Government data security consultation

The Government has been conducting a data security review, run by Dame Fiona Caldicott, the National Data Guardian for Health and Care. A report has now been produced with ten proposed standards:

  1. All staff ensure that personal confidential data is handled, stored and transmitted securely, whether in electronic or paper form. Personal confidential data is only shared for lawful and appropriate purposes.
  2. All staff understand their responsibilities under the National Data Guardian’s Data Security Standards including their obligation to handle information responsibly and their personal accountability for deliberate or avoidable breaches.
  3. All staff complete appropriate annual data security training and pass a mandatory test, provided through the revised Information Governance Toolkit.
  4. Personal confidential data is only accessible to staff who need it for their current role and access is removed as soon as it is no longer required. All access to personal confidential data on IT systems can be attributed to individuals.
  5. Processes are reviewed at least annually to identify and improve processes which have caused breaches or near misses, or which force staff to use workarounds which compromise data security.
  6. Cyber-attacks against services are identified and resisted and CareCERT security advice is responded to. Action is taken immediately following a data breach or a near miss, with a report made to senior management within 12 hours of detection.
  7. A continuity plan is in place to respond to threats to data security, including significant data breaches or near misses, and it is tested once a year as a minimum, with a report to senior management.
  8. No unsupported operating systems, software or internet browsers are used within the IT estate.
  9. A strategy is in place for protecting IT systems from cyber threats which is based on a proven cyber security framework such as Cyber Essentials. This is reviewed at least annually.
  10. Suppliers are held accountable via contracts for protecting the personal confidential data they process and meeting the National Data Guardian’s Data Security Standard.

The Government are seeking feedback on the proposed ten standards via an online survey, which is open until 7 September 2016.

Last updated : 19 Jul 2016

 

Securing practice finances - an easy guide to year end closure and managing future finances (30 Jan 2018)

On Tuesday 30 January 2018 over 200 GPs and practice managers attended our two 'Securing practice finances - an easy guide to year end closure and managing future finances' workshops....
Read more »

Get ready now for the General Data Protection Regulation (GDPR) (23 Jan 2018)

Data protection law changes in 2018. Practices need to be ready for the General Data Protection Regulation (GDPR), which comes into force on 25 May 2018. NHS guidance on what...
Read more »

LMC elections 2018 (23 Jan 2018)

It’s LMC election time again at Londonwide LMCs! This year every LMC seat is up for election. Any GP working in one of the 27 London boroughs we represent may...
Read more »

Obituary: Dr Param-Jeet Singh Sandhu 1947-2018 (23 Jan 2018)

General Practitioner, Hammond Road Practice, Southall, Middlesex. (Birth 1947 q. Punjabi University 1972 – Died on 5th January 2018 from metastatic carcinoma of the prostate at the age of 70...
Read more »

Tips of the week December/January 2018 (22 Jan 2018)

We provide weekly tips based on common queries which come through to us from London GPs and practice teams. These are shared via social media and collated for...
Read more »

Local authority reports and letters reimbursement under collaborative arrangements (22 Jan 2018)

Dr Elliott Singer, Medical Director at Londonwide LMCs, recently wrote to the local authorities (LAs) in the 27 London boroughs covered by Londonwide LMCs to raise the issue of practices not...
Read more »

Why being able to summarise medical records still matters in the digital age (22 Jan 2018)

High quality training for medical notes summarising remains vital for general practice says Hilary Andrews, Nurse Advisor/Freelance Trainer for HAT Training and Medical Services Training. Summarising medical records is hardly...
Read more »

GPC regional election nominations 2018 (18 Jan 2018)

Nominations are open for the round of GPC regional elections to cover terms from 2018-21. In London two seats are up for election: Enfield and Haringey, Camden and Islington,...
Read more »
Next Page »
« Previous Page