{"id":558,"date":"2022-06-03T08:54:15","date_gmt":"2022-06-03T08:54:15","guid":{"rendered":"https:\/\/peer.com.au\/peerconstruction\/?page_id=558"},"modified":"2022-07-04T04:00:32","modified_gmt":"2022-07-04T04:00:32","slug":"report-a-compliance-breach-procedure","status":"publish","type":"page","link":"https:\/\/peer.com.au\/peerconstruction\/report-a-compliance-breach-procedure\/","title":{"rendered":"Report a compliance breach procedure"},"content":{"rendered":"<p>[et_pb_section fb_built=&#8221;1&#8243; admin_label=&#8221;intro background&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; background_color=&#8221;#1E1E1E&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row column_structure=&#8221;1_2,1_2&#8243; admin_label=&#8221;Title banner&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text admin_label=&#8221;Title&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; text_font=&#8221;Raleway||||||||&#8221; text_text_color=&#8221;#1E1E1E&#8221; header_font=&#8221;Raleway|600|||||||&#8221; header_text_color=&#8221;#FAA61A&#8221; header_font_size=&#8221;45px&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h1>Report a compliance breach procedure<\/h1>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_2&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; text_font=&#8221;Raleway||||||||&#8221; text_text_color=&#8221;#FFFFFF&#8221; text_font_size=&#8221;20px&#8221; custom_padding=&#8221;||0px|||&#8221; global_colors_info=&#8221;{}&#8221;]PEER Construction has implemented a Compliance Management Framework &#8211; Governing Policy. This framework outlines PEER Construction\u2019s commitment to maintain and improve the framework and processes. PEER Construction will allocate appropriate resources to the implementation, and continuous improvement of its Compliance Management Framework.[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row column_structure=&#8221;3_4,1_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;3_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text admin_label=&#8221;Purpose and scope&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; custom_padding=&#8221;||0px|||&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h2>Purpose<\/h2>\n<p>The purpose of this procedure is to provide direction and information for employees who are reporting a compliance breach.[\/et_pb_text][\/et_pb_column][et_pb_column type=&#8221;1_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_search _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_search][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; background_color=&#8221;#F5F5F5&#8243; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_text admin_label=&#8221;H2 text to accordion grey backgorund&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<h2>Identification and notification<\/h2>\n<p>The required steps and actions to be followed for reporting and investigating compliance breaches, or potential breaches, are detailed below:<\/p>\n<p>[\/et_pb_text][et_pb_accordion admin_label=&#8221;Accordion grey background&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_accordion_item title=&#8221;1. Initial identification and notification&#8221; open=&#8221;off&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<table border=\"1\" style=\"border-collapse: collapse; width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">Procedure<\/td>\n<td style=\"width: 33.3333%;\">Responsibility<\/td>\n<td style=\"width: 33.3333%;\">Timeframe<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">\n<p>a) Employees should notify their supervisor or appropriate supervisor of the breach or potential breach.<\/p>\n<p>b) If an employee feels they are unable to discuss the breach with their supervisor, they should contact the manager.<\/p>\n<p>c) Breaches or potential breaches can be reported anonymously.<\/p>\n<p>d) Upon receiving notification of a breach or potential breach, the supervisor should notify the manager by telephone or email.<\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">\n<p>Employee who notices the breach or potential breach \/ failure<\/p>\n<p>Supervisor \/ manager<\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">Immediately or as soon as practicable.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>[\/et_pb_accordion_item][et_pb_accordion_item title=&#8221;2. Breach containment&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; open=&#8221;off&#8221;]<\/p>\n<table border=\"1\" style=\"border-collapse: collapse; width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">Procedure<\/td>\n<td style=\"width: 33.3333%;\">Responsibility<\/td>\n<td style=\"width: 33.3333%;\">Timeframe<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">\n<p>a) The supervisor should take immediate, common sense steps to limit or contain the breach. Depending on the nature of the breach, different actions may be required e.g. stop the unauthorised practices; recover any records; suspension of employment in consultation with Human Resources; etc.<\/p>\n<p>b) Do not compromise the ability to investigate the breach. Do not destroy evidence that may be valuable in determining the cause or allow corrective action to be taken.<\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">Supervisor \/ manager<\/td>\n<td style=\"width: 33.3333%;\">Immediately or as soon as practicable.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>[\/et_pb_accordion_item][et_pb_accordion_item title=&#8221;3. Breach assessment and escalation&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; open=&#8221;off&#8221;]<\/p>\n<table border=\"1\" style=\"border-collapse: collapse; width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">Procedure<\/td>\n<td style=\"width: 33.3333%;\">Responsibility<\/td>\n<td style=\"width: 33.3333%;\">Timeframe<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">\n<p>a) Assess the concerns raised to substantiate if there is an obvious prima facie case that a breach has occurred.<\/p>\n<p>b) Evaluate the risk level in accordance with Risk management policy. In all instances, the breach should be notified to the manager<\/p>\n<p>c) For breaches that are considered significant this may require an Incident Report is completed depending on how critical the incident is.<\/p>\n<p>d) For significant breaches, the manager is to be advised. Relevant members of PEER Construction will be involved as appropriate. The reporting and communication of breaches must be discussed with the manager.<\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">Manager<\/td>\n<td style=\"width: 33.3333%;\">Immediately or as soon as practicable.