Data Breach Report
Detects data breach reports including breach details, affected individuals, and OAIC notifications.
- Type
- keyword_list
- Confidence
- medium
- Confidence justification
- Medium confidence: keyword-based detection requires corroborative evidence for accurate identification.
- Jurisdictions
- au
- Regulations
- IPA 2009 (Qld), Privacy Act 1988 (Cth)
- Frameworks
- ISO 27001
- Data categories
- security, privacy, legal
- Scope
- narrow
- Risk rating
- 8
Should match
Data breach report received for triage.— Exact 65 discovery probe - report phrase without response, notification, or affected-person evidenceData breach assessment: forensic analysis completed after containment.— Exact 75 probe - incident-response evidence without notification and affected-person evidenceNotifiable data breach report: OAIC notification issued to affected individuals.— Exact 85 probe - regulatory notification and affected-person evidenceNotifiable data breach report: OAIC notification for affected individuals— Test match 1Data breach assessment: eligible data breach with serious harm evaluation— Test match 2Breach notification and breach remediation plan per NDB scheme— Test match 3
Should not match
Breach of contract claim— Non-match 1The dam breach caused flooding— Non-match 2Sample template for notifying the privacy regulator after personal information exposure.— Adjacent template language is not a populated breach recordThe public catalogue lists an incident-notification document.— Public catalogue metadata has no data-breach primarySecurity incident report: forensic analysis and containment completed.— Sibling cyber-report language does not satisfy the data-breach primary
Known false positives
- Non-data breach uses of breach. Mitigation: Require data-specific breach terms like NDB, OAIC, or affected individuals.