Government data security consultation

The Government has been conducting a data security review, run by Dame Fiona Caldicott, the National Data Guardian for Health and Care. A report has now been produced with ten proposed standards:

  1. All staff ensure that personal confidential data is handled, stored and transmitted securely, whether in electronic or paper form. Personal confidential data is only shared for lawful and appropriate purposes.
  2. All staff understand their responsibilities under the National Data Guardian’s Data Security Standards including their obligation to handle information responsibly and their personal accountability for deliberate or avoidable breaches.
  3. All staff complete appropriate annual data security training and pass a mandatory test, provided through the revised Information Governance Toolkit.
  4. Personal confidential data is only accessible to staff who need it for their current role and access is removed as soon as it is no longer required. All access to personal confidential data on IT systems can be attributed to individuals.
  5. Processes are reviewed at least annually to identify and improve processes which have caused breaches or near misses, or which force staff to use workarounds which compromise data security.
  6. Cyber-attacks against services are identified and resisted and CareCERT security advice is responded to. Action is taken immediately following a data breach or a near miss, with a report made to senior management within 12 hours of detection.
  7. A continuity plan is in place to respond to threats to data security, including significant data breaches or near misses, and it is tested once a year as a minimum, with a report to senior management.
  8. No unsupported operating systems, software or internet browsers are used within the IT estate.
  9. A strategy is in place for protecting IT systems from cyber threats which is based on a proven cyber security framework such as Cyber Essentials. This is reviewed at least annually.
  10. Suppliers are held accountable via contracts for protecting the personal confidential data they process and meeting the National Data Guardian’s Data Security Standard.

The Government are seeking feedback on the proposed ten standards via an online survey, which is open until 7 September 2016.

Last updated : 19 Jul 2016

 

NHS delivery plan for tackling the Covid-19 backlog of care (22 Feb 2022)

The long-awaited NHS elective recovery plan was published in full earlier this month and sets out plans to tackle England’s elective care backlog over the next three years. The...
Read more »

Contacting patients with BT phone lines and ‘Call Protect’ (22 Feb 2022)

Patients with a BT landline may be knowingly or unknowingly opted into a service called ‘Call Protect’ which prevents some practice phone systems calling them properly. Affected practices will find...
Read more »

COPI Notices extended for a further three months until 30 June 2022 (22 Feb 2022)

Simon Madden, Director of Data Policy at NHSX ,on behalf of the Secretary of State for Health and Social Care, notified GP practices on 10 February 2022 that the COPI...
Read more »

End of free Covid-19 testing and mandatory self-isolation (22 Feb 2022)

On 21 February the Prime Minister announced the end of Covid restrictions and most support measures. Including: From 24 February people who test positive for Covid-19 will no longer...
Read more »

General practice issues in Parliament - February 2022 (21 Feb 2022)

For our February 2022 newsletter we round up recent activity happening in Westminster that affects general practice. Local councillors on Integrated Care Boards On the 9 February, Lord Kamall, Parliamentary...
Read more »

Mayor’s research – registering patients without proof of address or ID (21 Feb 2022)

The Greater London Authority, on behalf of the Mayor of London, is urgently seeking participants for research into barriers faced by GP surgeries when registering new patients without proof of...
Read more »

5–11-year-old Covid-19 vaccination (21 Feb 2022)

NHS England has confirmed the eligibility of this new cohort, saying that they expect primary care networks to vaccinate at-risk 5-11 year olds and community pharmacy to be the primary...
Read more »

Owning your practice premises - the essentials, February 2022 (03 Feb 2022)

Thursday 24 February 2022: 1.30pm to 4.30pm £95 per delegate for Londonwide practices £120 per delegate for practices from other areas This workshop is ideal for practices whose...
Read more »

Vaccination as Condition of Deployment (VCOD) measures set to be cancelled (01 Feb 2022)

Regulations requiring healthcare workers to be fully vaccinated by 1 April should no longer be applied, the Health Secretary Rt Hon Sajid Javid MP announced to Parliament on the evening...
Read more »

Waltham Forest LMC news update (31 Jan 2022)

Please click here to read the latest Waltham Forest LMC news update.
Read more »
Next Page »
« Previous Page