Knowledge Base

This page allows you to browse the IG Toolkit Knowledge Base. All the resources listed on this page are also referenced in the 'Knowledge Base Resources' section of the relevant individual requirements.

To search for specific resources, enter search criteria below and click 'Search'.

To view all resources, leave the search criteria blank.


(only shows results where all keywords match)

TitleTypeDetailsCreation DateLast Review DateRequirement(s)
Bite-sized Good Practice Guide: Application Security
(DOC, 345 KB)
Exemplar Materials View 05-2009 01-2015 366
Bite-sized Good Practice Guide: Business Continuity
(DOC, 287 KB)
Exemplar Materials View 05-2009 01-2015 364
Bite-sized Good Practice Guide: Internet and Email
(DOC, 393 KB)
Exemplar Materials View 05-2009 01-2015 241, 366
Bite-sized Good Practice Guide: Mobile Computing
(DOC, 337 KB)
Exemplar Materials View 05-2009 01-2015 363
Bite-sized Good Practice Guide: Removable Media
(DOC, 357 KB)
Exemplar Materials View 05-2009 01-2015 363
Bite-sized Good Practice Guide: Safe Computing
(DOC, 347 KB)
Exemplar Materials View 05-2009 01-2015 241, 366
British Sign Language: Home Page External web site link Useful Web Sites View Unknown 02-2016 243
BS ISO/IEC 27000 Series of Information Security Standards External web site link Key Resources View 07-2007 01-2015 361
Care Quality Commission: Regulations for service providers and managers External web site link Key Resources View 01-2015 01-2015 241, 242, 244
Cheshire: Adapted Risk Assessment Form for General Practice
(DOC, 260 KB)
Exemplar Materials View 05-2007 01-2015 362
Cheshire: Handling Security Incidents Affecting Patients Confidentiality
(DOC, 66 KB)
Exemplar Materials View 05-2007 01-2015 365
Cyber Essentials External web site link Useful Web Sites View 02-2015 02-2015 363, 366, 367
Data Protection Act 1998 External web site link Key Resources View 07-1998 01-2016 142, 240, 243
David Nicholson and ICO letter 2011
(PDF, 51 KB)
Key Resources View 01-2014 01-2015 143
DH: Confidentiality NHS Code of Practice 2003 External web site link Key Resources View 11-2003 02-2016 141, 142, 143, 241, 242, 243, 244, 303, 366
DH: Example Confidentiality Clauses
(DOC, 25 KB)
Exemplar Materials View 01-2008 01-2015 142
DH: Guidance for Access to Health Records Requests 2010 External web site link Key Resources View 02-2010 01-2016 243
DH: Information Security NHS Code of Practice 2007 External web site link Key Resources View 04-2007 01-2016 141, 303, 361, 362, 364, 365, 366, 367
DH: NHS IG - Good Practice Guide for the Transfer of Batched Person Identifiable Data External web site link Key Resources View 01-2007 01-2015 241
DH: NHS IG - Guidelines on Use of Encryption to Protect Person Identifiable and Sensitive Information 2008 External web site link Key Resources View 01-2008 01-2015 241, 363
DH: NHS IG - Home Working Policy and Procedural Template 2008
(DOC, 44 KB)
Exemplar Materials View 01-2009 01-2015 363
DH: NHS IG - IG Checklist for Staff Movers and Leavers 2008
(DOC, 44 KB)
Exemplar Materials View 01-2009 01-2015 366
DH: NHS IG - Information Risk Management - Good Practice Guide 2009 External web site link Key Resources View 01-2009 01-2015 361, 362, 363, 364, 365, 366, 367
DH: NHS IG - Internet Use Policy
(DOC, 82 KB)
Exemplar Materials View 01-2007 01-2015 367
DH: NHS IG - ISMS Risk Assessment Template 2008
(DOC, 43 KB)
Exemplar Materials View 01-2007 01-2015 364
DH: NHS IG - Laptop Security Policy 2008
(DOC, 66 KB)
Exemplar Materials View 01-2007 01-2015 363
DH: NHS IG - Network Security Policy 2003
(DOC, 90 KB)
Exemplar Materials View 01-2007 01-2015 367
DH: NHS IG - Short Message Service & Texting
(PDF, 48 KB)
