Inkdy

SA Health Staff Accused of Breaching Patient Records

· news

SA Health’s Breach of Trust: A Pattern of Inaction

The recent allegations of three South Australian health staff accessing Tony Modra’s private medical records without authorization have raised serious concerns about patient record privacy and the culture within the SA Health department. The incident is just one in a string of similar breaches that have compromised the trust between patients and healthcare providers.

In 2016, 13 staff members were sanctioned for snooping on the medical records of Cy Walsh, who was accused of murdering his father, Crows coach Phil Walsh. In 2024, an SA Health investigation found that 18 staff had engaged in misconduct or accessed the records of Charlie Stevens, the late son of SA Police Commissioner Grant Stevens.

The frequency and severity of these breaches suggest a systemic problem within the department. Despite Acting Health Minister Chris Picton’s assurances that action will be taken against those who have done wrong, it remains to be seen whether this will be more than just empty words. The opposition has called for an inquiry into patient record privacy breaches, citing evidence of a culture of complacency and lack of accountability within SA Health.

One disturbing aspect of these breaches is the apparent ease with which staff can access sensitive information without authorization. According to Picton, tracking systems allow administrators to monitor every login and case viewed by staff members. However, this has not prevented multiple instances of unauthorized access from occurring, raising questions about the effectiveness of SA Health’s auditing processes.

The Premier’s assertion that “the overall majority” of the SA Health workforce does the right thing is puzzling given the repeated incidents of breach. While it may be true that most staff members adhere to proper protocols, these breaches have occurred and it is their responsibility to prevent such instances from happening in the future.

These breaches have far-reaching consequences, eroding trust between patients and healthcare providers and undermining confidence in the system as a whole. As Bernadette Mulholland, chief industrial officer of the South Australian Salaried Medical Officers Association, noted, “It’s really important that these records are confidential, and only people providing clinical care or necessary for patient care should access them.”

To restore trust in the system, SA Health must take concrete steps to prevent such breaches from occurring. This includes strengthening auditing processes, improving training for staff members on data protection protocols, and implementing more effective tracking systems.

As South Australia continues to grapple with these issues, policymakers and healthcare administrators must work together to address systemic problems within SA Health. The people of South Australia deserve a healthcare system they can trust, and it is up to those in charge to ensure this happens.

Reader Views

  • CM
    Columnist M. Reid · opinion columnist

    The SA Health department's pattern of inaction on patient record breaches is a symptom of a deeper problem: a culture that prioritizes convenience over security. While tracking systems are touted as solutions, they're clearly not sufficient to prevent repeated instances of unauthorized access. What's missing from the conversation is an honest examination of the incentives driving this behavior. Until accountability measures extend beyond disciplinary action and into the compensation packages of those responsible, we can't expect meaningful change within SA Health.

  • RJ
    Reporter J. Avery · staff reporter

    The SA Health department's track record on patient record security is nothing short of alarming. While the government touts its commitment to reform, the sheer number of breaches raises questions about the efficacy of current auditing systems. One potential solution lies in implementing more robust electronic access controls, similar to those used in private healthcare settings. This could involve two-factor authentication and regular system audits to ensure that unauthorized access is detected and addressed promptly. Until such measures are put in place, patients' trust will continue to erode.

  • EK
    Editor K. Wells · editor

    The SA Health department's repeated failures to safeguard patient records are a stark reminder of the disconnect between policy and practice. While Acting Minister Chris Picton points to improved tracking systems, the reality is that these measures have not been enough to prevent unauthorized access. A more fundamental issue may be at play: how can we expect staff to adhere to high standards when internal policies are often vague or poorly communicated? Until SA Health tackles this underlying problem, patients will continue to question their trust in the system.

Related articles

More from Inkdy

View as Web Story →