Be safe! Take care of your cyber security

We know that the security of your practice IT systems is often out of your hands. However, we have put together some tips that may help you secure your systems following the ‘WannaCry’ attack on the NHS earlier this month.

Back up and update

Make sure you have effective backups of data on an external hard drive or cloud-based service and ensure all devices are regularly updated.

Beware of spam emails

Ransomware attacks usually rely on an end-user activating them, normally by opening an email attachment. Educate the practice team and ensure that they question who or where emails come from on a regular basis. Ensure this is covered in any staff inductions.

Make sure the team regularly change their passwords and using a mixture of upper and lower case letters, numbers and symbols.

The National Cyber Security Centre has produced some helpful guidance on dealing with a ransomware attack.

Have a disaster recovery plan

You should have a disaster recovery plan in place which outlines what the team should do in the event of an attack. Also, ensure that cybersecurity is discussed at every practice team meeting. The plan should include details on how to disconnect infected devices from the network as well as how the practice may work whilst systems are restored.

Read the RCGP’s ‘advice for GP practices following cyber-attacks on their systems’ for further information.

Plan a response

Advice from Practice Index states:

“In the absence of IT specialists – which is the case for most practices – it’s up to ‘leaders’, which will usually be a practice manager, to determine an effective cause of action in the event of an attack, and educate staff to prepare for them.”

What this means in essence is that the practice should have a strong cyber security response plan with clear definitions of how data can be recovered as well as roles and responsibilities within the practice team. Read the UK government’s 10 steps to cybersecurity for further advice.

 Unfortunately, cybercrime is a fact of life today and it’s only a matter time before the next attack takes place.

These tips will hopefully help you to take a few simple steps towards making cybersecurity part of your practice culture so you can minimise the chances of any future attacks and the damage they may cause.

Last updated : 21 Jun 2017

 

Extended hours DES update (23 Oct 2017)

The 2017/18 changes to the GP contract included the condition that meant practices who regularly close for a half day, on a weekly basis, will not ordinarily qualify to deliver...
Read more »

Identifying patients living with frailty (23 Oct 2017)

Since July 2017 there has been a new contractual requirement for practices to focus on the identification and management of patients living with frailty. Practices are required to use appropriate...
Read more »

Remember that your practice needs a CQC registered manager (23 Oct 2017)

Remember that Section 33 of the Health and Social Care Act 2008 states that it is a legal requirement for practices to have a registered manager with the CQC (Care...
Read more »

New GMS1 form - use now (23 Oct 2017)

All practices should have received new GMS1 forms to use from this month onwards. The new forms include supplementary questions to be completed by overseas...
Read more »

LMC patient engagement project wins award at RCGP conference (19 Oct 2017)

Londonwide LMCs’ Patient Engagement Project (PEP) was launched in July 2016 with a focus on supporting practices in fostering and developing Patient Participation Groups (PPGs). The experiences and views of...
Read more »

Working as a team helps combat workload stress (19 Oct 2017)

Alison Dalal, practice manager at the Paddington Green Health Centre, shares her top tips. As surveys show, working in general practice can be a stressful business and as the workload...
Read more »

Jeremy Hunt pledges ‘state-backed’ indemnity (19 Oct 2017)

Speaking at this month’s Royal College of General Practitioners conference Jeremy Hunt announced he is planning to introduce a state-backed indemnity scheme from April 2019. It will cover all GPs...
Read more »

NHS chief says networking may be answer to working at scale (19 Oct 2017)

NHS Chief Executive Simon Stevens told the Health Select Committee earlier this month that “more networked approaches” can also be an answer to working ‘at scale’. This places the NHS...
Read more »

BMA issues advice on premises fees (20 Sep 2017)

As NHS Property Services emails practices with invoices and/or a letter from Mark Day, Chief Financial Officer at Community Health Partnerships the BMA has issued advice to practices. The covering...
Read more »
Next Page »
« Previous Page