Medical Records: Data Protection

(asked on 22nd November 2023) - View Source

Question to the Department of Health and Social Care:

To ask the Secretary of State for Health and Social Care, what steps her Department is taking to ensure the security and privacy of patient data transmitted through Chinese-made cellular internet of things modules.


Answered by
Andrew Stephenson Portrait
Andrew Stephenson
Minister of State (Department of Health and Social Care)
This question was answered on 29th November 2023

The Department keeps the security issues associated with internet facing technology/components, including implications for patient data, under close review as part of its overall approach to security, and in line with Government Security Group, National Protective Security Authority and National Cyber Security Centre guidance. The Data Security and Protection Toolkit, which sets the cyber security standard for health and care organisations, sets out expectations regarding organisations using appropriate technical controls, such as encryption, to protect data.

The National Security and Investment Act allows the Government to intervene where foreign direct investment is targeted at innovative companies within the United Kingdom. Where such investment is within critical sectors, it is mandatory to notify the Government and this is subject to thorough assessment by the national security community. The Procurement Bill will also provide powers for the Government to exclude and debar companies from public procurement where the Government assesses there to be an intolerable national security risk.

Reticulating Splines