Health informatics governance Flashcards

1
Q

What is required to ensure confidentiality and data protection?

A

Adequate training in data protection
Compliance with data protection act 1998
Organisational policies and procedures
Audit process and evidence of compliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are the requirements of the data protection act 1998?

A
Data should be:
Fairly and lawfully processed
Processed for limited purposes
Sufficient and relevant
Accurate
Not stored for longer than necessary
Processed in line with data subject's rights
Secure
Transferred only to countries with adequate security
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the caldicott principles related to?

A

Use and transfer of patient identifiable data other than for direct care, medical research, or statutory requirement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the duties of a Caldicott Guardian?

A

Strategy and governance
Confidentiality and data protection expertise
Internal information processing
Information sharing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are required for information security assurance?

A
Adequate skills
Established business processes
Choice of IT systems supports security requirements
Business continuity plans
Identifiable information assets
Network access security
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are required for clinical information assurance?

A

Adequate skills and knowledge
Correct use of NHS number
Procedures for accuracy of clinical information

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are required for secondary uses assurance?

A

National data definition standards
Maintain external data quality standards
Audit clinical coding accuracy
Validation processes for clinically coded data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Who is the competent authority in the UK to implement the MDD

A

MHRA

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Who are the notified body?

A

Company accredited to assess device against CE mark

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the practical considerations for software with a CE mark?

A

Development must follow a recognised software lifecycle
Risk analysis
Scrutiny of process as well as product

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Why is it important that systems are managed appropriately?

A

Could affect diagnosis or treatment
Patient pathway can involve several medical devices
System admin and interoperability may affect outcomes
Should be managed as part of a process

How well did you know this?
1
Not at all
2
3
4
5
Perfectly