Confidentiality & Records Management. What is Information Governance? What is Records Management?

Slides:



Advertisements
Similar presentations
Identifying Data Protection Issues Developing Lifelong Learner Record Systems and ePortfolios in FE and HE: Planning for, and Coping with, Legal Issues.
Advertisements

Records Management and the NHS Code of Practice (Foundation) Information Governance Policy Team NHS Connecting for Health.
Information Governance An Introduction. Information Governance Outline What is Information Governance What initiatives does IG cover.
Introduction to Information Governance (IG)
Information Governance Peter McKenzie Information Governance Manager NHS Tayside
Principle 1 Principle 1 Processed fairly and lawfully + only with a legitimate basis There should be no surprises, so … inform data subjects why you are.
Quick Guide to Undertaking an Information Governance Compliant Clinical Audit Project Wendy Harrison and Heather Sharp NHS Bradford and Airedale.
Health Insurance Portability and Accountability Act HIPAA Education for Volunteers and Students.
1 HIPAA Education CCAC Professional Development Training September 2006 CCAC Professional Development Training September 2006.
BIOMETRICS, CCTV & DATA PROTECTION By Drudeisha Madhub Data Protection Commissioner Date:
Training prepared by Geoff Webb Information Security & Governance Consultant Data Protection isn’t a choice, it’s the law What all CPH staff must do 17/07/2013.
Data Protection webinar: Data Protection & Volunteers 19 th June 2014 Welcome. We’re just making the last few preparations for the webinar to start at.
What does the Data Protection Act do? It sets standards which must be satisfied when obtaining, recording, holding, using, disclosing or disposing of.
Data Protection & Freedom of Information The Practical Implications of Data Protection and Freedom of Information Caroline Dominey Data Protection Officer.
Information Governance
Higher Administration and IT Administrative Practices.
Health and Safety Legislation
Property of Common Sense Privacy - all rights reserved THE DATA PROTECTION ACT 1998 A QUESTION OF PRINCIPLES Sheelagh F M.
Data Protection Recruitment Process
DATA PROTECTION AND PATIENT CONFIDENTIALITY IN RESEARCH Nic Drew Data Protection Manager University Hospital of Wales   
Audiences NI Data Protection Workshop
Data Protection Paul Veysey & Bethan Walsh. Introduction Data Protection is about protecting people by responsibly managing their data in ways they expect.
Data Protection for Church of Scotland Congregations
CENTRAL SCOTLAND POLICE Data Protection & Information Security Stuart Macfarlane Information Governance Unit Police Service of Scotland.
Practical Information Management
Information Assurance and Information Sharing IMKS Public Sector Forum 7 February 2011 Clare Cowling, Senior Information Governance Adviser Transport for.
Implementation of Security and Confidentiality in GP Practices.
Handling information 14 Standard.
Health & Social Care Apprenticeships & Diploma
Data Protection, Freedom of Information and Information/Records Management.
Information Management in FSS: A Legal Perspective Paul Hinton Ian Mason Barlow Lyde & Gilbert LLP 17 September 2009.
Data Protection Act & Freedom of Information Simon Mansell Corporate Governance and Information Team.
Information Commissioner’s Office Sheila Logan Operations and Policy Manager Information Commissioner’s Office Business Matters 20 May 2008.
The Data Protection Act - Confidentiality and Associated Problems.
DATA PROTECTION ACT 1998 Became law on 1 March 2000 Only applies to the use of personal data, that is data which relates to an identifiable living individual,
Local Government Reform and Compliance with the DPA Ken Macdonald Assistant Commissioner (Scotland & Northern Ireland) Information Commissioner’s Office.
Data Protection Property Management Conference. What’s it got to do with me ? As a member of a management committee responsible for Guiding property you.
CALDICOTT PRESENTATION. History Caldicott report published in 1997 and implemented in 1999 Inquiry chaired by Dame Fiona Caldicott.
RECEIVE AND TRANSMIT INFORMATION. . All information received must be accurately recorded, and be current, relevant, legible and complete All information.
Information Management in Retail: A Legal Perspective Chris Hill Barlow Lyde & Gilbert LLP 17 September 2009.
A New Standard for Disposal Mark Crookston Senior Advisor Appraisal Government Recordkeeping Group.
INFORMATION GOVERNANCE AND CONFIDENTIALITY Information Governance Facilitator.
Session 12 Information management and security. 1 Contents Part 1: Introduction Part 2: Legal and regulatory responsibilities Part 3: Our Procedures Part.
Session 11 Data protection. 1 Contents Part 1: Introduction Part 2: Applicability and responsibility Part 3: Our procedures on data protection Part 4:
DATA PROTECTION AND RUNNING A COMPLIANT PUB WATCH SCHEME Nigel Connor Head of Legal –JD Wetherspoon PLC.
© University of Reading Lee Shailer 06 June 2016 Data Protection the basics.
Can you share? Yes you can!! Angus Council Adult Protection Maureen H Falconer, Senior Policy Officer Information Commissioner’s Office.
Partners in improving local health Slide 1 Information Governance & IT Security in the NHS Ian Davison, Director of Business Information Services Alison.
Level 1 – All staff involved in routine access to information IG Presentation Ver3 Jan2015 EIG01-01N Information Governance.
Workshop Understanding your responsibilities under the Data Protection Act 1998 and the Freedom of Information Act 2000 Adele Rhodes Girling.
1 Information Governance (For Dental Practices) Norman Pottinger Information Governance Manager NHS Suffolk.
Taylor County Schools FERPA (Confidentiality) Training August 17, 2010.
Clark Holt Limited (Co. No ), Hardwick House, Prospect Place, Swindon, SN1 3LJ Authorised and regulated by the Solicitors Regulation.
Information Governance A refresher for all staff who have previously gone through the full course.
Explaining strategies to ensure compliance with workplace legislation
WORKPLACE LEGISLATION
Data Protection and Confidentiality
General Data Protection Regulation
GDPR - Individual’s Rights
G.D.P.R General Data Protection Regulations
Data Protection and Running a Compliant Pub Watch SCHeme
Recording Clinical Data
D3 Confidentiality.
Information management and communication
General Data Protection Regulations 2018
Recording Clinical Data
Recording Clinical Data
Information Governance
Handling information 14 Standard.
GDPR what do we need to do?
Presentation transcript:

