NHS Business Services Authority Information Governance Policy
|
|
|
- Noah Anderson
- 9 years ago
- Views:
Transcription
1 NHS Business Services Authority Information Governance Policy NHS Business Services Authority Corporate Secretariat NHSBSAIGM002
2 Issue Sheet Document reference NHSBSAIGM002 Document location F:\CEO\IGM\Info Gov Mgt\BSA Title NHS Business Services Authority Information Governance Policy Author Gordon Wanless Issued to All NHSBSA staff Why issued For information / action Last Reviewed 3 November 2010 Revision Details Version Date Amended by Approved by Details of amendments Initial Release IGSG The third last bullet point in to include reference to EIR and PSI. Amend affordable in the last bullet point in to be cost-effective. The fourth bullet point in to include reference to EIR and PSI. Add within cost and resource restraints at the end of the third bullet point in Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 2 of 13
3 Contents Page 1 Introduction 4 2 Policy Statement 5 3 Principles 5 4 Scope of this Policy 7 5 Policy 8 6 Information Governance Responsibilities 9 7 Validity of this Policy 10 Appendix A 11 IGMS Graphical Representation 12 IG Documentation & Materials Overview 13 Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 3 of 13
4 1 Introduction 1.1 The information held by the NHS Business Services Authority (NHSBSA) represents one of our most valuable assets. Without that information the NHSBSA could not operate. It is therefore essential that all information and information systems at the NHSBSA's sites are protected against the many threats which may affect confidentiality and overall service provision. Such threats can range from accidental damage to deliberate disclosure of sensitive information. 1.2 Information security is the responsibility of every member of staff in the NHSBSA. The information systems currently in use employ technical processes to help in maintaining the confidentiality, integrity and availability of the information they hold. However these security measures can be weakened through careless actions such as writing down or sharing a password. 1.3 The scope of this Information Governance (IG) Policy is to support the protection, control and management of NHSBSA s information assets. The policy is concerned with all information systems, electronic and non-electronic, and will apply to all divisions, sites and departments in the NHSBSA, to all NHSBSA staff and as appropriate to its contractors and third party service providers. It will cover all information within the NHSBSA, which could include data and information that is: Stored on computers Transmitted across internal and public networks such as or Intranet/Internet Stored within databases Printed or hand written on paper, white boards etc. Sent by facsimile (fax), telex or other communications method Stored on removable media such as CD-ROMs, hard disks, tapes and other similar media Stored on fixed media such as hard disks and sub-systems Held on film or microfiche Presented on slides, overhead projectors, using visual and audio media Spoken during telephone calls and meetings or conveyed by any other method Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 4 of 13
5 1.4 The NHSBSA is committed to properly protecting the information that it holds. This policy and associated practices and procedures have been agreed by the NHSBSA Leadership Team and Senior Management of the Authority. 2. Policy Statement 2.1 This document defines the IG Policy for the NHSBSA. 2.2 The IG Policy applies to all information obtained and processed by the NHSBSA and the NHSBSA s employees. 2.3 This document: Sets out the NHSBSA s policy for the protection of all information obtained and processed Establishes the responsibilities for IG 3 Principles 3.1 There are four key, interlinked, strands to this policy: Openness Legal Compliance Information Security Quality Assurance Openness The NHSBSA recognises the need for an appropriate balance between openness and confidentiality in the management and use of information Information will be defined and where appropriate kept confidential, underpinning the principles of Caldicott and the regulations outlined in the Data Protection Act 1998 (DPA). Non-confidential information about the NHSBSA and services will be available to the public through a variety of means, one of which will be the provisions of the Freedom of Information Act 2000 (FOIA) There will be clear procedures and arrangements for handling queries from members of the public The NHSBSA will have clear procedures and arrangements for liaison with the press and broadcasting media Integrity of information will be developed, monitored and maintained to ensure that it is appropriate for the purposes intended Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 5 of 13
