We take clinicians’ data security/privacy and that of patients very seriously. Doc Abode is fully compliant with the Information Commissioners Office (ICO registration number ZA262164), has Information Governance (IG) toolkit level 2 compliance and fully compliant with the Data Protection and Security (DSP) toolkit. We have a Data Protection Officer (DPO) who can be contacted (dataprotection@docabode.com) for any data or privacy issues. Our Caldicott Guardian and SIRO are also contactable on the same email.
Our privacy policy can be found at https://docabode.com/privacy policy/policy/. We also have an independent Clinical Safety Officer who has assured our software engineering processes are met to the highest of standards and is compliant to (DCB0129) NHS Digital standards. Doc Abode also holds CREST Certified Cyber Essentials accreditation. Mobile Application Login is multi factor authentication and internet security is implemented through Transport Layer Security (TLS), in the form of the HTTPS protocol. We have undertaken PEN testing of all our software components and will undertake further penetration testing for every significant software release/update and at least annually. Doc Abode is fully compliant with GDPR requirements and is registered under NHS Digital’s Organisation Data Service (ODS code 8JR75).
All Doc Abode staff have undertaken certified IG training. We have undertaken a Data Privacy Impact Assessment (DPIA) and we make this available to healthcare provider organisation DPO’s. Doc Abode complies with the National Data Guardian’s Data 10 Security Standards. Doc Abode has independent Information Governance (IG), cyber and data security experts who oversee all our systems and processes.