GDPR and the NHS: An update

January 9, 2018

As the UK will still be a member of the EU in May 2018, the Government has confirmed it will implement the GDPR on schedule.

GDPR policy and guidance, which will be published by the Information Governance Alliance (IGA) is being developed by a national GDPR working group chaired by NHS England. The IGA has already produced a briefing note highlighting the things health organisations should be considering right now.

The working group is issuing staged guidance, with the first suite, on changes to data protection legislation, published in November 2017. Further guidance on topics such as NHS data protection accountability and governance, implications of the GDPR on health and social care research, transparency, consent and subject rights, personal data breaches and notification and profiling and risk stratification will be issued in the months leading up to May 2018.

You can find the IGA’s advice here at NHS Digital – but don’t get your hopes up: the ICA already admits that it’s running late releasing advice; and larger NHS organisations ought to be some way down the road of GDPR preparations already.

The Information Commissioner’s Office (ICO) has also produced a living document which includes links to relevant sections and updated guidance produced by the EU’s Article 29 Working Party, which includes data protection representatives from each EU member state and the ICO is the UK’s representative.

Prepare your organisation and your workers for the GDPR and data protection changes with our range of online data protection learning courses.

Similar Posts

  • Mental illness – Ending the taboo

    Thanks to the efforts of Princes Harry and William, and the Duchess of Cambridge, and their ‘Heads Together’ programme, you might think discussing mental health issues would be less of a taboo than it

  • Is the learning landscape changing?

    Uncertainty is an overarching theme of our age. Being a species with an innate fear of the unknown this presents us with substantial challenges. Rather than becoming more and more anxious about what w

  • How to achieve payroll compliance under GDPR

    Payroll management involves processing a lot of sensitive employee data, so it factors highly in concerns surrounding GDPR compliance. If you’re unsure if you’re compliant, or work with third party pa

  • New Course: Stroke Awareness

    This course is split into two interactive and engaging modules, focusing on the identification of stroke and how to prevent it.

  • Me Learning Volunteers!

    As part of our ongoing charity project initiative with our current charity partner Friends of the Elderly, on 3rd April…