(1) This policy affirms RMIT’s commitment to compliance management and outlines the framework and objectives for managing compliance obligations. It promotes a positive compliance culture that fosters ethical conduct and supports good governance and operational excellence at RMIT. (2) The process for identifying, monitoring and reporting on compliance management is detailed in the Compliance Procedure and Compliance Breach Management Procedure, both of which are to be read in conjunction with this policy. (3) RMIT is subject to a wide range of compliance obligations, including compliance requirements under applicable laws, regulations, standards, codes of practice, and compliance commitments made by RMIT. (4) Compliance management involves identifying, implementing, assessing and reviewing compliance with obligations. To effectively address the pace of change in an evolving regulatory environment, compliance management is continuous and timely. This approach supports decision-making and management practices, and integrates with the RMIT risk management framework. (5) This policy outlines: (6) Throughout this policy and its associated policy resources, RMIT means the (7) This policy applies to all staff, researchers, affiliates, contractors and volunteers of the (8) RMIT is committed to: (9) RMIT’s Compliance Policy is informed by governance structures and instruments, including but not limited to: (10) The Audit and Risk Management Committee assists the RMIT University Council in discharging its responsibilities to the (11) Members of the Vice-Chancellor's Executive: (12) The Executive Director, Governance, Legal and Strategic Operations is responsible for the Compliance Policy and its associated procedures and resources. (13) The Central Compliance Team: (14) Legislative Owners and Legislative Specialists: (15) All staff and researchers remain individually accountable for their actions as members of the (16) Contractors and volunteers have a responsibility to: (17) Regular reporting on material breaches, trends, systemic issues, and the level of compliance across the (18) To ensure appropriate visibility, oversight and governance of compliance management, the Central Compliance Team coordinates biannual reporting to VCEM and ARMC, with input from Legislative Owners and Legislative Specialists. When in-depth discussions on specific legislation are required, Legislative Owners will lead these discussions at relevant governance meetings. (19) The Education Regulation, Compliance and Assurance (ERCA) team: (20) The Internal Audit team: (21) The Central Compliance Team monitors compliance with this policy and reports on breaches to internal governance bodies, as required, in accordance with the Compliance Breach Management Procedure. (22) Breaches of this policy by a staff member are managed in accordance with the Code of Conduct and the Compliance Breach Management Procedure as appropriate. (23) Staff who knowingly or recklessly breach a compliance obligation may be subject to applicable legislative penalties or disciplinary action. (24) This policy is maintained by the Central Compliance Team and is reviewed every five years in accordance with the Policy Governance Policy. (25) Periodic reviews will align with ISO 37301:2021 Intentional Standard for Compliance Management. (26) Compliance Procedure (27) Compliance Breach Management Procedure (28) Compliance Escalation Guide.Compliance Policy
Section 1 - Purpose
Section 2 - Overview
Top of PageSection 3 - Scope
Section 4 - Policy
Principles
Responsibilities
Assurance
Compliance
Review
Section 5 - Procedures and Resources
Section 6 - Definitions
View Document
This document is not in force yet. It will take effect from 03/02/2025. To view current or historic versions, click the relevant link in the document's navigation bar.
(Note: Commonly defined terms are in the RMIT Policy Glossary. Any defined terms below are specific to this policy).
Accountable Officer
A member of the VCE or a specified legislative or regulatory delegate who is accountable for resourcing and nominating Legislative Owners and Legislative Specialists.
Breach
A failure to meet the clauses, principles, or requirements of regulatory, contractual and legislative obligations or RMIT policies and procedures. Significant or material breaches may be reportable to an external agency or regulator. See also: Material breach
Compliance
Meeting all requirements of laws, regulations, statutes, standards and policies.
Compliance attestation
A verification process undertaken by Accountable Officers (members of the Vice-Chancellor's Executive), where they attest to the effectiveness of internal controls and compliance or non-compliance with obligations that are relevant to their areas of operation throughout RMIT.
Compliance Breach Register
A record of breaches of RMIT’s compliance obligations, managed by the Central Compliance Team.
Compliance management
The coordinated institutional approach to identifying, assessing, managing, monitoring, and reporting compliance obligations, risks and performance across the RMIT Group .
Compliance obligation
Refers to any legal, regulatory, contractual or internal requirement that RMIT must adhere to. This includes obligations arising from legislation, regulations, standards, codes of practice, contracts, and internal policies and procedures that govern RMIT’s operations and activities and ensures that RMIT meets its responsibilities to staff, students, government bodies and the broader community.
Legislative Owner
Legislative Owners are senior officers responsible for compliance with specific obligations and provide leadership to ensure requirements are met. They are accountable for guiding the implementation of compliance processes, systems and controls within their area, as well as implementing compliance action plans. Additionally, they are responsible for nominating Legislative Specialists for the Central Compliance Team to liaise with.
Legislative Specialist
Subject-matter experts with operational knowledge of how specific legislation or Acts apply to RMIT. They support the Legislative Owner in implementing the Compliance Policy, provide advice about specific legislation, and are responsible for facilitating or undertaking assessments against obligations.
Material breach
A severe and significant breach, in terms of scale and/or regulatory requirements, or with implications for safety and security, and/or legal requirements. See also: Breach.