A registered nurse in southern Alberta developed opioid dependency following significant head trauma sustained in high school. By her early thirties, with a family and two young children, she began forging prescriptions through the private clinic where she worked to sustain the dependency without disclosure. The physician was unaware. A patient incident triggered an investigation that uncovered prescription irregularities implicating both her nursing licence and the physician's medical practice. The College of Registered Nurses of Alberta opened fitness to practice proceedings while the College of Physicians and Surgeons of Alberta initiated a parallel inquiry. Clinical notes, prescription records, and pharmacy logs formed the evidentiary record. Information flowed between the two colleges, the hospital, law enforcement, and the family. The proceedings, the damage to the physician's career, and the presence of her children deepened an existing mental health crisis. This scenario is governed by Alberta law throughout.

Managing Privacy and Disclosure in Fitness-to-Practice Proceedings: A Practitioner's Guide to Protecting Patients While Meeting Regulatory Obligations

The practical lessons drawn from a registered nurse in her early thirties facing fitness to practice proceedings in Lethbridge, Alberta, after forging prescriptions to support an opioid dependency extend far beyond the particulars of her case. They speak to systemic vulnerabilities in healthcare delivery, to gaps in institutional design, and to the daily practices of every professional who touches sensitive mental health and addiction information. What matters now is translating the legal architecture—the interplay of the Health Information Act, regulatory college mandates, and common law duties—into habits, protocols, and institutional reflexes that prevent similar situations from arising and that protect everyone involved when they do. The application of these principles requires concrete changes in how clinicians document, how institutions share information, how regulatory bodies communicate, and how individuals caught in the intersection of multiple oversight systems can navigate their circumstances with dignity and legal protection intact.

Healthcare facilities that employ regulated professionals must recognize that their information governance practices are not merely bureaucratic exercises but active determinants of whether those professionals receive fair process when things go wrong. A private clinic in southern Alberta, a hospital in any Canadian city, or a long-term care facility in a rural community all share the same fundamental obligation: to create systems that are robust enough to detect genuine misconduct while simultaneously protecting the privacy interests of employees whose personal health information may become entangled with professional accountability mechanisms. The starting point for sound practice is a clear-eyed assessment of what information the organization holds, who can access it, and under what circumstances that information can flow to external parties. Many healthcare employers operate with legacy systems where access controls are poorly defined, where audit trails are incomplete, and where the distinction between information held about an employee in their professional capacity and information held about them as a patient receiving care is blurred or nonexistent. This ambiguity is precisely the terrain where legal liability takes root and where individuals suffer unnecessary harm.

That’s the free preview

You’ve reached the end of what’s open to read. The rest of this lesson is part of a $249 course — purchasing unlocks it, or sign in if you already have access.