DATA-SECURITY AND PATIENT CONFIDENTIALITY - THE MANAGERS ROLE

Authors
Citation
F. Fisher et B. Madge, DATA-SECURITY AND PATIENT CONFIDENTIALITY - THE MANAGERS ROLE, International journal of bio-medical computing, 43(1-2), 1996, pp. 115-119
Citations number
10
Categorie Soggetti
Mathematical Methods, Biology & Medicine","Engineering, Biomedical","Computer Science Interdisciplinary Applications","Computer Science Theory & Methods","Medical Informatics
ISSN journal
00207101
Volume
43
Issue
1-2
Year of publication
1996
Pages
115 - 119
Database
ISI
SICI code
0020-7101(1996)43:1-2<115:DAPC-T>2.0.ZU;2-U
Abstract
The maintenance of patient confidentiality is of utmost importance in the doctor patient relationship. With the advent of networks such as t he National Health Service Wide Area Network in the UK, the potential to transmit identifiable clinical data will become greater. Links betw een general practitioners (GPs) and hospitals will allow the rapid tra nsmission of data which if intercepted could be potentially embarrassi ng to the patient concerned. In 1994 the British Medical Association l aunched a draft bill on privacy and confidentiality and in association with this bill it is pushing for encryption of all clinical data acro ss electronic networks. The manager's role within an acute hospital, c ommunity units and general practice, is to ensure that all employees a re aware of the principles of data protection, security of hospital co mputer systems and that no obvious breaches of security can occur at p ublicly accessible terminals. Managers mast be kept up to date with th e latest developments in computer security such as digital signatures and be prepared to instigate these developments where practically poss ible. Managers must also take responsibility for the monitoring of acc ess to terminals and be prepared to deal severely with staff who breac h the code of confidentiality. Each manager must be kept informed of e mployees status with regard to their 'need to know' clearance level an d also to promote confidentiality of patient details throughout the ho spital. All of the management team must be prepared to train new staff in the principles of data security as they join the organisation and recognise their accountability if the programme fails. Data security a nd patient confidentiality is a broad responsibility in any healthcare organisation, with the Chief Executive accountable. In family practic e, the partners are responsible and accountable. The British Medical A ssociation believes as a matter of policy, that allowing access to per sonal health data without the patients consent, except in a legally al lowable situation, should be a statutory offence.