{"id":12271,"date":"2023-02-15T12:02:12","date_gmt":"2023-02-15T12:02:12","guid":{"rendered":"https:\/\/formdr.com\/uk\/?p=12271"},"modified":"2023-02-22T10:27:39","modified_gmt":"2023-02-22T10:27:39","slug":"will-your-patient-forms-cost-you-thousands","status":"publish","type":"post","link":"https:\/\/formdr.com\/uk\/blog\/health-news\/will-your-patient-forms-cost-you-thousands\/","title":{"rendered":"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3?"},"content":{"rendered":"\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"546\" src=\"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms-1024x546.jpg\" alt=\"\" class=\"wp-image-12295\" srcset=\"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms-1024x546.jpg 1024w, https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms-300x160.jpg 300w, https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms-768x410.jpg 768w, https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg 1500w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>The last thing any practice or business wants is to be fined over \u00a3250,000 by the Information Commissioner\u2019s Office (ICO) in the United Kingdom for not storing sensitive special category data securely. Personal health data is one of many special categories of data under UK GDPR and the Data Protection Act of 2018 (DPA) that need to be treated with great care due to sensitivity. While these data protection regulations are relatively new, we are starting to see how the government expects practices and businesses to treat health related information. Many businesses don\u2019t understand the gravity of their current processes and that this type of penalty is completely avoidable.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Penalties are in Effect <em>NOW<\/em><\/strong><\/h2>\n\n\n\n<p>The most significant fine in the health care sector thus far was levied in late 2019 against a London based pharmacy that did not handle health data in a proper manner. This pharmacy was fined \u00a3275,000 for failure to ensure the security of special category data and ordered to improve its data protection processes within three months or face additional consequences. You can read the citation <a href=\"https:\/\/ico.org.uk\/media\/action-weve-taken\/enforcement-notices\/2616741\/doorstop-en-20191217.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">in its entirety<\/a>, although what stands out is how the citation directly references Article 32 of GDPR titled \u201cSecurity of Processing.\u201d<\/p>\n\n\n\n<p><a href=\"https:\/\/gdpr-info.eu\/art-32-gdpr\/\" target=\"_blank\" rel=\"noreferrer noopener\">Article 32<\/a> states in relevant part (emphasis added in bold):<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\" style=\"font-style:normal;font-weight:100\">\n<p>1. Taking into account the state of the art, the costs of implementation and the nature, scope, context and purposes of processing as well as the risk of varying likelihood and severity for the rights and freedoms of natural persons, <strong>the controller and the processor shall implement appropriate technical and organisational measures<\/strong> to ensure a level of security appropriate to the risk, including inter alia as appropriate:<\/p>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<ul class=\"wp-block-list\">\n<li>(a) the pseudonymisation and <strong>encryption of personal data<\/strong>;<\/li>\n\n\n\n<li>(b) the ability to <strong>ensure the ongoing confidentiality<\/strong>, integrity, availability and resilience of processing systems and services;<\/li>\n\n\n\n<li>(c) the ability to restore the availability and access to personal data in a timely manner in the event of a physical or technical incident;<\/li>\n\n\n\n<li>(d) a process for <strong>regularly<\/strong> <strong>testing, assessing and evaluating the effectiveness of technical and organisational measures <\/strong>for ensuring the security of the processing.<\/li>\n<\/ul>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>2. In assessing the appropriate level of security <strong>account shall be taken in particular<\/strong> of the risks that are presented by processing, in particular from accidental or unlawful destruction, loss, alteration, <strong>unauthorised disclosure<\/strong> of, or <strong>access to personal data transmitted<\/strong>, <strong>stored<\/strong> <strong>or otherwise processed<\/strong>.<\/p>\n<\/blockquote>\n\n\n\n<p>Health data is a <a href=\"https:\/\/ico.org.uk\/for-organisations\/guide-to-data-protection\/guide-to-the-general-data-protection-regulation-gdpr\/lawful-basis-for-processing\/special-category-data\/\" target=\"_blank\" rel=\"noreferrer noopener\">special category<\/a> of data under UK law, meaning that anything with personal or protected health information needs to have the highest levels of security. Article 32 lists a number of areas where health businesses and practices can improve their data security, including \u201cappropriate technical and organisational measures,\u201d \u201cencryption of personal data,\u201d the ability to ensure security, and protections against \u201cunauthorised disclosure of, or access to personal data.