Accreditation practice pointer: information security
C6.4 C Our practice’s clinical software is accessible only via unique individual identification that gives access to information according to the person’s level of authorisation.
RACGP Standards for general practice, 5th edition.
Upholding patient privacy is fundamental to all healthcare providers. This can be achieved in part by restricting access to clinical software. General practice must document which team members have access to any level of patient health data and maintain a privacy policy.
It is critical that clinical software passwords of each practice team member are secure.
Practices can also:
maintain an information technology policy
give only appropriate access to each role, based on position descriptions
ensure that staff members are trained to log out or lock computers and other devices after each use
maintain a register of who borrows or takes a laptop or mobile phone
maintain secure passwords for portable devices
install current antivirus software on all devices.