Public Board of Directors papers 30 June 2022

1. Safe

1.7 - Corporate Risks

There are 4 Trust-wide 15+ risks in May 1 risk reduced in score (3259) Description Score

Controls

Booking forms improvement now being reflected in reduced time from DTT (decision to treat) to FTD (first treatment date). This is now tending towards 15 days (expected pathway). Radiotherapy now have formalised breach management plan, looking to save scheduled breaches daily and incorporating 2 x weekly breach management meetings. Improved RT presence at all Trust level CWT meetings. Actions progress with weekly review of full RAID log. Key points: Connection of Trust servers to NHS Digital cyber security operations centre, monitored 24/7 progressing. Expect to complete in June. >100 now connected. Multifactor authentication software purchased. Highest risks within in software found on computers (rated 7-10 out of 10 for vulnerabilities) is now 86% complete for eradication. Risk remains high, threats persistent, actions progressing. Risk reduction may be possible in summer months if assurance on security measures put in place is sufficiently demonstrated.

Risk to delayed cancer referral and treatments due to not meeting 24 / 62 day target (ID 2407)

15

Risk of prolonged disruption to services, due to a severe cyber security incident. (ID 3218)

20

40

13

Made with FlippingBook - Online magazine maker