6 Availability of information for operational purposes will be maintained within set parameters relating to its importance via appropriate procedures and computer system resilience The NHSBSA regards all identifiable personal information relating to members of the public as confidential, compliance with legal and regulatory framework will be achieved, monitored and maintained The NHSBSA regards all identifiable personal information relating to staff as confidential except where national policy on accountability and openness requires otherwise The NHSBSA will establish and maintain policies and procedures to ensure compliance with the DPA, Human Rights Act 1998 (HRA), the common law duty of confidentiality, Environmental Information regulations 2004 (EIR), the Re-use of Public Sector Information regulations 2005 (PSI) and the FOIA Awareness and understanding of all staff, with regard to their responsibilities, will be routinely assessed, recorded and appropriate training and awareness provided Risk assessment, in conjunction with overall priority planning of NHSBSA activity will be undertaken to determine appropriate, cost-effective IG controls are in place Legal Compliance The NHSBSA regards all identifiable personal information relating to members of the public as confidential The NHSBSA will undertake or commission annual assessments and audits of its compliance against legal requirements The NHSBSA regards all identifiable personal information relating to staff as confidential except where national policy on accountability and openness requires otherwise The NHSBSA will establish and maintain policies and procedures to ensure compliance with the DPA, HRA, the common law duty of confidentiality, EIR, PSI and the FOIA The NHSBSA will establish and maintain policies for the controlled and appropriate sharing of patient identifiable information with other agencies, taking account of relevant legislation (e.g. Health and Social Care Act, Crime and Disorder Act, Protection of Children Act) Information Security The NHSBSA will establish and maintain policies for the effective and secure management of its information assets and resources Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 6 of 13
7 Audits will be undertaken or commissioned to assess information and IT security arrangements The NHSBSA s Incident Reporting system will be used to report, monitor and investigate all breaches of confidentiality and security Information Quality Assurance The NHSBSA will establish and maintain policies for information quality assurance and the effective management of records Audits will be undertaken or commissioned of the NHSBSA s quality of data and records management arrangements Managers will be expected to take ownership of, and seek to improve, the quality of data within their services within cost and resource restraints Wherever possible, information quality will be assured at the point of collection The NHSBSA will promote data quality through policies, procedures/user manual and training 3.2 This policy and any associated procedures will be reviewed periodically by the NHSBSA Leadership Team. Where review is necessary due to legislative change this will happen immediately. 3.3 In accordance with the Authority's Equal Opportunities policy, this policy will not discriminate, either directly or indirectly, on the grounds of gender, race, colour, ethnic or national origin, sexual orientation, marital status, religion or belief, age, union membership, disability, offending background or any other personal characteristic. 4 Scope of this Policy 4.1 This policy covers all forms of information held by the NHSBSA, including (but not limited to): Information about members of the public Non NHSBSA employees on NHSBSA premises Staff and Personnel information Organisational, business and operational information Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 7 of 13
8 4.2 This policy applies to all aspects of information handling, including (but not limited to): Structured record systems - paper and electronic Information recording and processing systems whether paper, electronic, video or audio records Information transmission systems, such as fax, , portable media, post and telephone 4.3 This policy covers all information systems purchased, developed and managed by / or on behalf of, the NHSBSA and any individual directly employed or otherwise by the NHSBSA. 5 Policy 5.1 IG is the function of Corporate Governance that ensures the Confidentiality, Integrity and Availability of the NHSBSA s information assets. It is concerned with the facilitation of delivering accurate contextual information to those who require it for a recognised purpose, whether they be manager, administrator, supporting staff, service user or a member of the public, whilst complying with the legal and regulatory framework. 5.2 An Information Governance Management System (IGMS), including associated policies, procedures, protocols and guidelines and the ongoing monitoring thereof, ensures that the risks to such information assets are identified, assessed and adequately controlled in compliance with: The current legislative framework Applicable NHS codes of practice and regulations Recognised best practice for information handling and information security Information Governance Toolkit requirements 5.3 Developing an overall IGMS will include: The definition of an IG Policy and Strategy The identification (audit) of all existing information assets and the documentation thereof in a suitable Information Asset Register Completion of a formal Risk Assessment, identify threats and vulnerabilities to assets and systems and the potential associated impacts on delivery that each risk eventually would cause Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 8 of 13
