Toolkit launched to ensure patient data is handled correctly

  • 22 May 2018
Toolkit launched to ensure patient data is handled correctly

A new online self-assessment tool that enables organisations to measure their data security against national standards has been launched.

The Data Security and Protection Toolkit, which replaces the previous Information Governance toolkit, has been designed to ensure that patient data is secure.

All organisations that have access to NHS patient data and systems, including NHS trusts, primary care and social care providers and commercial third parties, must complete the toolkit to provide assurance that they are practising good data security and that personal information is handled correctly.

Their performance is measured against the National Data Guardian’s ten data security standards.

Dan Taylor, programme director for the data security centre at NHS Digital, said: “The Data Security and Protection Toolkit is a powerful tool which health and care organisations will use to assess their cyber preparedness.

“This launch marks the start of a journey, with the Toolkit forming a foundation for long-term improvements in patient data security.

“The Toolkit is part of a number of new initiatives to build public trust in the way we secure their data.”

The toolkit has been designed to be easier to use with a simpler format.

Organisations that provide health services or connect to national systems will be required to complete self-assessments annually.

The launch of the toolkit was prompted by the WannaCry ransomware attack in May 2017.

Following the attack, NHS England’s chief information officer, Will Smart, recommended a tool for assessing organisations’ cyber-defences was made available by April 2018.

Subscribe to our newsletter

Subscribe To Our Newsletter

Subscribe To Our Newsletter

Sign up

Related News

Norfolk and Norwich University Hospitals investigating cyber attack

Norfolk and Norwich University Hospitals investigating cyber attack

NHS England’s cyber security operations centre is investigating a cyber attack at Norfolk and Norwich University Hospitals NHS FT.
Health tech can help reframe ageing as an opportunity not a problem

Health tech can help reframe ageing as an opportunity not a problem

Edinburgh's new Global Research Institute in Health and Care Technologies is working on solutions that will enable more people to age well, writes Professor Alan…
King’s speech sets out Labour’s plans for cyber security, digital and data

King’s speech sets out Labour’s plans for cyber security, digital and data

Prime Minister Keir Starmer's plans to introduce legislation for cyber security, digital and data were outlined in the King’s Speech on 17 July.

1 Comments

  • This is lame.
    There is an international standard for Data Security – ISO 27001.
    Although this is mentioned in the document, this should be the default.

    NHS organisations should be externally audited against a meaningful standard, and not a bunch of wishy washy aspirations.

    Either security and IG matters, in which case do it properly, or do not bother doing it at all.

Comments are closed.