Data breach involving patient data: report it promptly and carefully
In the event of a data breach involving patient data, every hour counts: the breach must be reported to the Dutch Data Protection Authority within 72 hours. CrisisRadar helps hospitals and healthcare organisations to inform patients and partners carefully.
Wat er gebeurt
It has come to light that patient data at a hospital has been accessed by unauthorised persons. This involves sensitive medical information. According to AVG and NEN 7510, the hospital must act swiftly: assess the data breach, minimise the damage and report it to the Dutch Data Protection Authority within 72 hours. If the breach is serious, the affected patients must also be informed. This is no easy task: the message must be clear and carefully worded, without causing panic. At the same time, the board of directors, the data protection officer and, possibly, the press will want to be kept informed. Without a clear overview and a consistent approach, deadlines and trust are at risk.
Van melding tot heldere communicatie
At-a-glance overview
Keep track of the steps, deadlines and notifications in a single crisis overview.
Report it in good time
Keep an eye on the 72-hour deadline and the notification to the Dutch Data Protection Authority.
One clear message
Provide clear and unambiguous information to patients, the board and partners.
Wie samenwerkt in dit scenario
CrisisRadar brengt alle betrokken partijen op één lijn, met één gedeeld crisisbeeld.
- Data breaches must be reported to the supervisory authority within 72 hours
- Affected patients were carefully informed
- Management and partners have access to the same information
- Complies with the requirements set out at NEN 7510 and AVG
Goed voorbereid op dit scenario?
In een korte demo laten we zien hoe CrisisRadar u helpt — van voorbereiding tot de eerste minuut van de crisis.