Government data security consultation

The Government has been conducting a data security review, run by Dame Fiona Caldicott, the National Data Guardian for Health and Care. A report has now been produced with ten proposed standards:

  1. All staff ensure that personal confidential data is handled, stored and transmitted securely, whether in electronic or paper form. Personal confidential data is only shared for lawful and appropriate purposes.
  2. All staff understand their responsibilities under the National Data Guardian’s Data Security Standards including their obligation to handle information responsibly and their personal accountability for deliberate or avoidable breaches.
  3. All staff complete appropriate annual data security training and pass a mandatory test, provided through the revised Information Governance Toolkit.
  4. Personal confidential data is only accessible to staff who need it for their current role and access is removed as soon as it is no longer required. All access to personal confidential data on IT systems can be attributed to individuals.
  5. Processes are reviewed at least annually to identify and improve processes which have caused breaches or near misses, or which force staff to use workarounds which compromise data security.
  6. Cyber-attacks against services are identified and resisted and CareCERT security advice is responded to. Action is taken immediately following a data breach or a near miss, with a report made to senior management within 12 hours of detection.
  7. A continuity plan is in place to respond to threats to data security, including significant data breaches or near misses, and it is tested once a year as a minimum, with a report to senior management.
  8. No unsupported operating systems, software or internet browsers are used within the IT estate.
  9. A strategy is in place for protecting IT systems from cyber threats which is based on a proven cyber security framework such as Cyber Essentials. This is reviewed at least annually.
  10. Suppliers are held accountable via contracts for protecting the personal confidential data they process and meeting the National Data Guardian’s Data Security Standard.

The Government are seeking feedback on the proposed ten standards via an online survey, which is open until 7 September 2016.

Last updated : 19 Jul 2016

 

Special Conference of English LMCs – 11 March 2020 (19 Feb 2020)

Representatives from your LMCs and those across the rest of England will meet in London on Wednesday, 11 March to discuss the 2020/21 GP Contract. The conference was called following...
Read more »

LMC elections 2020 – make your voice heard (19 Feb 2020)

This year every LMC seat is up for election. Any GP working in one of the 27 London boroughs we represent may be nominated for election regardless of their contractual...
Read more »

Free practice manager training and development opportunities (19 Feb 2020)

We have a wide range of exciting professional development opportunities, fully funded, for practice managers in 2020, as part of our Practice Manager Development project. The funding for this activity...
Read more »

Updated coronavirus guidance for practices (19 Feb 2020)

NHS England and Improvement updated guidance to practices on 18 February 2020. The briefing for primary care providers can be viewed here. This includes: Advice to the public,...
Read more »

Removal of fax machines from your practice – NHS guidance (19 Feb 2020)

The GP Contract states that practices should stop using fax machines for either NHS or patient communications by April 2020. New NHS guidance is now available to assist you...
Read more »

Updated 2020-21 GP contract (07 Feb 2020)

GPC England has negotiated an update to the GP Contract 2020/21 - 2023/24. This includes revisions to the draft PCN DES service specifications which were published just before Christmas 2019....
Read more »

BMA advice on Wuhan novel coronavirus (WN-CoV) (05 Feb 2020)

The BMA have issued advice on handling patients with suspected Wuhan novel coronavirus (WN-CoV). It is primarily based around isolating individuals in their homes or in a room of the practice where they...
Read more »

PMA Excellence in Supporting Healthcare eLearning course for practice managers (30 Jan 2020)

Excellence in Supporting Healthcare   Level 2 Competency Framework   Londonwide LMCs have teamed up with the PMA to deliver an exciting new accredited e-learning programme for practice managers....
Read more »
Next Page »
« Previous Page