Download presentation
Presentation is loading. Please wait.
Published byKerry Nicholson Modified over 8 years ago
1
FNHSO Privacy and Security Framework Forum Nov 19, 2014 BC First Nations Panorama Support
2
Agenda Roll-call Panorama Access Audit – Update on Privacy Reports being developed to support audit requirements Client Personal Information Collection Updates to Client / Guardian Notification and Consent Policy Updates to Breach Management Procedures ISA Compliance Round table discussion FNSHO P&S Framework Forum
3
Roll Call Kwakiutl District Council Health Services Seabird Island Band's Health Services Department Three Corners Health Services Society Tla’amin Community Health Services Westbank First Nation Health and Wellness Saulteau First Nation Health Services Nuu-chah-nulth Tribal Council – Community and Human Services Okanagan Indian Band Health Services Cowichan Tribes - Ts’ewulhtun Health Services FNSHO P&S Framework Forum
4
Access Audit Requirements Identified in B.C. Ministry of Health eHealth conformance Standards – Information Privacy ISA eHeath Best Practices Panorama Data Governance Framework Require each organization to conduct Regular proactive audits Random audits or spot checks Reactive audits FNSHO P&S Framework Forum
5
Update on Privacy Reports to Support Access Audit Requirements FNSHO P&S Framework Forum
6
Same Name Lookup (AA005) Purpose Identify users who have accessed their record or a record of a family member with the same last name FNSHO P&S Framework Forum
7
High Volume Client Accesses All Users (AA006) Purpose Identify clients with an unusually high number of accesses relative to other clients accessed within the same date range and JORG FNSHO P&S Framework Forum
8
AA007 High Volume Client Accesses Unique Users Purpose Identify clients with an unusually high number of unique user accesses relative to other clients accessed within the same date range and JORG FNSHO P&S Framework Forum
9
AA008 High Volume User Accesses Unique Clients Purpose Identify users with an unusually high number of unique client accesses relative to other user access within the same date range and JORG FNSHO P&S Framework Forum
10
Client Personal Information Collection FNSHO P&S Framework Forum Three modes of collecting personal information from clients In person Home-visits On the phone Informed, implied consent for the collection, user and disclosure of personal information Verbal Posters Pamphlets Telephone Scripts
11
Updates to Client / Guardian Notification and Consent Policy Client/Guardian Notification and Consent Policy: Update to include collection of personal information over the telephone Appendix Tool: Telephone Privacy Script FNSHO P&S Framework Forum
12
Updates to Privacy Breach Management Procedures Procedures specific to Panorama breaches Contact Panorama Operations Privacy Services and Central Data Steward FNSHO P&S Framework Forum
13
Panorama Data Governance Committee: ISA Compliance FNSHO P&S Framework Forum
14
ISA Compliance Options (1) 1. Invoke clause 12.2 of the Panorama ISA and request each Party provide the Central Data Steward with a copy of its most recent (within the previous month) audit and privacy and security review reports. 2. Invoke clause 12.1 of the Panorama ISA with the Central Data Steward conducting audits on the privacy and security practices of all Parties.
15
ISA Compliance Options (2) 3. Development of a simplified standard assessment template for Parties to assess their own compliance to certain key requirements. The template would be used by each Party to report their level of compliance to the Panorama Data Governance Committee immediately and then on an annual basis going forward. 4. Addressing the issues of non-compliance on a case-by-case basis, with the Central Data Steward working with a Party to resolve a specific issue.
16
ISA Compliance Options (3) Option 3 is being recommended Overall, the compliance approach being described seems to be well aligned with the eHealth Conformance Standards compliance model followed by FN PIP and FNHSOs implementing Panorama The “assessment template” described for option 3 is similar in concept and content to the FN PIP “P&S Checklist” More frequent, structured assessment and reporting to MoH may be necessary The FN PIP team will continue to provide info on this topic as it becomes available
17
Roundtable Review Any changes to Panorama users (add/remove) ? Questions or concerns? Agenda items for next meeting? FNSHO P&S Framework Forum
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.