Key Resources View 01-2010 01-2015 241
DH: Records Management NHS Code of Practice 2008 External web site link Key Resources View Unknown 01-2016 141, 303
DH: The Caldicott Guardian Manual 2010 External web site link Key Resources View 03-2010 02-2016 242, 244
Directgov: Employment Contracts External web site link Key Resources View Unknown 01-2015 142
East Surrey: Confidentiality Clause for Staff Contracts 2002
(DOC, 35 KB)
Exemplar Materials View 04-2007 01-2015 142
East Surrey: Incident Reporting Policy 2002
(DOC, 66 KB)
Exemplar Materials View 05-2007 01-2015 365
European Commission: International Transfers Home Page External web site link Useful Web Sites View 01-2015 01-2015 240
Government Response to Report of the Caldicott2 Review
(PDF, 757 KB)
Key Resources View 01-2014 01-2015 141
HM Government: Information Sharing Guidance
(PDF, 1111 KB)
Key Resources View 10-2008 01-2015 241
HMG: Cyber Essentials Scheme External web site link Useful Web Sites View 02-2015 02-2015 363, 366, 367
HMG: Cyber Security Guidance for Business External web site link Useful Web Sites View 02-2015 02-2016 366, 367
HSCIC: A guide to confidentiality in health and social care: references - September 2013
(PDF, 698 KB)
Key Resources View 01-2014 01-2015 141
HSCIC: A guide to confidentiality in health and social care: Treating confidential information with respect - September 2013
(PDF, 1491 KB)
Key Resources View 01-2014 01-2015 141
HSCIC: AQP Template - Access Control Procedures
(DOC, 66 KB)
Exemplar Materials View 04-2012 01-2015 366
HSCIC: AQP Template - Assignment of Mobile Computing Equipment Form
(DOC, 37 KB)
Exemplar Materials View 04-2012 01-2015 363
HSCIC: AQP Template - Business Impact Analysis Sheet
(XLS, 31 KB)
Exemplar Materials View 04-2012 01-2015 364
HSCIC: AQP Template - Compliance Monitoring Form
(DOC, 50 KB)
Exemplar Materials View 04-2012 01-2015 241, 366
HSCIC: AQP Template - Confidentiality Agreement for Staff
(DOC, 26 KB)
Exemplar Materials View 04-2012 01-2015 142, 242, 244
HSCIC: AQP Template - Emergency and Business Continuity Plan
(DOC, 169 KB)
Exemplar Materials View 04-2012 01-2015 364
HSCIC: AQP Template - IG Workplan
(XLS, 99 KB)
Exemplar Materials View 04-2012 01-2015 140
HSCIC: AQP Template - Incident Management Procedures
(DOC, 69 KB)
Exemplar Materials View 04-2012 01-2015 365
HSCIC: AQP Template - Incident Register
(DOC, 47 KB)
Exemplar Materials View 04-2012 01-2015 362, 365
HSCIC: AQP Template - Incident Reporting Form
(DOC, 38 KB)
Exemplar Materials View 04-2012 01-2015 362, 365
HSCIC: AQP Template - Information Asset Register
(DOC, 78 KB)
Exemplar Materials View 04-2012 01-2015 361
HSCIC: AQP Template - Information Governance Policy
(DOC, 52 KB)
Exemplar Materials View 04-2012 01-2015 140, 141
HSCIC: AQP Template - Information Handling Procedures
(DOC, 88 KB)
Exemplar Materials View 04-2012 01-2015 241
HSCIC: AQP Template - Information Mapping Spreadsheet
(XLS, 74 KB)
Exemplar Materials View 04-2012 01-2015 240, 241
HSCIC: AQP Template - Mobile Computing Equipment Asset Log
(DOC, 44 KB)
Exemplar Materials View 04-2012 01-2015 363
HSCIC: AQP Template - Physical Security Risk Assessment
(XLS, 45 KB)
Exemplar Materials View 04-2012 01-2015 362
HSCIC: AQP Template - Records Management Procedures
(DOC, 85 KB)
Exemplar Materials View 04-2012 01-2015 430
HSCIC: AQP Template - Staff Confidentiality Code of Conduct
(DOC, 61 KB)
Exemplar Materials View 04-2012 01-2015 242, 244
HSCIC: AQP Template - Staff Declaration Form
(DOC, 58 KB)
Exemplar Materials View 04-2012 01-2015 141, 241, 242, 244, 366
HSCIC: AQP Template - Staff Guidelines on Using Mobile Computing Equipment
(DOC, 46 KB)
Exemplar Materials View 04-2012 01-2015 363
