Moving Sensitive Data
If you move sensitive patient information onto removable media such as a USB, thumb or flash drive, external hard drive, or CD/DVD, you must ensure your patient’s sensitive information is best protected in the event the data is lost or stolen.
Before you begin
You should be familiar with the Australian Privacy Principles (APPs) and your responsibilities. Under the Privacy Act 1988 (Privacy Act), the Australian Information Commissioner may issue guidelines regarding acts or practices that may have an impact on the privacy of individuals. For the latest APPs that impact on the privacy of individuals and your responsibilities, see https://www.oaic.gov.au/.
About this task
- The files are archived (zipped) into a single file.
- The zip file is encrypted with AES-256 encryption algorithm.
- A password (encryption key) is applied that meets the definition of a strong password.
Procedure
- Download the free 7-Zip archiving and encryption tool from http://www.7-zip.org/ and install it on your workstation or server.
- Open the 7-Zip program.
-
In 7-Zip, locate, select and highlight the folders or files you want to archive
and encrypt.
-
Click
Add.
-
In the Add to Archive window:
- In the Archive field, name the archived
file.
- In the Encryption section, in the
Enter password field, add a strong password.
Tip:You must remember this password.
There are many free websites that will generate a random strong password for you. In your browser, search for ‘strong password generator’ or ‘password generator’.
- In the Reenter password field, enter the same password again.
- From the Encryption method list, select AES-256.
- Click OK.
- In the Archive field, name the archived
file.
Results
What to do next
- Ensure that 7-Zip is installed on the computer to which you want to unencrypt the archived file.
- In Windows Explorer, right-click on the archived file and select .
- In the Enter password window, enter the password you added to the file in step 5b.
The file is unencrypted and the contents are accessible.