\u201d<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><strong>Time to Review Your Processes<\/strong><\/h2>\n\n\n\n<p>Practices are still learning and adjusting to UK GDPR and DPA 2018, though there are 5 questions that you should start asking yourself today to reduce your chance of being fined:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\">\n<li>Does your practice still email documents and forms with patient health information back and forth?<\/li>\n\n\n\n<li>Is your patient information encrypted?<\/li>\n\n\n\n<li>Do you have a system in place to ensure the security of patient information?<\/li>\n\n\n\n<li>If you still use paper files, are they securely stored and maintained?<\/li>\n\n\n\n<li>Do you receive any identifiable health information into an email inbox?<\/li>\n<\/ol>\n\n\n\n<p>These questions are just a starting point, but your answers can help determine next steps for you to ensure the highest levels of data security. <a href=\"https:\/\/formdr.com\/uk\/\">FormDr<\/a> allows you to send and receive online forms that are encrypted and secure. All data is stored in our secure portal so you do not need to worry about sensitive data in your inbox. We take the security of patient data seriously so that you have one less item to stress about. Schedule a free <a href=\"https:\/\/formdr.com\/uk\/schedule\/consultation\/\">consultation and demo today<\/a>!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The last thing any practice or business wants is to be fined over \u00a3250,000 by the Information Commissioner\u2019s Office (ICO) in the United Kingdom for not storing sensitive special category data securely. Personal health data is one of many special categories of data under UK GDPR and the Data Protection Act of 2018 (DPA) that [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":12295,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[82,1,81,11],"tags":[84,78,83],"class_list":["post-12271","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-avoiding-penalties","category-blog","category-form-security","category-health-news","tag-fines-for-health-data","tag-secure-online-forms","tag-sensitive-category-data"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3? - FormDr UK<\/title>\n<meta name=\"description\" content=\"The UK has started fining businesses that do not treat health data with the highest levels of security. These penalties are easy to avoid!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3? - FormDr UK\" \/>\n<meta property=\"og:description\" content=\"The UK has started fining businesses that do not treat health data with the highest levels of security. These penalties are easy to avoid!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/\" \/>\n<meta property=\"og:site_name\" content=\"FormDr UK\" \/>\n<meta property=\"article:published_time\" content=\"2023-02-15T12:02:12+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2023-02-22T10:27:39+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1500\" \/>\n\t<meta property=\"og:image:height\" content=\"800\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"FormDr\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"FormDr\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/\"},\"author\":{\"name\":\"FormDr\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/#\\\/schema\\\/person\\\/61888668d12aad3f97df98d5da937409\"},\"headline\":\"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3?\",\"datePublished\":\"2023-02-15T12:02:12+00:00\",\"dateModified\":\"2023-02-22T10:27:39+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/\"},\"wordCount\":642,\"image\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/formdr.com\\\/uk\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/Avoid-Penalties-with-Secure-Forms.jpg\",\"keywords\":[\"Fines for Health Data\",\"Secure Online Forms\",\"Sensitive Category Data\"],\"articleSection\":[\"Avoiding Penalties\",\"Blog\",\"Form Security\",\"Health News\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/\",\"url\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/\",\"name\":\"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3? - FormDr UK\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/formdr.com\\\/uk\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/Avoid-Penalties-with-Secure-Forms.jpg\",\"datePublished\":\"2023-02-15T12:02:12+00:00\",\"dateModified\":\"2023-02-22T10:27:39+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/#\\\/schema\\\/person\\\/61888668d12aad3f97df98d5da937409\"},\"description\":\"The UK has started fining businesses that do not treat health data with the highest levels of security. These penalties are easy to avoid!