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>[\/et_pb_accordion_item][et_pb_accordion_item title=&#8221;4. Investigation and reporting&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; open=&#8221;off&#8221;]<\/p>\n<table border=\"1\" style=\"border-collapse: collapse; width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">Procedure<\/td>\n<td style=\"width: 33.3333%;\">Responsibility<\/td>\n<td style=\"width: 33.3333%;\">Timeframe<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">\n<p>a) If necessary, an investigation should be undertaken. The level of investigative effort should reflect the seriousness of the breach.<\/p>\n<p>b) Investigations should:<br \/>\u2022 determine the root causes.<br \/>\u2022 identify whether it was a systemic breach, an isolated incident, or a deliberate act.<br \/>\u2022 identify appropriate actions to strengthen the control environment and prevent similar breaches from occurring.<br \/>\u2022 be completed in a timely manner.<\/p>\n<p>c) The investigation outcome should be reported to the manager.<\/p>\n<p>d) All significant breaches should be reported to the manager. Where breaches involve alleged criminal activity, this should be referred to the appropriate law enforcement, PEER Construction or authorities for investigation.<\/p>\n<p>e) Mandatory reporting requirements to Regulators and relevant external bodies should be complied with. Reporting of significant breaches will be discussed and managed by the manager.<span style=\"font-size: 14px;\">\u00a0<\/span><\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">\n<p>Manager of area where the breach occurred<\/p>\n<p>Manager<\/p>\n<p>&nbsp;<\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">Commence investigation immediately after the breach has been assessed and contained.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>[\/et_pb_accordion_item][et_pb_accordion_item title=&#8221;5. Implementation of corrective action&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; open=&#8221;off&#8221;]<\/p>\n<table border=\"1\" style=\"border-collapse: collapse; width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">Procedure<\/td>\n<td style=\"width: 33.3333%;\">Responsibility<\/td>\n<td style=\"width: 33.3333%;\">Timeframe<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">\n<p>Corrective and\/or preventative actions will be implemented within agreed timeframes.<\/p>\n<p>a) Where systemic issues are identified, an improvement plan should be developed to address policy and\/or process improvement. In addition, the controls listed in the compliance register will be reassessed and strengthened.<\/p>\n<p>b) The appropriate manager should monitor to ensure corrective actions are completed.<span style=\"font-size: 14px;\">\u00a0<\/span><\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">Manager of area where the breach occurred<\/td>\n<td style=\"width: 33.3333%;\">As recommended or agreed.<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>[\/et_pb_accordion_item][et_pb_accordion_item title=&#8221;6. Breach recording\/register&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; open=&#8221;off&#8221;]<\/p>\n<table border=\"1\" style=\"border-collapse: collapse; width: 100%;\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">Procedure<\/td>\n<td style=\"width: 33.3333%;\">Responsibility<\/td>\n<td style=\"width: 33.3333%;\">Timeframe<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">\n<p>a) A central register of compliance breaches or potential breaches will be maintained in an approved and secure record keeping system, in accordance with the Privacy Act 1988 and the PEER Construction\u2019s Information Management Framework &#8211; Governing Policy and associated procedures.<\/p>\n<p>b) The register will include a record of all reported breaches\/potential breaches, investigations, corrective actions undertaken, and include breaches referred for external resolution.<span style=\"font-size: 14px;\">\u00a0<\/span><\/p>\n<\/td>\n<td style=\"width: 33.3333%;\">Manager<\/td>\n<td style=\"width: 33.3333%;\">Continuously<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>[\/et_pb_accordion_item][et_pb_accordion_item title=&#8221;Compliance monitor and review&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221; open=&#8221;on&#8221;]<\/p>\n<p>Compliance performance should be monitored annually as part of the annual compliance process, and throughout the year. This can be done with:<\/p>\n<ul>\n<li>external audits<\/li>\n<li>self-assessment checklists<\/li>\n<li>internal audits<\/li>\n<li>incident report<\/li>\n<li>complaints register.<\/li>\n<\/ul>\n<p>When a non-compliance(s) is identified an email must be sent to management detailing the non-compliance(s), what legislation was breached and what actions should be taken to rectify the non-compliance(s). You must also prioritise the actions you choose in order of importance.<\/p>\n<p>[\/et_pb_accordion_item][\/et_pb_accordion][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_row _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_column type=&#8221;4_4&#8243; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][et_pb_tabs admin_label=&#8221;References and related&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; sticky_enabled=&#8221;0&#8243;][et_pb_tab title=&#8221;References&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; sticky_enabled=&#8221;0&#8243;]Fair Work Act 2009<br \/>\nPrivacy Act 1988[\/et_pb_tab][et_pb_tab title=&#8221;Related&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; hover_enabled=&#8221;0&#8243; global_colors_info=&#8221;{}&#8221; sticky_enabled=&#8221;0&#8243;]Code of conduct and ethics policy<br \/>\nCompliance policy[\/et_pb_tab][et_pb_tab title=&#8221;Version &#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;]<\/p>\n<p>Version 1.0 &#8211; Last updated 19\/2\/2022<\/p>\n<p>[\/et_pb_tab][\/et_pb_tabs][\/et_pb_column][\/et_pb_row][\/et_pb_section][et_pb_section fb_built=&#8221;1&#8243; fullwidth=&#8221;on&#8221; _builder_version=&#8221;4.17.4&#8243; _module_preset=&#8221;default&#8221; global_colors_info=&#8221;{}&#8221;][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Report a compliance breach procedurePEER Construction has implemented a Compliance Management Framework &#8211; Governing Policy. This framework outlines PEER Construction\u2019s commitment to maintain and improve the framework and processes. PEER Construction will allocate appropriate resources to the implementation, and continuous improvement of its Compliance Management Framework.Purpose The purpose of this procedure is to provide direction [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"class_list":["post-558","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/pages\/558","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/comments?post=558"}],"version-history":[{"count":5,"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/pages\/558\/revisions"}],"predecessor-version":[{"id":1426,"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/pages\/558\/revisions\/1426"}],"wp:attachment":[{"href":"https:\/\/peer.com.au\/peerconstruction\/wp-json\/wp\/v2\/media?parent=558"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}