NHS to suspend staff suspected of snooping on patient records
NHS England orders every trust to immediately suspend and lock out staff suspected of snooping on confidential patient medical records.

Stock photo for illustration only, not from the actual event
- NHS England orders trusts to suspend and lock out staff snooping on patient records
- Emergency measures follow high-profile security incidents involving victims' medical files
- Health Services Journal reveals 214 staff sacked and 2,000 sanctioned over five years
The UK National Health Service is implementing stringent new data protection safeguards as NHS England Chief Executive Sir Jim Mackey writes to every trust, mandating immediate disciplinary actions against personnel suspected of unauthorized snooping into confidential patient records.
Under the new directives, any staff member under suspicion will face immediate suspension alongside a total lockout from NHS computer systems, cutting off any further viewing capabilities regarding confidential medical files whether operating on hospital premises or working remotely from home.

Stock photo for illustration only, not from the actual event
The decisive action arrives in the wake of numerous high-profile security breaches involving the medical records of victims connected to the Nottingham and Southport attacks, as well as a child injured inside a Cambridgeshire crocodile enclosure. Furthermore, Bristol Foundation NHS Trust confirmed an internal investigation launched this week after discovering that an 18-year-old's medical records were accessed years after his death.
An investigation conducted for the Health Services Journal revealed that at least 214 NHS workers have lost their jobs and approximately 2,000 have faced formal sanctions for snooping into sensitive patient data over the past five years. Investigations often uncovered that staff members simply felt curious about high-profile patients or wanted to pry into the health conditions of acquaintances and former partners.
The absence of a single, unified NHS-wide electronic record system across all hospitals, GP surgeries, and specialist clinics means that individual organizations maintain decentralized access controls. While IT audit trails successfully track exactly who viewed records and when, the persistent internal snooping problem highlights ongoing cultural and supervisory challenges within large public healthcare institutions.
Incidents range widely, including an NHS consultant in Cambridgeshire investigated by the General Medical Council in 2023 after accessing the medical history of a woman who began dating the doctor's ex-boyfriend.
"We have seen too many cases of people abusing that trust, and enough is enough. Accessing them without a legitimate clinical or professional reason is a serious breach of trust and must have consequences."
Paula McGowan
Paula McGowan, whose autistic son Oliver passed away in 2016 at Southmead Hospital, was informed that at least five staff members may have unlawfully accessed her son's medical files as recently as this year, emphasizing that healthcare records contain deeply personal information requiring strict protection.
Source: BBC Health
Found something wrong in this article? Report an issue with this article
Comments
Leave a Comment