HSCIC: AQP Template - Text for Patient Information Leaflets
(DOC, 50 KB)
Exemplar Materials View 04-2012 01-2015 243
HSCIC: Checklist Guidance for Reporting, Managing and Investigating Information Governance and Cyber Security Serious Incidents Requiring Investigation
(PDF, 442 KB)
Key Resources View 05-2015 05-2015 140, 363, 364, 365
HSCIC: E and T Standard 3 - Learning Needs Analysis External web site link Useful Web Sites View Unknown 01-2015 143
HSCIC: Good Practice Guidelines - Application Security External web site link Key Resources View 03-2006 01-2015 241, 366
HSCIC: Information Governance Toolkit Incident Reporting Tool Publication Statement
(PDF, 62 KB)
Key Resources View 06-2013 01-2015 365
HSCIC: Information Governance Web Pages External web site link Useful Web Sites View Unknown 01-2015 140, 240
HSCIC: National Registration Authority Policy External web site link Key Resources View Unknown 01-2015 303, 360
HSCIC: Registration Authorities and Smartcards External web site link Useful Web Sites View 01-2014 01-2015 303, 360
HSCIC: Safe Haven Briefing: Secure transfer of personal identifiable information by fax
(PDF, 154 KB)
Key Resources View 01-2014 01-2015 241
HSCIC: Sending an encrypted email from NHSmail to a non-secure email address
(PDF, 364 KB)
Key Resources View 02-2015 02-2016 241
HSCIC: What You Should Know About Information Governance Booklet External web site link Key Resources View 01-2015 01-2015 140
Information Commissioner: Assessing Adequacy - International Data Transfers External web site link Key Resources View Unknown 01-2015 240
Information Commissioner: Contact Details External web site link Useful Web Sites View Unknown 01-2016 240
Information Commissioner: Data Sharing Code of Practice External web site link Key Resources View 01-2015 01-2015 141
Information Commissioner: Guidance Index External web site link Useful Web Sites View Unknown 01-2016 240
Information Commissioner: Guidance on the Issue of Monetary Penalties
(PDF, 263 KB)
Key Resources View 01-2010 01-2015 244
Information Commissioner: Health Sector specific guides provided by the ICO External web site link Key Resources View 05-2002 02-2016 242
Information Commissioner: Home Page External web site link Useful Web Sites View Unknown 01-2015 142, 243
Information Commissioner: Model Contract Clauses - International Transfers of Personal Data External web site link Key Resources View Unknown 01-2015 240
Information Commissioner: Outsourcing - A Guide for Small and Medium Sized Businesses External web site link Key Resources View 04-2009 01-2015 142
Information Commissioner: Privacy Impact Assessment Code of Practice
(PDF, 532 KB)
Key Resources View 01-2014 01-2015 141
Information Commissioner: The Eighth Data Protection Principle and International Data Transfers External web site link Key Resources View Unknown 01-2016 240
Information Commissioner: Training checklist for small and medium sized organisations
(PDF, 34 KB)
Key Resources View 04-2012 01-2015 143
Information Mapping Tool Guidance External web site link Key Resources View 01-2007 01-2015 241
ISO/IEC 27035:2011 ‘Information technology – Security techniques – Information security risk management’ External web site link Useful Web Sites View 01-2014 01-2015 365
IT Operations: Document Operating Procedures
(RTF, 223 KB)
Exemplar Materials View 05-2007 01-2015 367
IT Operations: User Access Management Policies
(PDF, 33 KB)
Exemplar Materials View 04-2007 01-2015 363, 367
ITIL: The IT Infrastructure Library External web site link Useful Web Sites View Unknown 01-2015 365
Mapping between the requirements of ISO/IEC 27001:2005 and ISO/IEC 27001:2013
(PDF, 373 KB)
