Third-Party Data Sharing Framework

State Government case study

A hand holding a cloud icon with a file icon and arrows pointing to a folder left and below, a laptop sits on a table to the right

Evinact was engaged by the Department of Transport and Main Roads to design and develop a solution that would support their ongoing commitment to ethical and innovative data sharing.

The context

The Department of Transport and Main Roads (TMR) had commenced a process of democratising its data holdings in order to enable business areas to make better use of data and improve services for its customers. They were also committed to implementing new and innovative ways of collecting, storing and using data, which presented a number of challenges, particularly for data management practices. As a result, the client needed to review their approach to enable sharing data with a range of third-parties.

Due to the complex nature of third-party data sharing, the client sought guidance from Evinact. 

We leveraged our expertise in information and data sharing to develop a Third-Party Data Access Framework that supports TMR to identify, manage and mitigate the risks of collecting and sharing data, including data of a sensitive nature.

Analysis of the current state revealed that the client shared data with a number of key stakeholders including:

  • other departments
  • other governments (local, state, territory and commonwealth)
  • universities and research bodies
  • industry bodies and not-for-profit organisations
  • commercial organisations, and
  • citizens.

The method

Evinact engaged with key internal stakeholders to understand the current data sharing principles and processes. We reviewed relevant legislation and existing data sharing agreements and leveraged our knowledge of internationally recognised data sharing standards and best practices to develop a comprehensive Third-Party Data Access Framework.

The Framework ensured that data access requests were consistently assessed against data sharing principles, and helped determine the terms and conditions required to enable safe data sharing.

As the client captures and manages sensitive data, it was important that the Framework provided data owners, custodians, and stewards with guidance on appropriate third-party access to sensitive data while mitigating associated risks. It also reduced the time required for data owners to identify and select appropriate data sharing agreements and improved service delivery for customers.

The impact

Evinact’s Third-Party Data Access Framework has enabled TMR to share data more confidently, consistently and responsibly. By strengthening governance, streamlining decision-making and embedding risk-based controls, the organisation can safely unlock greater value from its data assets while protecting sensitive information, maintaining public trust and supporting innovation, collaboration and evidence-based decision-making.

Stay up to date with Evinact on LinkedIn. Get in touch to work with us.

This engagement was originally completed as GWI.

Michelle Teis

Michelle is a senior executive with 30 years of leadership experience in data strategy, governance, management and analytics. With a strong foundation in promoting data-driven decision-making, Michelle is a trusted advisor to other C-Suite executives.​

Michelle Teis Headshot - Michellle wears a blue blouse with a white necklace and earrings.

Related Services

  • Data

    Harnessing the power of data from strategy to execution.
  • Ready to turn your evidence into action? Get in touch now.

    Get Started

    Related case studies