|
Security
Features:
HIPAA
compliance involves 3 safeguards, Physical, administrative and
technical.
Soft
Landings EMH web-based software has been built with
security as its backbone.
This is a
brief description of how it complies with HIPAA standards:
1-
Administrative
Security
We work with
organizations that utilize our
service to develop their administrative
policies in accordance with the HIPAA standards.
2-
Physical
Security
A-
Our servers are
located in secure HIPAA compliant environment with Keycard
protocols, biometric scanning protocols and round-the-clock
interior and exterior surveillance monitor access to everyone. Only
authorized personnel are granted access
credentials to our servers.
B-
We are available for
facilities that use our service to advise and educate about developing
policies
and implementing physical security measures within their structure.
3-
Access
Control
Role-based
access control is
implemented.
With RBAC access decisions
are based on the role of the individual within a facility.
4-
Entity
Authentication
We
have taken serious measure to
corroborate that a person is the one claimed with implementing the
following
procedures:
A-
One
of the strongest access protection on the web.
B-
Using
a Personal Identification number in addition to password for log in.
C-
Automatic
log off.
5-
Audit
Trails
A
record showing who accessed the system
and what operations they performed over a period of time is created and
kept
for 5 years. Reconstruction
of
electronic events can be established by a click of a button. Any
attempt to gain unauthorized access is
also tracked.
Audit trails and Access
logs are one of the main features that put us ahead of the market
leaders in
Videoconferencing technology.
6-
Data
Encryption
I-
Website
The
backend of soft Landings website is
protected by multilevel encryption:
A-
Database
is protected by encrypted strong password system
B-
All
internal communication including text, audio and video are protected by
Advance
Encryption Standards technology in accordance with the National
Institute of
Standards and technology, Federal Information Processing Standards
number 197.
C-
A
second layer of 256 bit encryption protects the whole website.
II-
Transmission:
Strict
adherence to FIPS 140-2 and the
International Telecommunication Union standard H.235 V3 is accomplished
through
the RTMPS/E/TE.
7-
Firewall
protection
8-
Virus
checking
|