CONNECTING TO N3
N3 is the new, integrated network for the NHS, a combination of broadband connections and network services that is intended to link all NHS sites in England and Wales.
Please email us or telephone + 44 (0)845 070 1750 and talk to us about how our N3 Consultancy service might work for you!
N3 is replacing the NHSnet as the network for running the new CfH (Connecting for Health - the NHS National Programme for IT) IT systems.
Access to information sharing & collaborative working
Organisations - Local Authorities, PCTs, and others - must connect to N3 in order to derive the benefits of collaborative working and access to central processes such as:
- ISA (Information Sharing and Assessment)
- SAP (Single Assessment Process)
- CRS (Integrated Care Record Service)
- STEIS (Strategic Executive Information Service)
Security requirements
In order to connect with N3, organisations must first ensure that their information security management system (ISMS) complies with NHS security policies - which take all their controls from the ISO/IEC 27001 information security management standard
IT Governance Ltd has extensive experience of ISO27001 (dating back to the world's first ever certification to BS7799, the forerunner of ISO/IEC 27001) and also has practical experience with N3 connections and requirements.
Connecting to N3
Your organisation must have an ISMS that is in line with ISO/IEC 27001, the international information security standard. This means that your organisation will need to carry out an asset-based risk assessment that identifies control objectives and controls in 11 different categories, including:
- Security policy;
- Classification & labelling;
- Network security;
- Two factor authentication (supplied by CfH for access to Patient Identifiable Data, or PID);
- Human resources security;
- Training and awareness;
- Incident management;
- Third party management.
The requirement
For any non-Health Service organisation wishing to connect to N3 it is mandatory that, having applied for connection, they must undertake an independent network audit. This applies to all non-NHS entities, for example local authorities (excluding Social Services), housing associations, commercial healthcare companies or external managed applications providers.
Gap Analysis
The IT Governance Gap Analysis service provides an audit of your network and physical security against the requirements of ISO27001. Our gap analysis verifies the extent to which your information security regime conforms to the requirements for N3 connection and provides appropriare recommendations to alleviate any deficiencies, providing you with a clear and implementable corrective action plan.
Please email us or telephone + 44 (0)845 070 1750 and talk to us about how our N3 Consultancy service might work for you!






