Download presentation
Presentation is loading. Please wait.
Published byChrystal McDonald Modified over 5 years ago
1
The session will commence at 12.30 Please mute your microphone
Data Security and Protection Toolkit Welcome The session will commence at 12.30 Please mute your microphone Presented by: David Ingham NHS Digital
2
What is the Data Security and Protection Toolkit
Online data security self assessment Replacement for the IG Toolkit Lets organisations measure themselves against the NDG Data Security Standards Provides help for organisations with support to comply with GDPR All organisations that process health and care data should complete a Data Security and Protection Toolkit
3
Why data security is important
It’s about Trust! “Trust cannot be ensured without secure systems…” People trust the health and care system to protect information. Data Security must support digital transformation otherwise the risk of breaches increase and trust will be lost.
4
What has changed? Move away from level 1,2,3 and towards ‘mandatory’ evidence items Removed duplication Aligned with NDG Standards and GDPR More concise requirements Documentary evidence only required where it adds value Exemptions for organisations which use NHSmail or have in place a relevant standard (PSN IA or Cyber Essentials PLUS) Provide intelligence to CQC for inspections.
5
Data Security and Protection Toolkit in numbers
Active Users 44 development sprints completed 16,500 21,000 Registered organisations Integrated GDPR + NIS Incident notification for streamlined automated reporting 1600 Full Publications: Feedback items 1243 Takes in account other recognised Certifications and systems 110 Incidents Reported to ICO per month (approx.)
6
Iterative development
7
Hardest requirements in DSPT
95% of all staff to have data security training List of systems holding or sharing personal information (information asset register) Data Protection Impact Assessments. Understanding your data flows Understand who has access to all your systems Organisations must survey their software for unsupported systems Organisations must ensure all networking components have had their default passwords changed.
8
Incident Reporting Overview
An online tool for reporting GDPR notifiable incidents (health and care data) Applies to all organisations processing health and care personal data under contract Worked with ICO DHSC, NHS England and users Replacement of the IG SIRI Tool Guidance published and updated
9
Help and support Register
Presentation developed to be used by IG Leads. FAQs including Training Tool. DSP Toolkit Support available through. Toolkit training and update events Care Provider Alliance Guidance: LGA newsletter article.
10
Demonstration
11
Questions?
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.