Information Management Policy
Information Management Policy
Information Management Policy
Key Words: Records, Records Management, Unique Identifier, Clinical Classification Policy Applies to: All staff employed by Mercy Hospital, Board of Directors, Credentialed Specialists Allied Health Professionals, and others involved in the provision of service at Mercy Hospital Dunedin Limited. Related Standards: Privacy Act 1993 Ombudsmen Act 1975 Health Information Privacy Code 1994 Health Act 1956 Hospitals Act 1957 Companies Act 1993 Tax Administration Act 1994 Goods and Services Tax Act 1985 Holidays Act 2003 Employment Relations Act 2000 Health and Disability Sector Standard EQuIP Standard 2.3 Criterion 2.3.1 Records Management systems support the collection of information and meet the organisations need. Rationale: The intent of this policy is to ensure that Mercy Hospital's record management systems maintain the integrity, safety, controlled access to and security of all records. Definitions: Records refers to all clinical and non clinical records, both electronic and paper based, all other consumer / patient documented information, staff records, clinical registers, and financial information. Objectives: To ensure information gathering complies with privacy requirement (Privacy and Release of Information Policy). To ensure appropriate processes and mechanisms in relation to information storage, retrieval, retention and destruction. To enable data to be assessed, analysed and used to: Enhance patient care and services Inform development and evaluation of strategic goals To ensure integration of information and communication technology in ways that can be utilized to enable ongoing strategic development.
To ensure that files stored off-site are covered by appropriate contractual arrangements in terms of storage and retrieval. To ensure appropriate tracking when information is required off-site. To ensure legislative compliance.
Implementation: Oversight of implementation will be the responsibility of the manager of the associated areas: o Clinical: Director of Nursing; Privacy Officer; Clinical Records Administrator (Clinical Records Management Policy ) o Human Resources: Human Resource Manager (Human Resources Policy) o Information and Communication Technology: IT Administrator (Information and Communication Technology Policy) o Finance: Chief Financial Officer. Contracts will reflect the objectives of this Policy. Evaluation: Analysis and Evaluation of patient feedback and complaints Analysis and Evaluation of KPIs that are part of Strategic and Organisational Planning and Mercy Hospital Audits Clinical Records Audit; Release of Information Audit (Chapman Tripp). Associated Documents External o EQuIP2.3 o Privacy Act 1993 o Privacy Code 1994 o Retention of Health Information Regulations 1996 o Companies Act 1993 o Tax Administration Act 1994 o Goods and Services Tax Act 1985 o Holidays Act 2003 o Employment Relations Act 2000 o Misuse of Drugs Regulations 1977 Internal o Clinical Records Management Policy, Hospital Policy and Information Manual; o Human Resources Policy, Hospital Policy and Information Manual; o Privacy and Release of Information Policy, Hospital Policy and Information Manual;
o External Service Providers Policy, Hospital Policy and Information Manual; o Document Control Policy, Hospital Policy and Information Manual; o Medicine Management Policy, Nursing Services Policy Manual; o Information Communication Technology Policy, Hospital Policy and Information Manual
PROCESS All staff will manage records to ensure: Privacy is maintained Data is appropriately checked for accuracy and updated as required Unique and personal identifiers are used (see Privacy and Release of Information Policy) to ensure alignment of individual pieces of information with the health record to reduce the likelihood of multiple records or misplaced pieces of information. Enables easy identification of people, with the ability to differentiate between people with the same name. Records are stored for the appropriate timeframe as set out in legislative requirements: Patient Health Records: 10 years (Retention of Health Information Regulations 1996) Financial Records (7 years): (Companies Act 1993; Tax Administration Act 1994; Goods and Services Act 1985; Holidays Act 2003; Employment Relations Act 2000) Human Resources Records (7 years) Controlled Drug Record (10 years) Misuse of Drugs Regulations 1977 Storage of paper-based records aims to minimise the likelihood of damage by management of heat, light, humidity, vermin and moisture, with effective fire prevention practices and detection systems in place. Storage of paper-based records off-site is contracted to Crown, who manage retrieval of specific files as required Computer-based records are Password protected Backed-up daily with storage on and off site Education of all staff will occur through mandatory training and be included in as part of privacy training.