9 Assessment, costing, selection and implementation of appropriate controls, and the developing of procedure and process-related documentation Production of a Statement of Applicability (SOA) and the final combining of documentation to allow, if desired, formal accreditation to the adopted standard of Information Security (ISO/IEC 27001:2005 (formerly BS :2002)) The ongoing monitoring of the effects of the IGMS and SOA and the review of controls accordingly Management of the IG Toolkit 6 Information Governance Responsibilities 6.1 It is the role of the NHSBSA Leadership Team to define the NHSBSA s policy in respect of IG, taking into account legal and NHS requirements. The NHSBSA Leadership Team is also responsible for ensuring that sufficient resources are provided to support the requirements of the policy. 6.2 The NHSBSA Leadership Team members, whilst retaining their legal responsibilities, have delegated IG compliance to the NHSBSA Information Governance and Security Group (IGSG). 6.3 The IGSG is responsible for overseeing day to day IG issues; developing and maintaining policies, standards, procedures and guidance, coordinating IG in the NHSBSA and raising awareness of IG. 6.4 Managers within the NHSBSA are responsible for ensuring that this policy and its supporting standards and guidelines are built into local processes and that there is on-going compliance. 6.5 All staff, whether permanent, temporary or contracted, and contractors are responsible for ensuring that they are aware of the requirements incumbent upon them and for ensuring that they comply with these on a day to day basis. 7 Validity of this Policy 7.1 This policy is designed to avoid discrimination and be in accordance with the HRA and its underlying principles. 7.2 This policy should be reviewed annually under the authority of the NHSBSA Leadership Team members. Associated IG Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 9 of 13
10 standards should be subject to an ongoing development and review programme. Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 10 of 13
11 Appendix A IGMS Graphical Representation IG Documentation & Materials Overview Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 11 of 13
12 Information Governance Management System Information Governance Management System Data Protection Freedom of Inform ation Inform ation Security Business Continuity Records Management Inform ation Governance Policy Procedure Policy Procedure Policy Procedure Policy Policy Records Register Policy Strategy Procedure Subject Access Requests Requests for Inform ation Disclaimer Inform ation Governance Confidentiality Code of Practice Internal Review Incident Reporting Acceptable Use (inc. M onitoring) Policy Asset Register
13 Information Governance Documentation & Materials Overview Policy Information Governance Management System (Consists of policies on Data Protection, Freedom of Information, Acceptable Use, Information Security, Business Continuity, Records Management & Information Governance) The IG management system sets high level direction and required standards across the Authority. This is supported where necessary by procedures and specific guidance documents, where the required controls are explained in detail. Procedure & Guidance Data Protection Procedure Freedom of Information Procedure Guidance Document Internet Guidance Document Records Register Responsibilities and key awareness messages for all staff are contained in the IGMS and guidance documents, but also in two key documents that have been written specifically to be accessible to all staff as detailed below: Awareness All Staff Confidentiality Code of Practice Summary Leaflet Acceptable Use Staff Agreement In addition to the Code of Practice leaflet and the Acceptable Use Staff Agreement, a reference pack of guidance will be available online. Reference Available to all Information handling reference pack Includes awareness materials for staff and public, guidance on providing access to patient type records (patients, relatives, children, deceased & solicitors). Information sharing documentation (Police, research, children). Freedom of Information process documentation. Communication guidance (fax, phone etc.) This pack will be updated regularly Computer based materials Screen saver, Acceptable use challenge, DP/FOI/IS Awareness Training. Meeting\NHSBSAIGM002 - NHSBSA Information Governance Policy.doc Page 13 of 13
CORPORATE POLICY & PROCEDURE NO. 7 INFORMATION GOVERNANCE POLICY. December 2014
CORPORATE POLICY & PROCEDURE NO. 7 INFORMATION GOVERNANCE POLICY December 2014 DOCUMENT INFORMATION Author: Barbara Sansom Information Governance Manager Equality Impact Assessment Consultation & Approval
