# Staff Management

> Role-based access for doctors, nurses, cashiers and admins — so each person sees the work that is theirs and the record shows who did what.

Source: https://www.medicine.et/modules/staff-management  
Site: Bloom Medicine — https://www.medicine.et

---

Clinician time is the scarcest input a clinic has. Bloom Medicine spends less of it on administration and makes the rest accountable: distinct roles, scoped permissions, and an audit trail that answers "who entered this" without an investigation.

## Shared logins are a workforce problem and a legal one

When everyone works under one account, two things stop being knowable: who performed a clinical action, and who accessed a record they had no reason to open. The first undermines supervision; the second is now a regulated risk.

Ethiopia's health workforce is projected to grow faster than the budget to employ it, which means the staff you do have absorb more of the load. Minutes returned from paperwork are clinical minutes, and they are the cheapest capacity a clinic can buy.

### Measured in Ethiopia

- **$800m+** — annual gap between projected health financing and service needs by 2030 ([source](https://www.medicine.et/research/health-workforce-gap))
- **72 hours** — to report a personal-data breach to the regulator under Proclamation 1321/2024 ([source](https://www.medicine.et/research/patient-data-protection-law))

## What it does

- **Named accounts per person** — Every clinician, nurse, cashier and administrator signs in as themselves. No shared credentials, no anonymous edits.
- **Role-scoped permissions** — A cashier sees invoices, not clinical notes. A nurse sees vitals and dispensing. Access matches the job.
- **Attribution on every record** — Notes, prescriptions, stock movements and invoice lines carry the identity of the person who made them.
- **Access audit trail** — A queryable log of who opened which record and when — the evidence a breach investigation requires.
- **Joiners and leavers** — Access is granted and revoked in one place, so a departing staff member loses it the day they leave.
- **Workload visibility** — Patients seen, procedures performed and revenue attributed per clinician, straight from the record.

## How it runs in the day

1. **Define the roles you actually have** — Start from the standard set — doctor, nurse, lab, pharmacy, cashier, admin — and adjust the permissions to your clinic.
2. **Invite staff to their own account** — Each person gets credentials tied to their name and role. Nothing is shared, so nothing is untraceable.
3. **Work is attributed as it happens** — Attribution is a by-product of doing the job in the system, not a separate register somebody has to maintain.
4. **Review access and output** — Managers see both sides: what each role can reach, and what each person did with it.

## What changes

- Clinical actions are attributable without asking around.
- Access to patient data is scoped, logged and revocable.
- Per-clinician workload and revenue stop being estimates.

## Cited research

- [The workforce math: more graduates, unfilled posts, and an $800m gap](https://www.medicine.et/research/health-workforce-gap) — Ethiopia's health labour market analysis projects steadily rising supply of nurses, midwives and doctors through 2030 — and a financing gap large enough that graduates go unemployed while services stay understaffed. When clinician time is the scarcest input, admin minutes are clinical minutes.
- [Proclamation 1321/2024 makes patient data a legal duty, not a filing habit](https://www.medicine.et/research/patient-data-protection-law) — Ethiopia now has a comprehensive personal data protection law. Health data is classified as sensitive personal data, breaches must be reported to the regulator within 72 hours, and the obligations apply to private clinics — not only to hospitals.

## Related reading

- [Protecting Patient Data Is Everyone's Job](https://www.medicine.et/blog/protecting-patient-data) — Patient trust is built on the assumption that their information is safe. Keeping that promise doesn't require a security team — it requires a handful of habits, practised consistently.
- [Proclamation 1321/2024: Patient Data Is Now a Legal Duty](https://www.medicine.et/blog/proclamation-1321-and-your-clinic) — Ethiopia's first comprehensive data protection law puts health information in its most protected category — with a 72-hour breach clock, a registration duty, and real sanctions. Here's what it asks of a clinic.