\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#primaryimage\",\"url\":\"https:\\\/\\\/formdr.com\\\/uk\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/Avoid-Penalties-with-Secure-Forms.jpg\",\"contentUrl\":\"https:\\\/\\\/formdr.com\\\/uk\\\/wp-content\\\/uploads\\\/2023\\\/02\\\/Avoid-Penalties-with-Secure-Forms.jpg\",\"width\":1500,\"height\":800},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/blog\\\/will-your-patient-forms-cost-you-thousands\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/formdr.com\\\/uk\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/#website\",\"url\":\"https:\\\/\\\/formdr.com\\\/uk\\\/\",\"name\":\"FormDr UK\",\"description\":\"Secure Online Forms\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/formdr.com\\\/uk\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/formdr.com\\\/uk\\\/#\\\/schema\\\/person\\\/61888668d12aad3f97df98d5da937409\",\"name\":\"FormDr\",\"url\":\"https:\\\/\\\/formdr.com\\\/uk\\\/author\\\/formdr\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3? - FormDr UK","description":"The UK has started fining businesses that do not treat health data with the highest levels of security. These penalties are easy to avoid!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/","og_locale":"en_US","og_type":"article","og_title":"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3? - FormDr UK","og_description":"The UK has started fining businesses that do not treat health data with the highest levels of security. These penalties are easy to avoid!","og_url":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/","og_site_name":"FormDr UK","article_published_time":"2023-02-15T12:02:12+00:00","article_modified_time":"2023-02-22T10:27:39+00:00","og_image":[{"width":1500,"height":800,"url":"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg","type":"image\/jpeg"}],"author":"FormDr","twitter_card":"summary_large_image","twitter_misc":{"Written by":"FormDr","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#article","isPartOf":{"@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/"},"author":{"name":"FormDr","@id":"https:\/\/formdr.com\/uk\/#\/schema\/person\/61888668d12aad3f97df98d5da937409"},"headline":"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3?","datePublished":"2023-02-15T12:02:12+00:00","dateModified":"2023-02-22T10:27:39+00:00","mainEntityOfPage":{"@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/"},"wordCount":642,"image":{"@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#primaryimage"},"thumbnailUrl":"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg","keywords":["Fines for Health Data","Secure Online Forms","Sensitive Category Data"],"articleSection":["Avoiding Penalties","Blog","Form Security","Health News"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/","url":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/","name":"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3? - FormDr UK","isPartOf":{"@id":"https:\/\/formdr.com\/uk\/#website"},"primaryImageOfPage":{"@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#primaryimage"},"image":{"@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#primaryimage"},"thumbnailUrl":"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg","datePublished":"2023-02-15T12:02:12+00:00","dateModified":"2023-02-22T10:27:39+00:00","author":{"@id":"https:\/\/formdr.com\/uk\/#\/schema\/person\/61888668d12aad3f97df98d5da937409"},"description":"The UK has started fining businesses that do not treat health data with the highest levels of security. These penalties are easy to avoid!","breadcrumb":{"@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#primaryimage","url":"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg","contentUrl":"https:\/\/formdr.com\/uk\/wp-content\/uploads\/2023\/02\/Avoid-Penalties-with-Secure-Forms.jpg","width":1500,"height":800},{"@type":"BreadcrumbList","@id":"https:\/\/formdr.com\/uk\/blog\/will-your-patient-forms-cost-you-thousands\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/formdr.com\/uk\/"},{"@type":"ListItem","position":2,"name":"Will Your Patient Forms Cost You Thousands \u00a3\u00a3\u00a3?"}]},{"@type":"WebSite","@id":"https:\/\/formdr.com\/uk\/#website","url":"https:\/\/formdr.com\/uk\/","name":"FormDr UK","description":"Secure Online Forms","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/formdr.com\/uk\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/formdr.com\/uk\/#\/schema\/person\/61888668d12aad3f97df98d5da937409","name":"FormDr","url":"https:\/\/formdr.com\/uk\/author\/formdr\/"}]}},"_links":{"self":[{"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/posts\/12271","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/comments?post=12271"}],"version-history":[{"count":5,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/posts\/12271\/revisions"}],"predecessor-version":[{"id":12344,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/posts\/12271\/revisions\/12344"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/media\/12295"}],"wp:attachment":[{"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/media?parent=12271"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/categories?post=12271"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/formdr.com\/uk\/wp-json\/wp\/v2\/tags?post=12271"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}