Modifying rules to support General Data Protection Regulation
To protect customer data, in Pega Care Management, you can add properties to or remove properties from client-based access control (CBAC) rules. This provides your organization with the tools necessary to be in compliance with privacy requirements of the European Union (EU) General Data Protection Regulation (GDPR) and similar regulations.
For example, if a patient does not want family information available in their medical record, you can remove the .FamilyMember property from the GDPRFamilyHistoryCBAC rule.The rules that you can modify to support GDPR include:
- GDPRFamilyHistoryCBAC
- GDPRObservationsCBAC
- GDPRMedicationsCBAC
- GDPRAllergiesCBAC
For more information, see Defining client-based access controls to support the European Union (EU) General Data Protection Regulation on the Pega Customer Service product page.
- In the header of Dev Studio, enter and search for GDPRFamilyHistoryCBAC.
- Click the name of the rule.
- On the Client-Based Access page:
- Check out the rule.
- Based on your organization’s needs, add a row to add a new property to
the rule. For more information, see Configuring a client-based access control rule.
- Ensure that you select the applicable check boxes.
- Save the rule.
- Repeat steps 1 through 3 for each of the other rules.
Previous topic Security Next topic Patient 360