Home

Some companies that have chosen us

Privacy Officer and Privacy Consultant
CDP Scheme according to ISO/IEC 17024:2012
European Privacy Auditor
ISDP©10003 Certification Scheme according to ISO/IEC 17065:2012
Auditor
According to standard UNI 11697:2017
Lead Auditor ISO/IEC 27001:2022
According to standard ISO/IEC 17024:2012
Data Protection Officer
According to standard ISO/IEC 17024:2012
Anti-Bribery Lead Auditor Expert
According to standard ISO/IEC 17024:2012
ICT Security Manager
According to standard UNI 11506:2017
IT Service Management (ITSM)
According to the ITIL Foundation
Ethical Hacker (CEH)
According to the EC-Council
Network Defender (CND)
According to the EC-Council
Computer Hacking Forensics Investigator (CHFI)
According to the EC-Council
Penetration Testing Professional (CPENT)
According to the EC-Council

Professional qualifications

Stay up-to-date with world news!

Select your topics of interest:

News

Home / News
/
ITALIAN SUPERVISORY AUTHORITY: ok to telemedicine with more guarantees for personal data

ITALIAN SUPERVISORY AUTHORITY: ok to telemedicine with more guarantees for personal data

After having requested and obtained greater guarantees to protect the data processed, the Privacy Guarantor has given the green light to the draft decree of the Ministry of Health that regulates the processing of personal data within the National Telemedicine Platform (PNT) provided for by the PNRR. The draft decree has accepted the numerous changes requested by the Guarantor. In particular, compared to the first draft of the decree transmitted by the Ministry, the obligation of a preventive impact assessment has been introduced, also in consideration of the nature, object, purposes and high number of people involved.

The draft decree, among other things, specifies the type of data processed and the operations that can be performed, the reasons of significant public interest and the specific and appropriate measures to protect the rights of the interested parties. The services made available by the PNT for treatment and governance purposes, the changes to the regulations of the Health Data Ecosystem (EDS), the roles of the processing and the specific purposes and tasks assigned to the various subjects involved have been identified.

At the request of the Guarantor, particular attention has been paid to technical and organizational security measures to offer guarantees appropriate to the risk. The draft decree provides, among other things, the adoption of suitable measures to mitigate the risk of fraudulent use of digital identities, data encryption using robust algorithms, the introduction of IPS (Intrusion Prevention System), monitoring of security events, management of possible incidents and traceability of operations.

Finally, the Authority highlighted the need to update the “Guidelines for telemedicine services – functional requirements and service levels” approved by decree of the Ministry of Health in 2022 in accordance with the new regulations on FSE 2.0 and the provisions of the European Regulation.

https://www.garanteprivacy.it/home/docweb/-/docweb-display/docweb/10106920

Recommended to you

Advanced Research