Employer Services Online (ESO) Terms of Use
Employer Services Online (ESO) is a secure online service provided by Commonwealth Superannuation Corporation (CSC) ABN 48 882 817 243, AFSL 238069, RSE Licence No. L0001397.
ESO enables authorised employers and their representatives to access and administer information relating to CSC superannuation arrangements, including employee eligibility information, contribution processing, member administration activities, reporting and other services made available through ESO from time to time.
Access to and use of ESO is governed by these Terms of Use and any other applicable terms published by CSC. By registering for, accessing or using ESO, you agree to be bound by these Terms of Use and CSC's Privacy Policy. These Terms of Use apply to each use of ESO.
CSC may amend these Terms of Use from time to time. Where a change has a material impact on the functionality of ESO or your obligations as a user, CSC will endeavour to provide reasonable notice. Your continued access or use of ESO will constitute acceptance of such amendments.
1. Your Responsibilities
1.1 Authorised Users
Only individuals authorised by an Authorising Officer of your organisation may access and use ESO.
Without limiting its other responsibilities under these Terms of Use, the employer is responsible for ensuring that access to ESO is limited to appropriately authorised personnel and that user access is reviewed and maintained on an ongoing basis.
Authorising Officers are responsible for:
- requesting, approving, amending and removing ESO User access
- ensuring users are granted the appropriate level of access for their role and business requirements
- maintaining accurate and current user access permissions
- promptly notifying CSC when a user no longer requires access, changes role or leaves the organisation
- ensuring ESO Users understand and comply with these Terms of Use and any reasonable instructions issued by CSC relating to the use of ESO, and any applicable employer policies relating to privacy, security and authorised system use.
ESO Users are responsible for:
- accessing and using ESO only for authorised employer administration purposes
- using only the access credentials assigned to them
- maintaining the confidentiality and security of their usernames, passwords, access codes and authentication methods
- ensuring information viewed, processed or submitted through ESO is handled appropriately and in accordance with applicable privacy, confidentiality and security obligations
- reporting any actual or suspected unauthorised access, security incident or compromise of credentials to their employer and CSC promptly
- complying with these Terms of Use and any reasonable instructions issued by CSC relating to the use of ESO.
Access levels may include:
Read Only
- Access to view employer and employee information available through ESO.
Read/Write
- Access to submit, amend and upload information through ESO, including contribution data, payroll-related transactions and other authorised employer administration activities.
The employer is responsible for all activities performed using its authorised ESO accounts and for ensuring that the ESO Users comply with these Terms of Use and any reasonable instructions issued by CSC relating to the use of ESO.
1.2 Multi-Factor Authentication (MFA)
CSC may make Multi-Factor Authentication (MFA) available to ESO Users as an additional security feature to help protect access to ESO and employer information.
Where MFA is available, ESO Users may choose to enrol in and use MFA to strengthen the security of their ESO account. Certain ESO features or self-service functions may only be available to users who have elected to use MFA.
CSC may introduce, expand, modify or mandate MFA or other identity verification requirements for some or all ESO Users at any time where reasonably necessary to protect the security of ESO, employer information, member information or CSC systems.
If MFA or other authentication requirements become mandatory for particular ESO functions, access to those functions may be restricted until the required verification steps have been completed.
1.3 Keep Your Information Secure
You must take all reasonable steps to protect:
- your username
- passwords
- access numbers
- authentication credentials
- MFA methods
- devices used to access ESO.
You must ensure these details are not disclosed, shared or made available to any unauthorised person.
You should not:
- store passwords or access credentials in an insecure manner
- permit another person to access ESO using your credentials
- access ESO using unsecured public or shared devices where security cannot be assured
- enable browser settings that may compromise the security of your account.
1.4 Unauthorised Access and Security Incidents
You must notify CSC immediately if you become aware of, or reasonably suspect:
- unauthorised access to ESO
- misuse of ESO credentials
- compromised usernames, passwords or authentication methods
- unauthorised transactions or submissions
- any security incident affecting ESO access.
Where credentials are believed to be compromised, users must immediately change their credentials and contact CSC Employer Services using the contact details published on the CSC website.
1.5 Responsibility for information submitted through ESO
You are responsible for ensuring all information submitted through ESO is:
- accurate
- complete
- current
- authorised; and
- compliant with applicable laws.
This includes employee data, contribution information, payroll submissions, membership details and any other information submitted through ESO.
You are responsible for:
- promptly updating any information that becomes inaccurate, incomplete or outdated
- promptly notifying CSC if you become aware of any information submitted through ESO that is incorrect, unauthorised or in breach of applicable law(s)
- ensuring ESO Users monitor submission statuses, notifications, warnings and error messages in ESO
- taking any necessary action to address issues identified by the system.
A status confirming submission does not confirm that a transaction has been fully processed or accepted. You remain responsible for checking relevant ESO statuses, notifications, warnings and error messages.
CSC will take reasonable steps to ensure that information made available through ESO is accurate and updated based on information provided to CSC. If you notify CSC of an error and provide any information reasonably required to investigate it, CSC will take reasonable steps to correct the error or advise you of the expected timeframe for resolution.
