Presentation - Jim Shannon

Download Report

Transcript Presentation - Jim Shannon

Confidentiality Policy
Jim Shannon
Confidentiality Policy Manager
NHS Connecting for Health
NHS Connecting for Health is delivering the National Programme for Information Technology
AGENDA
• Confidentiality Strategy
• NCRS Access Controls
• IG Review
NHS Connecting for Health is delivering the National Programme for Information Technology
A Confidentiality Strategy for the
NHS – DH 2001
• Confidentiality Code of Practice
• Public Awareness Campaign
• Anonymisation Services for Secondary
Uses
• Implementation of robust access controls
for electronic records
NHS Connecting for Health is delivering the National Programme for Information Technology
Strategy - Objectives
P.I.
Implied
Consent
Communications
Strategy
P.I.
Implied Consent
Express
consent
No Consent!
NCRS
Express consent
Section
60
Statute
Statute
Anonymised
Secondary Uses
Service
Anonymised
NHS Connecting for Health is delivering the National Programme for Information Technology
Confidentiality Code of Practice
• Confidential patient information should only
be used for direct care unless:
– Express consent has been gained
– On balance, the public interest requires
disclosure
– Disclosure required by statute or the Court
NHS Connecting for Health is delivering the National Programme for Information Technology
Public Awareness Campaign:
Information Governance aspects
• Builds confidence in the safeguards and controls
• Supports local work to inform patients as required
by confidentiality obligations & Data Protection
Act
• May generate local interest in confidentiality and
choices available
NHS Connecting for Health is delivering the National Programme for Information Technology
Care Records Guarantee
• Adopted by the Care Records
Development Board
• Guarantee underwritten by the Secretary of
State for Health
• Partly aspiration but a clear vision of a
confidential service facilitated through
Information Technology
NHS Connecting for Health is delivering the National Programme for Information Technology
Secondary Uses Service
• Increased emphasis on confidentiality
• Gradually increasing capacity to meet secondary
uses through SUS rather than through local
disclosure
NHS Connecting for Health is delivering the National Programme for Information Technology
NCRS Access Controls
• Patient
• Clinician
• Others
NHS Connecting for Health is delivering the National Programme for Information Technology
Patient Controls
• Opt Out
• Dissent to Sharing
• Patient Sealed Envelopes
NHS Connecting for Health is delivering the National Programme for Information Technology
Clinician Controls
• Authentication & Registration
• Role Based Access Controls (RBAC)
• Legitimate Relationships (LRs)
• Clinician Sealed Envelopes
NHS Connecting for Health is delivering the National Programme for Information Technology
Other Controls
• Smart Card & PIN
• Audits & Alerts
• PDS ‘Stop Notes’
NHS Connecting for Health is delivering the National Programme for Information Technology
NCRS – Implementation Approach
• National
Application
Service
Providers
(NASP)
• Local Service
Providers (LSPs)
NHS Connecting for Health is delivering
NHS
CFH’s five regional clusters
the National Programme for Information Technology
Data
Personal
Electronic
Clinical
Personal Transmission services
Spine
for
Choose
Spine
Information Demographic
of
secondary Application
and Book
Service
Service
Prescriptions
Delivers national
uses
(CSA)
(PDS)
(PSIS)
(ETP)
services
(SUS)
National
Application
Service Provider
Transaction
Messaging
Service
Processes all messages
Authenticates users
Access Control Framework
Local Service
Providers
Deliver a range of
local functionality
Local Instances
Care and services
NHS
Connecting
for patients
for Health is delivering the National Programme for Information Technology
A cluster
NCRS – LSP ‘instance’
strategies
• London – 1 for the whole cluster
• NW&WM – 1 per current SHA (6)
• NE&YH/EM&EE – multiple across different
communities and different care settings.
Possibly virtual instances created to support
wider sharing
NHS Connecting for Health is delivering the National Programme for Information Technology
Harry Cayton IG Review
• CMO to become Caldicott Guardian
• Strengthened governance in NHS
• Increased support for Caldicott Function
(UK Caldicott Guardian Council)
• New National IG Board
NHS Connecting for Health is delivering the National Programme for Information Technology
Questions
???
NHS Connecting for Health is delivering the National Programme for Information Technology