Office of the Australian Information Commissioner, Guide to Undertaking Privacy Impact Assessments (May 2014) (full-text).
This PIA Guide sets out a suggested ten-step process for undertaking a Privacy Impact Assessment (PIA). It can be used alongside existing project management and risk management methodologies or as a process in its own right. When considering the PIA process both government agencies and private sector organisations could consider whether the process set out in this Guide could be adapted to suit specific business needs or functions of the entity. While different entities might use different processes when they undertake PIAs, ideally these processes will address each of these steps in some way.