Confidentiality & Records Management

What is Information Governance? What is Records Management?

Horror Stories!

Data Protection Act Principles 1.Fairness and legality 2.Permission 3.Adequacy /Relevant, not Excessive 4.Accuracy 5.Length of use 6.Access rights 7.Security 8.Transfer outside EEA Caldicott Report Principles for use and sharing 1.Justify the purpose 2.Use only when necessary 3.Use minimum necessary 4.Access – strict need to know basis 5.Individual responsibility 6.Comply with the law 7.Duty to share and protect

Personal Information can be accessed from: The patient The health record Colleagues Personnel files/HR/Payroll Electronically processed data Stored images Knowledge held by employee Telephones Fax machines – ‘Safe Haven’ Pieces of paper Verbally

Confidentiality and Information Security To obtain information without consent…. Is unlawful Is a breach of the DPA, HRA and if obtained via Hospital systems, a breach of the Computer Misuse Act. May/will result in…. Disciplinary action Dismissal Civil action for damages Custodial sentence Unlimited fine RCHT monitors access to all systems. All breaches will be dealt with in accordance with the Trust’s disciplinary procedure

Do Not……… Leave your PC logged on Access information on PAS inappropriately Leave your office unlocked Include patient identifiable information in the subject of an Send personal data outside the Trust without permission Share Passwords Top Tips Do……… Respect confidentiality Direct Police – they do not have an automatic right to information Direct general enquiries Check identity – this includes staff Report incidents –don’t ignore them (Datix)

Handling the media

? Records Management Who is responsible? Chief Executive Senior Managers You What must I do? Identify and Maintain Records Read and implement the policies, especially … Document naming (Version Control) Store appropriately Retention Schedule Disposal (record destruction) … to enable FoI, DPA and EIR compliance

Legal requirements Information sharing Protection - organisation - individual Evidence (Audit) More effective working Support for patient Care etc. Records Management – the benefits

Record Keeping Standards Safer Environment Aide mémoire Patients Clinical Coding Staff Complaints Litigation Audit/Research Decisions and Evidence Leads to Clear and concise Dated and Signed Legible Structured Available Complete/Accurate In records