MOORLAND SURGICAL SUPPLIES LTD INFORMATION GOVERNANCE POLICY
MOORLAND SURGICAL SUPPLIES LTD INFORMATION GOVERNANCE POLICY Moorland is committed to ensuring that, as far as it is reasonably practicable, the way we provide services to the public and the way we treat
NHS Business Services Authority Information Security Policy
NHS Business Services Authority Information Security Policy NHS Business Services Authority Corporate Secretariat NHSBSAIS001 Issue Sheet Document reference NHSBSARM001 Document location F:\CEO\IGM\IS\BSA
Information Governance Policy
Information Governance Policy REFERENCE NUMBER IG 101 / 0v3 May 2012 VERSION V1.0 APPROVING COMMITTEE & DATE Clinical Executive 4.9.12 REVIEW DUE DATE May 2015 West Lancashire CCG is committed to ensuring
Information Governance Policy
BEXLEY CARE TRUST MANAGEMENT MANUAL Title: INFORMATION GOVERNANCE POLICY Originating Department: IT DEPARTMENT Authorised by: Risk Management Committee June 2008 Reference no: CA12 Date of Issue: JANUARY
Information security policy
Information security policy Issue sheet Document reference Document location Title Author Issued to Reason issued NHSBSARM001 S:\BSA\IGM\Mng IG\Developing Policy and Strategy\Develop or Review of IS Policy\Current
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Primary Intranet Location Information Management & Governance Version Number Next Review Year Next Review Month 7.0 2018 January Current Author Phil Cottis Author s Job Title
INFORMATION GOVERNANCE OPERATING POLICY & FRAMEWORK
INFORMATION GOVERNANCE OPERATING POLICY & FRAMEWORK Log / Control Sheet Responsible Officer: Chief Finance Officer Clinical Lead: Dr J Parker, Caldicott Guardian Author: Associate IG Specialist, Yorkshire
Information Governance Policy
Information Governance Policy Policy ID IG02 Version: V1 Date ratified by Governing Body 27/09/13 Author South Commissioning Support Unit Date issued: 21/10/13 Last review date: N/A Next review date: September
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Version Version 1 Ratified By Date Ratified PROPOSED FOR APPROVAL 15/11/12 Author(s) Responsible Committee / Officers Date Issue November 2012 Review Date November 2013 Intended
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Information Governance Policy_v2.0_060913_LP Page 1 of 14 Information Reader Box Directorate Purpose Document Purpose Document Name Author Corporate Governance Guidance Policy
INFORMATION GOVERNANCE STRATEGY
INFORMATION GOVERNANCE STRATEGY Page 1 of 10 Strategy Owner Valerie Penn, Head of Governance Strategy Author Caroline Law, Information Governance Project Manager Directorate Corporate Governance Ratifying
Information Governance Policy (incorporating IM&T Security)
(incorporating IM&T Security) ONCE PRINTED OFF, THIS IS AN UNCONTROLLED DOCUMENT. PLEASE CHECK THE INTRANET FOR THE MOST UP TO DATE COPY Target Audience: All staff employed or working on behalf of the
INFORMATION GOVERNANCE STRATEGIC VISION, POLICY AND FRAMEWORK
INFORMATION GOVERNANCE STRATEGIC VISION, POLICY AND FRAMEWORK Policy approved by: Assurance Committee Date: 3 December 2014 Next Review Date: December 2016 Version: 1.0 Information Governance Strategic
1.5 The Information Governance Policy should be read in conjunction with the Information Governance Strategy.
Title: Reference No: NHSNYYIG - 007 Owner: Author: INFORMATION GOVERNANCE POLICY Director of Standards First Issued On: September 2010 Latest Issue Date: February 2012 Operational Date: February 2012 Review
Information Governance Policy
Information Governance Policy Policy Summary This policy outlines the organisation s approach to the management of Information Governance and information handling. It explains the accountability and reporting
Business continuity management policy
Business continuity management policy Issue sheet Document reference Document location Title Author Issued to Reason issued NHSBSADPN001b S:\BSA\IGM\Mng IG\Developing Policy and Strategy\Develop or Review
Barnsley Clinical Commissioning Group. Information Governance Policy and Management Framework
Putting Barnsley People First Barnsley Clinical Commissioning Group Information Governance Policy and Management Framework Version: 1.1 Approved By: Governing Body Date Approved: 16 January 2014 Name of
Policy Document Control Page
Policy Document Control Page Title Title: Information Governance Policy Version: 5 Reference Number: CO44 Keywords: Information Governance Supersedes Supersedes: Version 4 Description of Amendment(s):
Information Governance Policy
Author: Susan Hall, Information Governance Manager Owner: Fiona Jamieson, Assistant Director of Healthcare Governance Publisher: Compliance Unit Date of first issue: February 2005 Version: 5 Date of version
NHS Commissioning Board: Information governance policy
NHS Commissioning Board: Information governance policy DOCUMENT STATUS: To be approved / Approved DOCUMENT RATIFIED BY: DATE ISSUED: October 2012 DATE TO BE REVIEWED: April 2013 2 AMENDMENT HISTORY: VERSION
Information Governance Strategy and Policy. OFFICIAL Ownership: Information Governance Group Date Issued: 15/01/2015 Version: 2.
