PHIA: Difference between revisions

From CCMDB Wiki
Jump to navigation Jump to search
mNo edit summary
m (link fix)
 
(18 intermediate revisions by 2 users not shown)
Line 1: Line 1:
'''PHIA''' is the Personal Health Information Act of the province of Manitoba. This legislation lays out what we have to do to make sure patient data is not compromised.  
'''PHIA''' is the [https://www.gov.mb.ca/health/phia/index.html Personal Health Information Act] of the province of Manitoba lays out how all patient data must be treated. Everyone who works for this program must have received WRHA PHIA training, and must have signed a PHIA declaration.  


<!-- as off PDA and You -->
== What PHIA means for this wiki ==
As health care workers we all signed the Personal Health Information Act. While paper documentation of personal health information has to be handled respectfully and in accordance with security policies, digital data needs to be treated with even more caution. The reason being is that it is easily reproduced and communicated. With this newer PDA technology it is important that we make an added effort surrounding data security and set the standards for future projects.
PHIA states that patient data must be kept private. '''The wiki is not private.''' This means that there must never be any information that could identify a patient in either
* wiki articles
* emails sent via the wiki


There are several security measures in currently in place. First, a strong password on the PDA that uses capitals, numbers and at least 7 digits.  To enhance this security users are advised to not communicate this password and to frequently change it. The next layer of security is at the HanDBase program level.  Of the data collected on each patient any patient identifiers have been encrypted. This encryption extends to the backup files on the computer used for synchronization.
== Measures to ensure patient privacy in our data collection ==
There are several security measures in place:


On the computer, the computer itself is password protected, and the Access application is also password protected. The computer used for this is located in a locked office with limited access. The data on the computer is dumped onto a folder on the regional. Only the data collectors of a specific hospital and the data managers have access to this folder. 
* computers/laptops are located in a locked office with limited access


* computers/laptops are eHealth managed and encrypted


* the data collection program [[CCMDB.accdb]] and its data back-end [[CCMDB_data.mdb]] are password protected


==Additional Info Required==
* data is stored on a folder on the [[Regional Server]] when possible; only the [[Data Collector]]s and the [[Main office]] have access to this folder.
*''''' actual PHIA legislation link
*''''' update


== Related articles ==
{{Related Articles}}


 
[[Category: IT Instructions]]
{{stub}}
[[Category: Wiki use]]
[[Category:IT Instructions]]

Latest revision as of 10:07, 2021 December 23

PHIA is the Personal Health Information Act of the province of Manitoba lays out how all patient data must be treated. Everyone who works for this program must have received WRHA PHIA training, and must have signed a PHIA declaration.

What PHIA means for this wiki

PHIA states that patient data must be kept private. The wiki is not private. This means that there must never be any information that could identify a patient in either

  • wiki articles
  • emails sent via the wiki

Measures to ensure patient privacy in our data collection

There are several security measures in place:

  • computers/laptops are located in a locked office with limited access
  • computers/laptops are eHealth managed and encrypted

Related articles

Related articles: