Next week, data privacy laws will be changing in line with the General Data Protection Regulation (GDPR).
The new regulations come into effect on 25th May. Helen McNae (see last week's CHFT Weekly) and the information governance team will be working closely with teams to make sure they understand their role in data privacy. The key things to be aware of are:
Know your information
- We must all be aware of what personal identifiable information we hold in our area and where we hold it. This includes knowing how the information is collected, where it is stored and how it might be shared.
- This includes paper and electronic records.
New projects involving personal information
- If you are thinking about starting a new project that will include inputting, storing and/or sharing of personal information, you must complete a Data Protection Impact Assessment to ensure it is compliant.
- Please contact the service desk on ext. 2600.
New explicit consent
Chances are you’ll be receiving lots of emails from shops and others asking you to make sure they can stay in touch with you (to keep you informed of offers and sell you their products & services). To do this you have to reply and say you want to opt-in.
- Companies can no longer send you correspondence assuming you are happy for them to do that.
- We are bound by this too – so if we want to stay in touch with people, including colleagues we need to make sure they are happy to do this.
Updated privacy notice
We have updated our privacy notices for colleagues on the intranet (it's on the bottom of every page), as well as the public on our website.
New independent Data Protection Officer
A single point of contact for colleagues, the public and the Information Commissioner’s Office (ICO).
If you have any questions please email: this.DPO@nhs.net