Be safe! Take care of your cyber security

We know that the security of your practice IT systems is often out of your hands. However, we have put together some tips that may help you secure your systems following the ‘WannaCry’ attack on the NHS earlier this month.

Back up and update

Make sure you have effective backups of data on an external hard drive or cloud-based service and ensure all devices are regularly updated.

Beware of spam emails

Ransomware attacks usually rely on an end-user activating them, normally by opening an email attachment. Educate the practice team and ensure that they question who or where emails come from on a regular basis. Ensure this is covered in any staff inductions.

Make sure the team regularly change their passwords and using a mixture of upper and lower case letters, numbers and symbols.

The National Cyber Security Centre has produced some helpful guidance on dealing with a ransomware attack.

Have a disaster recovery plan

You should have a disaster recovery plan in place which outlines what the team should do in the event of an attack. Also, ensure that cybersecurity is discussed at every practice team meeting. The plan should include details on how to disconnect infected devices from the network as well as how the practice may work whilst systems are restored.

Read the RCGP’s ‘advice for GP practices following cyber-attacks on their systems’ for further information.

Plan a response

Advice from Practice Index states:

“In the absence of IT specialists – which is the case for most practices – it’s up to ‘leaders’, which will usually be a practice manager, to determine an effective cause of action in the event of an attack, and educate staff to prepare for them.”

What this means in essence is that the practice should have a strong cyber security response plan with clear definitions of how data can be recovered as well as roles and responsibilities within the practice team. Read the UK government’s 10 steps to cybersecurity for further advice.

 Unfortunately, cybercrime is a fact of life today and it’s only a matter time before the next attack takes place.

These tips will hopefully help you to take a few simple steps towards making cybersecurity part of your practice culture so you can minimise the chances of any future attacks and the damage they may cause.

Last updated : 21 Jun 2017

 

Responsible Oxygen Prescribing (04 Sep 2015)

The London Respiratory Network have asked us to re-circulate a copy of the London Clinical Oxygen Network (LCON) key messages for Responsible Oxygen use in adults...
Read more »

August Newsletter (13 Aug 2015)

Londonwide LMCs Newsletter
Read more »

Making health and social care information accessible (12 Aug 2015)

The new Accessible Information Standards for GP Practices has been launched by NHS England and comes into force on 31 July 2016.  Practices must ensure that all information...
Read more »

Men ACWY – Sign up guidance and Action Card for GPs from NHS England (12 Aug 2015)

Following enquiries received from practices regarding the Men ACWY programme, NHS England has issued brief guidance about the sign up process for this...
Read more »

GMS global sum calculation and data request for atypical population profiles (12 Aug 2015)

The BMA have produced a document that details how the global sum allocation (Carr-Hill formula) determines funding for GMS practices. This has been published in response to...
Read more »

PHP Reflective Practice Master Classes beginning 12 September 2015 (12 Aug 2015)

Each Master Class helps individuals to identify both the organisational and psychological barriers to change and personal development. Participants will have the choice of attending one of the following...
Read more »

Friends and Family Test: Disappointing news for London practices (12 Aug 2015)

Although it is a contractual requirement for practices to carry out the Friends and Family Test (F&FT) and submit data each month, the May return for London was a disappointing...
Read more »

New pan-London Cervical Sample Taker Database (CTSD) (12 Aug 2015)

NHS England has commissioned a web-based Cervical Sample Taker Database (CSTD) for the quality assurance of sample taking in London. The database enables the allocation of unique sample taker codes...
Read more »
Next Page »
« Previous Page