Key Resources View 01-2014 01-2015 303, 360, 361, 362, 363, 365, 366
Moving from ISO/IEC 27001:2005 to ISO/IEC 27001:2013
(PDF, 497 KB)
Key Resources View 01-2014 01-2015 303, 360, 361, 362, 363, 365, 366
National IG Board: Requesting amendments to health and social care records
(PDF, 389 KB)
Key Resources View 04-2012 01-2015 430
NHS Brand Guidelines: Producing Patient Information External web site link Useful Web Sites View 09-2008 01-2015 243
NHS Constitution for England External web site link Key Resources View 01-2015 01-2015 242, 243, 244
NHS Employers: Identity Check Standards External web site link Key Resources View Unknown 01-2015 142, 303
NHS Employment Check Standards External web site link Key Resources View Unknown 01-2016 142, 303
NHS England: Accessible Information Standard External web site link Key Resources View 02-2016 02-2016 243
NHS England: Everyone Counts: Planning for Patients 2014/15 - 2018/19 External web site link Key Resources View 02-2015 02-2015 141
NHS England: NHS Standard Contract External web site link Key Resources View 02-2015 02-2015 141, 142
NHSmail - Public-Facing Site External web site link Useful Web Sites View Unknown 01-2015 241
Nottingham: Information Security - Confidentiality Poster
(PDF, 115 KB)
Exemplar Materials View 07-2006 02-2016 244
Nottingham: Information Security - Hardware & Software Guidelines
(PDF, 196 KB)
Exemplar Materials View 07-2006 01-2015 366
Nottingham: Information Security - Information Storage & Virus Protection Guidelines
(PDF, 166 KB)
Exemplar Materials View 07-2006 01-2015 366
Nottingham: Security and Confidentiality of Patient and Personal information 2006
(PDF, 126 KB)
Exemplar Materials View 07-2006 02-2016 244
Princess Alexandra Hospital: Things to Say and Do when registering a patient
(DOC, 40 KB)
Exemplar Materials View Unknown 01-2015 430
Registration Authorities - Building Workstations External web site link Key Resources View 02-2005 01-2015 303
Registration Authorities - Equipment and Specifications External web site link Key Resources View Unknown 01-2015 303
Registration Authorities - Process Guidance External web site link Key Resources View 09-2008 01-2016 303
Registration Authorities - Software Downloads External web site link Key Resources View Unknown 01-2015 303
Report of the Caldicott2 Review - Information: To share or not to share? The Information Governance Review
(PDF, 776 KB)
Key Resources View 01-2014 01-2015 141
Royal National Institute for the Blind: Braille, Audio and Large Print Services External web site link Useful Web Sites View Unknown 01-2015 243
Surrey HIS: Data Protection Leaflet - Best Practice Guidelines
(PDF, 272 KB)
Exemplar Materials View 04-2006 01-2016 241
Surrey HIS: Patient Information Leaflet
(PDF, 96 KB)
Exemplar Materials View 07-2006 01-2015 243
Surrey: Information Security and Confidentiality Guide for General Practice
(DOC, 1366 KB)
Exemplar Materials View 10-2002 01-2015 362
System Level Security Policy (SLSP)
(DOC, 47 KB)
Exemplar Materials View 12-2008 01-2015 367
The Independent Information Governance Oversight Panel: Annual Report External web site link Key Resources View 01-2015 01-2015 242, 243, 244
The NHS Care Record Guarantee for England External web site link Key Resources View 07-2009 02-2016 142, 241, 242, 244, 303
UK Council of Caldicott Guardians External web site link Useful Web Sites View Unknown 02-2016 244
Walton Centre: Access Authentication Standard (Physical)
(PDF, 92 KB)
Exemplar Materials View 03-2005 01-2015 362

Page Processing Time: 0.09 seconds
Page Render Time:  seconds
Supported By: SOCITM society logo SOCITM Local CIO Council logo Directors of adult social services logo