Simple clear advice in plain English

Camden PCT falls foul of ICO for breaches of Data Protection Act

Details of thousands of patients left on obsolete computers

crn/27-10-2008/weee-computers

The Information Commissioner’s Office (ICO) has taken enforcement action against Camden Primary Care Trust (PCT) following a breach of the Data Protection Act.

Nine computers containing 2,500 individuals’ names, addresses and medical diagnoses were left beside a skip inside the grounds of St Pancras Hospital in August 2008.

The privacy watchdog said the information was not encrypted and, although the computers were no longer in use, the data controller had not authorised their disposal and did not discover the incident for 13 days.

To make matters worse the PCs were removed from the scene and never recovered.

Mick Gorrill, Assistant Information Commissioner at the ICO, said: "The ICO takes all data breaches seriously. Individuals must feel confident that their personal health records will be handled properly by NHS bodies.

"Over 2,500 individuals may have suffered anxiety as a result of this breach with the worry that their medical records could fall into the wrong hands. This incident highlights organisational error and will no doubt damage public trust in the NHS locally.

"I am increasingly concerned about the way some NHS organisations dispose of sensitive patient information. Organisations need to ensure they implement appropriate safeguards to ensure personal details about patients are disposed of in compliance with the Data Protection Act."

The Trust has now been ordered by the ICO to ensure all personal information is removed from computer equipment as soon as it is decommissioned. The PCT has been ordered to update the ICO on progress made by 31 March 2009.

Failure to meet the terms of the Enforcement Notice would be a criminal offence and may lead to pr osecution.

Article tags

Reader Comments

   

Add your comment

All fields must be completed. Your email address will not be displayed or used to send marketing messages.

All messages will be checked by moderators before appearing on the site.

See our Privacy Policy for more information.

Related articles

Oliver Letwin Tory MP

Privacy watchdog says Oliver Letwin broke data protection laws

Information commissioner says dumping constituents' letters in park bin was an offence

Child Exploitation and Online Protection Centre logo

CEOP fixes security flaw found in its online reporting form

Online form used to report suspicious activity was not encrypted, but the Information Commissioner's Office says people's personal details are now secure

d6bee270-19a0-4790-8a51-d9391e1552bd

ICO rebukes Internet Eyes after video footage leaked on Youtube

Internet Eyes website taken to task for CCTV online privacy breach

Question & Answer

Q.Why are some of the keys on my keyboard doing strange...

> Read the answer

Q.Is my phone’s Bluetooth any use?

> Read the answer

Q.Can I switch boot drives so that I can work on older...

> Read the answer

Best deals on the web

img

Apple iMac 21.5" (MC309)

£926.40- Buy it now

img

Dell Inspiron 620 ST Intel Core i3-2100 3.10GHz / 3GB / 500GB / DVDRW / Win 7 Home Premium

£329.00- Buy it now

img

ZooStorm 7877-1023

£386.38- Buy it now

Latest issue & subscription deals

Poll

Are you concerned about viruses that target mobile phones?

Jargon Buster

Computing terms explained in plain English

CAD

Computer Aided Design. Software used to create 3D models.

Great shopping deals from Computeractive