Privacy Policy

The Concrete Institute of Australia (CIA) is an independent not-for-profit professional association providing technical resources, educational seminars and courses, networking events, and industry collaboration opportunities for the professional development of members who share a common interest in the pursuit of excellence in research, innovation, technology, design, construction and sustainability of concrete in Australia.

The CIA understands the importance of your privacy and this statement outlines the Institute’s policy on how we collect, use and manage personal information.

The Institute is bound by the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth), as amended by the Privacy Amendment (Enhancing Privacy Protection) Act 2012. The APPs regulate how personal information is handled by the Institute. In line with Section 6EA of the Privacy Act the Institute has “opted in” to be treated as an organisation for the purposes of the Privacy Act and therefore subject to the Australian Privacy Principles (APPs) and any relevant APP code.

The Institute will review and update this Privacy Policy as required to take account of new laws and technology, changes to the Institute’s operations and practices and to make sure it remains appropriate to the changing legal environment.

Types of personal information we collect and hold, and how we collect it

The type of information the Institute collects and holds includes (but is not limited to) personal information that pertain to Membership contact details (name, address, email, phone) and relevant information (name of employer, employment position, qualifications, industry sector). In some instances applicants are required to provide their date of birth to confirm their eligibility for a particular category of Membership.

The Institute recognises your right to not provide your personal details, however this may mean that we are unable to deliver you with the services requested.

The Institute will generally collect personal information held about an individual by way of Membership applications, event registration, purchase of resources or other, and from received correspondence.

In some circumstances the Institute may be provided with personal information about an individual from a third party, for example – from an employer about an employee.

How do we use the personal information you provide?

The primary purpose in collecting information from you is to enable us to provide services as per your membership or transaction request. We will only collect and store information about you that is necessary to deliver these services or for secondary reasons that you would reasonably expect, or to which you have consented.

Who do we share your personal information with?

Access to member contact information is limited to staff and volunteers who require it to perform their official duties. Member details must not be shared with, or disclosed to, any third party without the member’s explicit consent, unless required by law. This includes committee members, presenters, sponsors, commercial partners, event delegates, event exhibitors, external researchers, or other members.

Where communication between members is necessary (for example, for committee or working group purposes), contact will be facilitated by the organisation or shared only where prior consent has been obtained. Any breach of this policy may be treated as a serious matter and subject to disciplinary action. Further, the information you provide will not be disclosed to third-parties except in the instances where the third-party is carrying out a function that allows the Institute to deliver on an expected service. In such instances the third-party is required to sign a confidentiality agreement with the Institute. The Institute does not permit third parties to use information about you for any other purpose than to perform the services that the Institute has instructed them to provide.

In summary, the Institute will not disclose personal information, including overseas entities, without your consent, for any purpose other than for the primary purpose of fulfilling our business commitments to you, except where:

• It is required or authorised by law, or for purposes of law enforcement and matters directly related to law enforcement, or the prevention of unlawful activity;
• The Institute reasonably believes it is necessary to prevent any serious and imminent threat to any person’s life, health or safety or the public’s health or safety.

Register of Members

As a registered company (limited by guarantee) with the ASIC the Institute is bound by the Corporations Act 2001. Section 169 of the Act requires the Institute to maintain a Register of Members. Included on the register is the member’s name, address and the date they were added to the Register. Section 172 of the Act prescribes the circumstances under which parties may request to inspect the Register of Members.

How do we manage storage and security of personal information?

The Institute does not hold any personal information in-house. The Institute employs cloud SAAS systems for the management of data. The SAAS server are located in Azure platform on Australian server locations. The servers security and resiliency is outlined in the suppliers Compliancy policy, for a copy of this, please reach out to membership@concreteinstitute.com.au.

The Institutes portal is protected with multi-factor authentication for staff accounts.

When you use our website, having your “cookies” enabled will allow us to maintain the continuity of your browsing session and remember your details when you return. If you adjust your browser settings to block, reject or delete these functions, the webpage may not function in an optimal manner.

When purchasing Institute products and services via the Institute’s website your financial details are passed through a secure 3rd party payment gateway service using the latest industry standards for credit card and payment protection. For further information please see the supplier’s privacy policy – link to webpage. The Institute does not capture any credit card information.

All Institute staff are trained and required to respect the confidentiality of personal information and the privacy of individuals.

Accessing or correcting personal information

You have the right to check what personal information the Institute holds about you. You may at any time access your personal information by logging into your personal member account. To ensure our information is accurate we encourage you to login to your account and review your personal information. Alternatively, you can contact us at member@concreteinstitute.com.au or on +61 2 9955 1744.

The Institute will require you to verify your identity and specify what information you require.

Breaches of your privacy and further information

If you believe that the Institute has breached your right to privacy or would like more information on the Institute’s Privacy Policy, please contact us at:

Attn: Membership and Operations Manager
Email: member@concreteinstitute.com.au
Phone: 02 9955 1744

The Institute will investigate and endeavour to resolve your complaint within a reasonable time however if you are not satisfied with the Institute’s response you may lodge a formal complaint with:

Office of the Australian Information Commissioner
Web: www.oaic.gov.au
Email: enquiries@oaic.gov.au
Phone: 1300 363 992

David Millar
Chief Executive Officer
Concrete Institute of Australia
Updated – November 2025