Information Governance Strategy and Policy Ownership: Information Governance Group Date Issued: 15/01/2015 Version: 2.0 Status: Final Revision and Signoff Sheet Change Record Date Author Version Comments
Information Governance Policy
Policy Policy Number / Version: v2.0 Ratified by: Audit Committee Date ratified: 25 th February 2015 Review date: 24 th February 2016 Name of originator/author: Name of responsible committee/individual:
Information Governance Policy
Information Governance Policy Information Governance Policy Issue Date: June 2014 Document Number: POL_1008 Prepared by: Information Governance Senior Manager Insert heading depending on Insert line heading
Information Governance Policy
Information Governance Policy Version: Revised: Consultation: Ratified by: 1.0 Information Governance Committee Governance Committee Date ratified: 19 March 2008 Name of originator/author: David McGrath
Information Governance Policy
Information Governance Policy Version: 4 Bodies consulted: Caldicott Guardian, IM&T Directors Approved by: MT Date Approved: 27/10/2015 Lead Manager: Governance Manager Responsible Director: SIRO Date
NHS Newcastle Gateshead Clinical Commissioning Group. Information Governance Strategy 2015/16
NHS Newcastle Gateshead Clinical Commissioning Group Information Governance Strategy 2015/16 Document Status Equality Impact Assessment Document Ratified/Approved By Approved No impact NHS Quality, Safety
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY POLICY NO IM&T 011 DATE RATIFIED January 2012 NEXT REVIEW DATE January 2015 POLICY STATEMENT/KEY OBJECTIVE: To provide an overarching framework through which Information Governance
All CCG staff. This policy is due for review on the latest date shown above. After this date, policy and process documents may become invalid.
Policy Type Information Governance Corporate Standing Operating Procedure Human Resources X Policy Name CCG IG03 Information Governance & Information Risk Policy Status Committee approved by Final Governance,
How To Ensure Network Security
NETWORK SECURITY POLICY Policy approved by: Assurance Committee Date: 3 December 2014 Next Review Date: December 2016 Version: 1.0 Page 1 of 12 Review and Amendment Log/Control Sheet Responsible Officer:
Information Governance Strategy. Version No 2.0
Plymouth Community Healthcare CIC Information Governance Strategy Version No 2.0 Notice to staff using a paper copy of this guidance. The policies and procedures page of PCH Intranet holds the most recent
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Version: 3.2 Authorisation Committee: Date of Authorisation: May 2014 Ratification Committee Level 1 documents): Date of Ratification Level 1 documents): Signature of ratifying
Information Governance Strategy & Policy
Information Governance Strategy & Policy March 2014 CONTENT Page 1 Introduction 1 2 Strategic Aims 1 3 Policy 2 4 Responsibilities 3 5 Information Governance Reporting Structure 4 6 Managing Information
Information Governance Policy Version - Final Date for Review: 1 October 2017 Lead Director: Performance, Quality and Cooperate Affairs
Information Governance Policy Version - Final Date for Review: 1 October 2017 Lead Director: Performance, Quality and Cooperate Affairs NOTE: This is a CONTROLLED Document. Any documents appearing in paper
INFORMATION GOVERNANCE STRATEGY NO.CG02
INFORMATION GOVERNANCE STRATEGY NO.CG02 Applies to: All NHS LA employees, Non-Executive Directors, secondees and consultants, and/or any other parties who will carry out duties on behalf of the NHS LA.