To the extent permitted by law, CSC is not liable for any loss, damage or liability arising from:
- inaccurate, incomplete, outdated or unauthorised information submitted through ESO
- CSC relying on information submitted through ESO
- any failure by you or an ESO User to monitor and respond to ESO statuses, notifications, warnings or error messages
2. Appropriate Use of ESO
You must only access and use ESO for legitimate employer administration purposes.
You must not:
- access information for which you are not authorised
- attempt to gain unauthorised access to any CSC system
- interfere with the operation of ESO
- upload malicious software or code
- use ESO in a manner that breaches any law, privacy obligation or security requirement
- access, use or disclose information obtained through ESO for any unauthorised purpose.
CSC reserves the right to suspend, restrict or terminate access to ESO at any time without notice where misuse is identified or suspected.
3. CSC's Rights
To protect information and maintain system security, CSC may:
- suspend or revoke access to ESO
- restrict specific functions
- require additional identity verification
- investigate suspicious activity
- take any action reasonably necessary to protect CSC systems, employer data or member information.
CSC may do so without prior notice where, in CSC’s reasonable opinion, security concerns exist.
CSC may modify, upgrade, replace, suspend or discontinue ESO features from time to time and will endeavour to provide notice of significant changes.
4. Warranties and Disclaimer
ESO is provided on an “as is” and “as available” basis. Except as otherwise required by law, all express or implied warranties, guarantees, representations, conditions and terms relating to ESO are excluded to the maximum extent permitted by law.
Nothing in these Terms of Use excludes any rights that cannot lawfully be excluded under applicable legislation, including the Australian Consumer Law.
Without limitation, CSC does not warrant that:
- ESO will be uninterrupted or error-free
- ESO is fit for the employer’s particular purposes;
- ESO will always be available
- information displayed through ESO will always be accurate, complete or current
- ESO will be free from viruses, malware or other harmful components
- unauthorised access will never occur.
ESO is delivered through internet-based technologies and its availability may be affected by factors outside CSC's control.
To the extent permitted by law, CSC is not liable for any direct, indirect, incidental, consequential or special loss arising from or in connection with ESO, including the employer or any ESO User’s access to, reliance upon, or inability to use ESO.
5. Information Disclaimer
Information made available through ESO is provided for employer administration purposes.
While CSC takes reasonable care to ensure information is accurate at the time it is provided, CSC does not warrant the completeness, currency or accuracy of information available through ESO.
Where any inconsistency exists between information displayed in ESO and applicable legislation (including governing trust deeds and Scheme Rules), the legislation will prevail
6. Privacy
Employers and users must handle all personal information accessed through ESO in accordance with applicable privacy laws, CSC’s Privacy Policy and security obligations.
CSC may collect, use, store and disclose personal information:
- to provide superannuation services
- to administer ESO
- to maintain security and prevent fraud
- to comply with legal and regulatory obligations
- as otherwise described in CSC's Privacy Policy.
CSC will take reasonable precautions to safeguard confidential information and personal information that is provided to CSC electronically through ESO. CSC may disclose confidential information pursuant to any applicable law or legally binding order of any court, government, semi government authority, administrative or judicial body, or a requirement of a regulator.
All personal information will be handled in accordance with applicable legislation and CSC’s Privacy Policy, available on the CSC website.
7. Activity Monitoring and Cookies
CSC may monitor, log and audit activity within ESO for security, compliance and operational purposes.
Information collected may include:
- user identifiers
- login activity
- dates and times of access
- submitted transactions
- pages or services accessed
- system and browser information.
ESO may use session cookies and similar technologies to support authentication, security and functionality. Session cookies generally expire when a user logs out or closes their browser.
8. Intellectual Property
Unless otherwise stated, CSC owns or licences all intellectual property rights in ESO and its content.
Subject to these Terms of Use, you may only use ESO content to the extent necessary to perform authorised employer administration activities.
Except as permitted by law or with CSC's prior written consent, you must not reproduce, copy, distribute, transmit, modify or exploit any ESO content for any purpose.
The employer grants CSC a non-exclusive, worldwide and non-revocable license to use, store, modify, access or otherwise deal with any information submitted by the employer or its ESO Users through ESO to the extent reasonably required in connection with administering ESO or providing superannuation services.
9. Contact Us
If you have any questions regarding ESO, these Terms of Use, access security, or suspected unauthorised access, please contact CSC Employer Services at [email protected] or phone 1300 338 240.
10. Definitions
Unless the contrary intention appears, the terms set out below have the following meanings:
Authorising Officer means a person authorised by an employer to approve and manage ESO user access.
CSC means Commonwealth Superannuation Corporation ABN 48 882 817 243 AFSL 238069 RSE Licence No. L0001397.
ESO means Employer Services Online.
ESO User means an individual authorised by an Authorising Officer to access ESO.
Multi-Factor Authentication (MFA) means a security process that requires two or more methods of identity verification before access is granted.
Scheme Rules means the legislation, trust deeds and governing rules applicable to CSC superannuation schemes.
You, your or yours means the employer organisation and any authorised ESO Users or Authorising Officer acting on its behalf.