take reasonable steps to correct it.
11. Security and Storage of Personal Information
We hold personal information in both electronic and hard-copy form. We take reasonable steps to protect the personal information we hold from misuse, interference and loss, and from unauthorised access, modification or disclosure. These steps include physical, technical and administrative safeguards such as access controls, secure storage and staff confidentiality obligations.
We retain personal information only for as long as it is required for the purposes for which it was collected, or as required by law. When personal information is no longer required, we take reasonable steps to destroy or de-identify it.
12. Data Breaches
We are committed to responding promptly to any actual or suspected data breach. Where a data breach involving personal information is likely to result in serious harm to any individual, and we are unable to prevent that harm through remedial action, we will notify affected individuals and the Office of the Australian Information Commissioner (the OAIC) in accordance with the Notifiable Data Breaches scheme under the Privacy Act.
13. Cookies and Website Analytics
Our website may use cookies and similar technologies to improve your experience, analyse website traffic and understand how our website is used. Cookies are small data files stored on your device. You can configure your browser to refuse cookies or to notify you when cookies are being used; however, some parts of our website may not function properly if cookies are disabled. Any analytics information we collect through our website is generally used in aggregated or de-identified form.
14. Accessing and Correcting Your Personal Information
You may request access to the personal information we hold about you, and ask us to correct it, at any time by contacting us using the details in Section 17. We will respond within a reasonable period. In most cases we will provide access free of charge, although we may charge a reasonable fee to cover our costs in certain circumstances. There are some situations in which we may decline a request for access or correction, as permitted by the Privacy Act; if we do, we will give you written reasons and information about how you may complain.
15. How to Make a Complaint
If you have a concern or complaint about how we have handled your personal information, please contact our Privacy Officer using the details in Section 17. We will acknowledge your complaint and aim to resolve it promptly and fairly.
If you are not satisfied with our response, you may refer your complaint to the Office of the Australian Information Commissioner (OAIC) — website: www.oaic.gov.au; telephone: 1300 363 992.
16. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our business, technology or legal obligations. The current version will be published on our website and will apply from the date of publication. We encourage you to review this Privacy Policy periodically.
17. How to Contact Us
If you have any questions about this Privacy Policy, wish to access or correct your personal information, or wish to make a complaint, please contact:
The Privacy Officer
Blue Opal Advisory Pty Ltd
45 Monte Carlo Street, Wishart, Queensland 4122
Email: info@blueopaladvisory.com.au
Website: www.blueopaladvisory.com.au/privacy_polic
This Privacy Policy is governed by the laws of Queensland, Australia.
Approved for issue by:
Ron Parrello
Managing Director
Blue Opal Advisory Pty Ltd
Date: 21 July 2026