Caedmon College Whitby
Caedmon College Whitby Data Protection and Information Security Policy College Governance Status This policy was re-issued in June 2014 and was adopted by the Governing Body on 26 June 2014. It will be
Information Governance Strategy
Information Governance Strategy Document Status Draft Version: V2.1 DOCUMENT CHANGE HISTORY Initiated by Date Author Information Governance Requirements September 2007 Information Governance Group Version
Network Security Policy
Department / Service: IM&T Originator: Ian McGregor Deputy Director of ICT Accountable Director: Jonathan Rex Interim Director of ICT Approved by: County and Organisation IG Steering Groups and their relevant
NHS Hartlepool and Stockton-on-Tees Clinical Commissioning Group. Information Governance Strategy 2015/16
NHS Hartlepool and Stockton-on-Tees Clinical Commissioning Group Information Governance Strategy 2015/16 Document Status Equality Impact Assessment Final No impact Document Ratified/Approved By Hartlepool
Version Number Date Issued Review Date V1 25/01/2013 25/01/2013 25/01/2014. NHS North of Tyne Information Governance Manager Consultation
Northumberland, Newcastle North and East, Newcastle West, Gateshead, South Tyneside, Sunderland, North Durham, Durham Dales, Easington and Sedgefield, Darlington, Hartlepool and Stockton on Tees and South
Information Governance Strategy
Information Governance Strategy ONCE PRINTED OFF, THIS IS AN UNCONTROLLED DOCUMENT. PLEASE CHECK THE INTRANET FOR THE MOST UP TO DATE COPY Target Audience: All staff employed or working on behalf of the
JOB DESCRIPTION. Information Governance Manager
JOB DESCRIPTION POST TITLE: Information Governance Manager DIRECTORATE: ACCOUNTABLE TO: BAND: LOCATION: CSS Head of Information Governance 8a CSS Job Purpose The Information Governance Manager will ensure
Information Governance Policy
Information Governance Policy Reference: Information Governance Policy Date Approved: April 2013 Approving Body: Board of Trustees Implementation Date: April 2013 Version: 6 Supersedes: 5 Stakeholder groups
NETWORK SECURITY POLICY
NETWORK SECURITY POLICY Policy approved by: Governance and Corporate Affairs Committee Date: December 2014 Next Review Date: August 2016 Version: 0.2 Page 1 of 14 Review and Amendment Log / Control Sheet
Information Governance Policy
Information Governance Policy Document Number 01 Version Number 2.0 Approved by / Date approved Effective Authority Customer Services & ICT Authorised by Assistant Director Customer Services & ICT Contact
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Issued by: Senior Information Risk Owner Policy Classification: Policy No: POLIG001 Information Governance Issue No: 1 Date Issued: 18/11/2013 Page No: 1 of 16 Review Date:
IS INFORMATION SECURITY POLICY
IS INFORMATION SECURITY POLICY Version: Version 1.0 Ratified by: Trust Executive Committee Approved by responsible committee(s) IS Business Continuity and Security Group Name/title of originator/policy
USE OF PERSONAL MOBILE DEVICES POLICY
Policies and Procedures USE OF PERSONAL MOBILE DEVICES POLICY Date Approved by Information Strategy Group Version Issue Date Review Date Executive Lead Information Asset Owner Author 15.04.2014 1.0 01/08/2014
Information Governance Plan
Information Governance Plan 2013 2015 1. Overview 1.1 Information is a vital asset, both in terms of the clinical management of individual patients and the efficient organisation of services and resources.
