Be safe! Take care of your cyber security

We know that the security of your practice IT systems is often out of your hands. However, we have put together some tips that may help you secure your systems following the ‘WannaCry’ attack on the NHS earlier this month.

Back up and update

Make sure you have effective backups of data on an external hard drive or cloud-based service and ensure all devices are regularly updated.

Beware of spam emails

Ransomware attacks usually rely on an end-user activating them, normally by opening an email attachment. Educate the practice team and ensure that they question who or where emails come from on a regular basis. Ensure this is covered in any staff inductions.

Make sure the team regularly change their passwords and using a mixture of upper and lower case letters, numbers and symbols.

The National Cyber Security Centre has produced some helpful guidance on dealing with a ransomware attack.

Have a disaster recovery plan

You should have a disaster recovery plan in place which outlines what the team should do in the event of an attack. Also, ensure that cybersecurity is discussed at every practice team meeting. The plan should include details on how to disconnect infected devices from the network as well as how the practice may work whilst systems are restored.

Read the RCGP’s ‘advice for GP practices following cyber-attacks on their systems’ for further information.

Plan a response

Advice from Practice Index states:

“In the absence of IT specialists – which is the case for most practices – it’s up to ‘leaders’, which will usually be a practice manager, to determine an effective cause of action in the event of an attack, and educate staff to prepare for them.”

What this means in essence is that the practice should have a strong cyber security response plan with clear definitions of how data can be recovered as well as roles and responsibilities within the practice team. Read the UK government’s 10 steps to cybersecurity for further advice.

 Unfortunately, cybercrime is a fact of life today and it’s only a matter time before the next attack takes place.

These tips will hopefully help you to take a few simple steps towards making cybersecurity part of your practice culture so you can minimise the chances of any future attacks and the damage they may cause.

Last updated : 21 Jun 2017

 

End of Coronavirus Act death certification and registration changes (23 Mar 2022)

The arrangements for death certification and registration introduced by the Coronavirus Act (2020) expire on 24 March 2022. The relevant guidance can be found on the Government website, the key...
Read more »

Registered nursing associate blended learning programme launched (22 Mar 2022)

This blended learning programme has been developed by experienced primary care nurses and it is specifically designed for registered nursing associates (RNAs) new to working within the general practice setting....
Read more »

Briefing on GP Contract 2022/23 - message from Dr Michelle Drage (10 Mar 2022)

Thursday 10 March 2022 Dear Colleagues, Briefing on GP Contract 2022/23 As you will now be aware, despite lengthy negotiation no agreement was reached on changes to...
Read more »

Wellbeing webinars - spring 2022 (24 Feb 2022)

The webinars aim to support the emotional and psychological health of staff by supporting you in finding your own strategies, tools, and coping mechanisms. These 40-minute interactive webinars are packed...
Read more »

Tips of the month February 2022 (23 Feb 2022)

We provide tips based on common queries which come through to us from London GPs and practice teams. These are shared via social media and collated for this...
Read more »

How do treatment delays impact patients and general practice? (23 Feb 2022)

Our new animation explains how the treatment backlog in the NHS affects patients and exacerbates capacity problems in general practice. London practices are welcome to share it in on social media...
Read more »

Patients to view record entries from July 2022 onwards (23 Feb 2022)

Update: this requirement was initially intended to go live on 1 April 2022, but is now postponed until July. From July 2022, patients with an existing online account will automatically be...
Read more »

UCLH positive response to reducing inappropriate transfers of activity (22 Feb 2022)

Leaders from University College London Hospitals Foundation Trust have written to consultants and GPs following representation from LMCs. Their letter includes this advice: "Please actively have conversations with patients in...
Read more »
Next Page »