The Data Protection Officer is responsible for ensuring the Practice remains compliant at all times with Data Protection, Privacy & Electronic Communications Regulations, Freedom of Information Act and the Environmental Information Regulations. The Data Protection Officer shall:
- Lead on the provision of expert advice to the Practice on all matters concerning the Data Protection Act, compliance, best practice and setting and maintaining standards
- Inform and advise the organisation and its employees of their data protection obligations under the GDPR
- Monitor the organisation’s compliance with the GDPR and internal data protection policies and procedures. This will include monitoring the assignment of responsibilities, awareness training, and training of staff involved in processing operations and related audits
- Advise on the necessity of data protection impact assessments (DPIAs), the manner of their implementation and outcomes
- Serve as the contact point to the data protection authorities for all data protection issues, including data breach reporting.
The DPO will be independent and an expert in data protection. The DPO will be the Practice’s point of contact with the Information Commissioner’s Office. The DPO can be contacted via the contact details at the top of this notice. Please address your request for the attention of the Data Protection Officer (DPO).
Please contact the Data Protection Officer if:
- You have any questions about how your information is being held
- If you require access to your information or if you wish to make a change to your
- information
- If you wish to make a complaint about anything to do with the personal and healthcare
- information we hold about you
- Or any other query relating to this Policy and your rights as a patient.