I wrote my musings on GDPR about 6 months ago - it may need a little tweaking, but I still believe it largely stands. The only difference I'm really aware of, from the perspective of a healthcare IG professional, is that the IG Alliance confirmed in a webinar on 03/08 that ‘the right to be forgotten does not apply to health records’. And, from a healthcare perspective we are awaiting full guidance from the IGA in the spring of next year as to how to apply GDPR to health and social care settings. https://www.linkedin.com/pulse/implications-general-data-protection-regulation-nhs-andrew?trk=pulse_spock-articles Kind regards, Andrew. Andrew Harvey Head of Information Governance Western Sussex Hospitals NHS Foundation Trust Worthing Hospital, Lyndhurst Road, Worthing, BN11 2DH Tel 01903 205111 x84508 Mob 07900 736922 Email [log in to unmask] NHSmail [log in to unmask] If unavailable [log in to unmask] Is your Information Governance Mandatory Training up to date? If not, click here. www.westernsussexhospitals.nhs.uk The information contained in this e-mail may be subject to public disclosure under the NHS Code of Openness or the Freedom of Information Act 2000. Any processing, redistribution, disclosure, or reproduction of this message, except as intended is prohibited. Unless the information is legally exempt from disclosure, the confidentiality of this e-mail and your reply cannot be guaranteed. If you received this e-mail in error, please notify the sender and remove all copies of the message, including any attachments. Any views or opinions expressed in this e-mail (unless otherwise stated) may not represent those of Western Sussex Hospitals NHS Foundation Trust. E-mails are not considered a secure medium for sending personal, sensitive or confidential information outside the Trust network unless encrypted and may therefore be at risk. -----Original Message----- From: This list is for those interested in Data Protection issues [mailto:[log in to unmask]] On Behalf Of Andrew Cormack Sent: 21 November 2016 14:42 To: [log in to unmask] Subject: Re: [data-protection] GDPR 'road map' As a first stab I had a go at putting the "12 steps" into a logical (from a project management/dependency point of view) sequence: https://community.jisc.ac.uk/blogs/regulatory-developments/article/gdpr-twelve-steps-sorted Andrew > -----Original Message----- > From: This list is for those interested in Data Protection issues > [mailto:data- [log in to unmask]] On Behalf Of Rebecca > Messenger-Clark > Sent: 21 November 2016 10:34 > To: [log in to unmask] > Subject: GDPR 'road map' > > For want of a less twee phrase, we are in the process of putting > together a 'road map' for compliance. Is there any appetite for a > collaborative attempt (where sector differences allow)? > > ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ > ^^^^^ > All archives of messages are stored permanently and are > available to the world wide web community at large at > http://www.jiscmail.ac.uk/lists/data-protection.html > If you wish to leave this list please send the command > leave data-protection to [log in to unmask] All user > commands can be found at http://www.jiscmail.ac.uk/help/commandref.htm > Any queries about sending or receiving messages please send to the > list owner > [log in to unmask] > Full help Desk - please email [log in to unmask] describing your needs > To receive these emails in HTML format send the command: > SET data-protection HTML to [log in to unmask] > (all commands go to [log in to unmask] not the list please) > > ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ > ^^^^^ ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ All archives of messages are stored permanently and are available to the world wide web community at large at http://www.jiscmail.ac.uk/lists/data-protection.html If you wish to leave this list please send the command leave data-protection to [log in to unmask] All user commands can be found at http://www.jiscmail.ac.uk/help/commandref.htm Any queries about sending or receiving messages please send to the list owner [log in to unmask] Full help Desk - please email [log in to unmask] describing your needs To receive these emails in HTML format send the command: SET data-protection HTML to [log in to unmask] (all commands go to [log in to unmask] not the list please) ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^ All archives of messages are stored permanently and are available to the world wide web community at large at http://www.jiscmail.ac.uk/lists/data-protection.html If you wish to leave this list please send the command leave data-protection to [log in to unmask] All user commands can be found at http://www.jiscmail.ac.uk/help/commandref.htm Any queries about sending or receiving messages please send to the list owner [log in to unmask] Full help Desk - please email [log in to unmask] describing your needs To receive these emails in HTML format send the command: SET data-protection HTML to [log in to unmask] (all commands go to [log in to unmask] not the list please) ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^