Feeds

UK doctor loses unencrypted laptop containing patient data

Sticks and stones may break my bones but data loss really riles me

Next gen security for virtualised datacentres

A UK doctor faces a disciplinary inquiry after an unencrypted laptop containing confidential patient data was stolen from his home.

The unnamed junior medic acted against regulations set by the Hull and East Yorkshire Hospitals NHS Trust, his employers. The doctor took unencrypted patient information – including names, dates of birth, the treatments – on 1,147 patients and loaded it onto his laptop, which was stolen in November. The medic waited for two weeks before informing his superiors about the theft.

Hospital bosses have written to orthopaedic patients (who had been treated for broken bones, hip replacements etc) in order to apologise. The medic was temporally suspended as a result of the incident but has now returned to work pending the results of a disciplinary hearing, This is Hull reports.

The local news outlet has a picture of irate mum Cathie Holmes, 37, of Beverley, whose daughter Mary, 12, was among those whose details were exposed. Hospital bosses wrote a letter to Mary about the breach, a move that incensed her mum. "You can't send a letter of that magnitude to a child and expect them to understand it," she said.

The breach is the third incident of personal data exposure to affect Hull residents in less than a year, following an earlier snafu involving the theft of sensitive data from A4e and the unauthorised access of sensitive data by an NHS staffer.

Chris McIntosh, chief exec of encryption tools firm Stonewood, said hospital bosses were partly to blame for the latest incident.

"It is all very well organisations having regulations on data protection, yet if they can be easily broken by employees, whether knowingly or not, they become meaningless," McIntosh said.

"This doctor should never have had the opportunity to take unencrypted data home with him. Hull and East Yorkshire Trust needs to have more than regulations in place that simply shift the blame to employees," he added. ®

Secure remote control for conventional and virtual desktops

More from The Register

next story
Super Cali signs a kill-switch, campaigners say it's atrocious
Remote-death button bad news for crooks, protesters – and great news for hackers?
UK government accused of hiding TRUTH about Universal Credit fiasco
'Reset rating keeps secrets on one-dole-to-rule-them-all plan', say MPs
Caught red-handed: UK cops, PCSOs, specials behaving badly… on social media
No Mr Fuzz, don't ask a crime victim to be your pal on Facebook
e-Borders fiasco: Brits stung for £224m after US IT giant sues UK govt
Defeat to Raytheon branded 'catastrophic result'
Ex US cybersecurity czar guilty in child sex abuse website case
Health and Human Services IT security chief headed online to share vile images
Don't even THINK about copyright violation, says Indian state
Pre-emptive arrest for pirates in Karnataka
The police are WRONG: Watching YouTube videos is NOT illegal
And our man Corfield is pretty bloody cross about it
Felony charges? Harsh! Alleged Anon hackers plead guilty to misdemeanours
US judge questions harsh sentence sought by prosecutors
prev story

Whitepapers

A new approach to endpoint data protection
What is the best way to ensure comprehensive visibility, management, and control of information on both company-owned and employee-owned devices?
Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Maximize storage efficiency across the enterprise
The HP StoreOnce backup solution offers highly flexible, centrally managed, and highly efficient data protection for any enterprise.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Next gen security for virtualised datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.