Skip to main content
Created date
Updated date

The National eHealth Security and Access Framework has been developed as a control mechanism to ‘increase certainty that health information is created and accessed in a secure and trustworthy manner’.   It aims to ensure:

  • Access to consumer health information is consistently controlled and monitored as it transitions through independent organisations, business processes and systems in the Australian Health Sector.
  • The provenance of all electronic health information is traceable from its creation at a verifiable trusted source through its transition and possible augmentation on route to its destination.


NESAF supports organisations engaged in national eHealth to adopt a consistent approach and application of health information security standards, and provides better practice guidance in relation to eHealth specific security and access practices. Some of the key benefits of a National eHealth Security and Access Framework for use in the Australian environment include:

  • Promotion of a consistent, risk-based approach to eHealth security and access.
  • Consistent interpretation of relevant standards for application in the Australian eHealth environment.
  • Provision of a holistic view of security and access requirements within an organisation, that includes controls that are implemented at a business, healthcare, information technology and eHealth specific level, with a greater focus and detailed guidance provided in relation to eHealth specific controls.
  • Contemporary better practice guidance on specific eHealth security and access practices
  • A document suite that provides different views on the framework for different audiences - business, clinical, technical and consumer.


It is expected that broad application of NESAF within healthcare organisations will contribute to engendering trust within the national eHealth system, thus increasing adoption and uptake of these systems and maximising the expected benefits from these investments.

You can or register to download National eHealth Security and Access Framework v3.1 ZIP

Checksum: 2e586a9effba157d642d885099983d072902e0b497f713713690423988a4efc0