Be safe! Take care of your cyber security

We know that the security of your practice IT systems is often out of your hands. However, we have put together some tips that may help you secure your systems following the ‘WannaCry’ attack on the NHS earlier this month.

Back up and update

Make sure you have effective backups of data on an external hard drive or cloud-based service and ensure all devices are regularly updated.

Beware of spam emails

Ransomware attacks usually rely on an end-user activating them, normally by opening an email attachment. Educate the practice team and ensure that they question who or where emails come from on a regular basis. Ensure this is covered in any staff inductions.

Make sure the team regularly change their passwords and using a mixture of upper and lower case letters, numbers and symbols.

The National Cyber Security Centre has produced some helpful guidance on dealing with a ransomware attack.

Have a disaster recovery plan

You should have a disaster recovery plan in place which outlines what the team should do in the event of an attack. Also, ensure that cybersecurity is discussed at every practice team meeting. The plan should include details on how to disconnect infected devices from the network as well as how the practice may work whilst systems are restored.

Read the RCGP’s ‘advice for GP practices following cyber-attacks on their systems’ for further information.

Plan a response

Advice from Practice Index states:

“In the absence of IT specialists – which is the case for most practices – it’s up to ‘leaders’, which will usually be a practice manager, to determine an effective cause of action in the event of an attack, and educate staff to prepare for them.”

What this means in essence is that the practice should have a strong cyber security response plan with clear definitions of how data can be recovered as well as roles and responsibilities within the practice team. Read the UK government’s 10 steps to cybersecurity for further advice.

 Unfortunately, cybercrime is a fact of life today and it’s only a matter time before the next attack takes place.

These tips will hopefully help you to take a few simple steps towards making cybersecurity part of your practice culture so you can minimise the chances of any future attacks and the damage they may cause.

Last updated : 21 Jun 2017

 

LEAD events round-up July 2017 (22 Aug 2017)

July was a busy month for the LEAD Programme. We hosted four events reaching out to different target audiences in General Practice.  An Essential Survival Kit for new GPs was...
Read more »

How to respond to school sickness absence requests (22 Aug 2017)

Dr Elliott Singer, Medical Director lead for our GP State of Emergency campaign, explains how to push back against requests for school sickness absence letters in order to free up...
Read more »

Why the GP Patient Survey matters (22 Aug 2017)

Dr Julie Sharman, Medical Director with our GP and Practice Support Team, explains why practices should care about the GP Patient Survey and what actions they should take to follow-up...
Read more »

Data security and the General Data Protection Regulations (GDPR) - get ready now! (22 Aug 2017)

Earlier this month that the Government announced that the forthcoming European privacy rules set out in the General Data Protection Regulation (GDPR) will come into British law and update the...
Read more »

Extended hours DES and cyber attack (21 Aug 2017)

Following the cyber-attack on NHS computer systems in May a number of practices nationally were told by commissioners that they needed to make up the opening hours lost during the...
Read more »

Waiting room video – what to do when you are referred to a specialist (21 Aug 2017)

Our new waiting room video is designed to inform patients what they can expect when they are referred to a specialist or therapist. The video includes information on tests and...
Read more »

NHS England asking practices to complete its records on possible patient harm due to correspondence lost by Shared Business Services. (21 Aug 2017)

NHS England are say 30% of practices in England have yet to respond to their request to provide details of whether any patients may have come to harm due to...
Read more »

CQC registration fees reimbursement scheme claim process (20 Jul 2017)

The GMS contract changes for 2017/18 includes full reimbursement of Care Quality Commission (CQC) registration fees. This change is being implemented via the Statement of Financial Entitlements (SFE) which means...
Read more »
Next Page »
« Previous Page