Remote Working and Portable Devices Policy
Remote Working and Portable Devices Policy Policy ID IG04 Version: V1 Date ratified by Governing Body 29/09/13 Author South Commissioning Support Unit Date issued: 21/10/13 Last review date: N/A Next review
Data Subject Access Request Procedure
Data Subject Access Request Procedure Policy ID IG07 Version: 2.0 Ratified by: Executive Committee Name of originator/author: Justin Dix, Governing Body Secretary Name of responsible committee/individual:
INFORMATION GOVERNANCE
This document is uncontrolled once printed. Please refer to the Trusts Intranet site (Procedural Documents) for the most up to date version INFORMATION GOVERNANCE NGH-PO-233 Ratified By: Procedural Document
Information Governance Strategy. Version No 2.1
Livewell Southwest Information Governance Strategy Version No 2.1 Notice to staff using a paper copy of this guidance. The policies and procedures page of LSW Intranet holds the most recent version of
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Name of Policy Author: Name of Review/Development Body: Ratification Body: Ruth Drewett Information Governance Steering Group Committee Trust Board : April 2015 Review date:
BEFORE USING THIS GUIDANCE, MAKE SURE YOU HAVE THE MOST UP TO DATE VERSION GUIDANCE 2 POLICY AREA: INFORMATION GOVERNANCE
GUIDANCE 1 TITLE: INFORMATION GOVERNANCE FRAMEWORK 2 POLICY AREA: INFORMATION GOVERNANCE 3 ACCOUNTABLE DIRECTOR FOR POLICY AREA: DIRECTOR OF QUALITY AND GOVERNANCE 4 GUIDANCE DRAFTED BY: INTEGRATED GOVERNANCE
INFORMATION GOVERNANCE POLICY
INFORMATION GOVERNANCE POLICY Including the Information Governance Strategy Framework and associated Information Governance Procedures Last Review Date Approving Body N/A Governing Body Date of Approval
Senate. SEN15-P17 11 March 2015. Paper Title: Enhancing Information Governance at Loughborough University
SEN15-P17 11 March 2015 Senate Paper Title: Enhancing Information Governance at Loughborough University Author: Information Technology & Governance Committee 1. Specific Decision Required by Committee
NHS Business Services Authority Records Management Audit Framework
NHS Business Services Authority Records Management Audit Framework NHS Business Services Authority Corporate Secretariat NHSBSARM019 Issue Sheet Document Reference Document Location Title Author Issued
Information Management Policy CCG Policy Reference: IG 2 v4.1
Information Management Policy CCG Policy Reference: IG 2 v4.1 Document Title: Policy Information Management Document Status: Final Page 1 of 15 Issue date: Nov-2015 Review date: Nov-2016 Document control
Subject Access Request (SAR) Procedure
Subject Access Request (SAR) Procedure East and North Hertfordshire Clinical Commissioning Group Page 1 of 16 DOCUMENT CONTROL SHEET Document Owner: Chief Finance Officer Document Author(s): Anne Ephgrave
Information Governance Framework and Strategy. November 2014
November 2014 Authorship : Committee Approved : Chris Wallace Information Governance Manager CCG Senior Management Team and Joint Trade Union Partnership Forum Approved Date : November 2014 Review Date
What NHS staff need to know
St George s Healthcare NHS NHS Trust Surrey Health Informatics Service Sussex Health Informatics Service Records Management Explained What NHS staff need to know A guide to Records Management Contents
INFORMATION SECURITY POLICY
INFORMATION SECURITY POLICY Policy approved by: Audit and Governance Committee Date: 4 th December 2014 Next Review Date: December 2016 Version: 1 Information Security Policy Page 1 of 17 Review and Amendment
North East Ambulance Service NHS Foundation Trust. Job Description
North East Ambulance Service NHS Foundation Trust Job Description Job Title Patient Experience Clerk A4C Band 3 Accountability Complaints Manager Directorate Clinical Care and Patient Safety Date September
Information Governance Policy
Information Governance Policy Version 1.1 Responsible Person Information Governance Manager Lead Director Head of Corporate Services Consultation Route Information Governance Steering Group Approval Route
Information Governance Policy. 2 RESPONSIBLE PERSON: Steve Beeho, Head of Integrated Governance. All CCG-employed staff.
