Data Protection Breach

I was St Georges Hospital again yesterday – yes I know yawn! Its another rant about that lot. However this in its own right is as concerning as the last. We were in with the doctor in their office about 45 minutes. In that time the doctor left the room for between 5 and 8 minutes at a time. When she left in full view were medical records on her computer screen! She had failed to lock her computer using the ctrl-alt-del command every time! I could have done anything! Amended my records, deleted some of them or even read or amended someone else’s! This is a clear breach of the data protection act and basic information security principals! When I challenged the doctor about this all I got was a sheepish response and not an apology befitting a proper professional who was clearly incompetent with regard to patient confidentiality and information security even when I explained that at some NHS trusts such a blatant failure to keep patient information secure would be a disciplinary offence! Speaking as a technology professional I have worked in environments where I would be instantly dismissed if I failed to lock my screen on leaving my desk! How would you feel if your records were hacked because of this doctors incompetence? Yes I know I write a lot about the failings of this hospital but clearly in all aspects of managing and operating a hospital the management are clearly inept and out of their depth in my opinion. Also as I was walking through the labyrinth of corridors I once again could not help noticing how filthy the place was. This is a hospital it should be kept clean. Good polish cleaners in South London are not that expensive! I really wish St Georges Hospital would not give me so many excuses to blog about them and I apologise to readers of these pages for the amount of times I feel I have to justifiably blog about them. Maybe the Chief Executive and his senior team will wake up and smell the coffee this time?

error: Content is protected !!