Consulting Room and Front Desk Security

PATIENTS AND CLIENTS HAVE THE RIGHT TO EXPECT THAT ALL PERSONAL INFORMATION SHOULD BE KEPT CONFIDENTIAL.


FRONT DESK SECURITY
Visual Access
Reception computers should be placed in a position where patients and members of the public cannot view the screens, or get access to the computers.
There should be a screen saver installed to activate after 1 minute of inactivity.  Password protection to reactivate the screen is an option but probably too time consuming for the operator.

Physical Access
Computers need to be located behind a counter and in a position where they cannot be physically accessed by a member of the public.  If a notebook is used, in a consulting area, a physical restriction, such as a “Kensington Lock” and plastic coated metal cable should be used as a physical restrainer.
A Kensington Lock is a small, metal-reinforced hole found on almost laptop computers.  It is used for attaching a lock-and-cable apparatus, in particular those from Kensington.

 

CONSULTING ROOM SECURITY
Doctors and consultants need to be aware of the risk of patient information being accessible to people other than the actual patient.
Some doctors and consultants like their computer screens to be clearly visible to their patients during consultations.  Sometimes this cannot be avoided due to the layout of the room.  However, there then needs to be security awareness, reinforced by continual reminders, about the exposure of sensitive information to people other than the person directly associated with the screen information.

A screen saver needs to be installed, set to activate after a minute of non use.  A password to reinstate the screen is preferable, especially if the doctor or consultant is called away during a session.

Staff need to be aware of the Windows XP  “Windows” Key + L key function.  When the “Windows” key is held down and the “L” key is pressed, the screen saver comes on immediately.  This should be mandatory, when a staff member leaves any exposed computer.

Obviously, all servers should be locked away, secure from any interference.

 

Previous | Next