Information Governance Policy 1 SUMMARY This policy is intended to ensure that staff are fully aware of their Information Governance (IG) responsibilities, so that they can effectively manage and best
Information Sharing Policy
Information Sharing Policy REFERENCE NUMBER IG 010 / 0v3 February 2013 VERSION V1.0 APPROVING COMMITTEE & DATE Clinical Executive Committee 5.2.13 REVIEW DUE DATE February 2016 West Lancashire CCG is committed
INFORMATION GOVERNANCE AND SECURITY 1 POLICY DRAFTED BY: INFORMATION GOVERNANCE LEAD 2 ACCOUNTABLE DIRECTOR: SENIOR INFORMATION RISK OWNER
INFORMATION GOVERNANCE AND SECURITY 1 POLICY DRAFTED BY: INFORMATION GOVERNANCE LEAD 2 ACCOUNTABLE DIRECTOR: SENIOR INFORMATION RISK OWNER 3 APPLIES TO: ALL STAFF 4 COMMITTEE & DATE APPROVED: AUDIT COMMITTEE
INFORMATION GOVERNANCE POLICY & FRAMEWORK
INFORMATION GOVERNANCE POLICY & FRAMEWORK Version 1.2 Committee Approved by Audit Committee Date Approved 5 March 2015 Author: Responsible Lead: Associate IG Specialist, YHCS Corporate & Governance Manger
JOB DESCRIPTION. Specialist Community Practitioner School Nurse (Child and Family Health)
JOB DESCRIPTION Title: Specialist Community Practitioner School Nurse (Child and Family Health) Band: Band 6 Location/Base: Designated Locality within the Trust Directorate/Dept.: Children s Provider Services
RECORD KEEPING IN HEALTHCARE RECORDS POLICY
RECORD KEEPING IN HEALTHCARE RECORDS POLICY Version 6.0 Key Points The Policy provides a framework for the quality of the clinical record facilitates high quality, safe patient care and that subsequently
RECORDS MANAGEMENT POLICY
RECORDS MANAGEMENT POLICY Version 8.0 Purpose: For use by: This document is compliant with /supports compliance with: To outline the lifecycle of a record and to provide guidance on retention and disposal
Rotherham CCG Network Security Policy V2.0
Title: Rotherham CCG Network Security Policy V2.0 Reference No: Owner: Author: Andrew Clayton - Head of IT Robin Carlisle Deputy - Chief Officer D Stowe ICT Security Manager First Issued On: 17 th October
Information Security Policy
Information Security Policy Author: Responsible Lead Executive Director: Endorsing Body: Governance or Assurance Committee Alan Ashforth Alan Lawrie ehealth Strategy Group Implementation Date: September
BIG LOTTERY FUND Document archive and retention policy
BIG LOTTERY FUND Document archive and retention policy December 2010 Sonia Howe Head of Information Governance For further information regarding retention schedules please contact Page 1 of 18 Version
Business Continuity Policy and Business Continuity Management System
Business Continuity Policy and Business Continuity Management System Summary: This policy sets out the structure for ensuring that the PCT has effective Business Continuity Plans in place in order to maintain
NHS Waltham Forest Clinical Commissioning Group Information Governance Policy
NHS Waltham Forest Clinical Commissioning Group Information Governance Policy Author: Zeb Alam & David Pearce Version 3.0 Amendments to Version 2.1 Updates made in line with National Guidance and Legislation
RISK MANAGEMENT STRATEGY 2014-17
RISK MANAGEMENT STRATEGY 2014-17 DOCUMENT NO: Lead author/initiator(s): Contact email address: Developed by: Approved by: DN128 Head of Quality Performance [email protected] Quality Performance Team
POLICY. Responsible Use of Social Media
POLICY Responsible Use of Social Media Contact Officer Director of Personnel Director of Communications & Participation Senior Project Manager: Corporate Policies (Policy author) Purpose The primary aims
How To Protect Your Personal Information At A College
Data Protection Policy Policy Details Produced by Assistant Principal Information Systems Date produced Approved by Senior Leadership Team (SLT) Date approved July 2011 Linked Policies and Freedom of Information
Data protection policy
Data protection policy Introduction 1 This document is the data protection policy for the Nursing and Midwifery Council (NMC). 2 The Data Protection Act 1998 (DPA) governs the processing of personal data
How To Ensure Information Security In Nhs.Org.Uk
Proforma: Information Policy Security & Corporate Policy Procedures Status: Approved Next Review Date: April 2017 Page 1 of 17 Issue Date: June 2014 Prepared by: Information Governance Senior Manager Status:
