Protections for PHI, Confidentiality & Overall Cyber Security
• Data Security:
IntakeAid employs a variety of security measures,
including: Least Privilege, Zero-Trust, AES 256 Bit SSL Encryption, 2040 Bit Server RSA
encryption, Soc-2 Certified Server facilities,
redundant servers located in geographically diverse Google Cloud
Platform data centers, with Global Server Load Balancing,
Vulnerability Tested Monthly, Riordey DDS Mitigation Devices to
prevent DDOS attacks, OSSEC, and CSF are utilized with the WAF
which provides host-based and network-based intrusion detection to
prevent attack attempts. All web traffic travels through ModSecurity,
Threatstop IP reputation software to block bad IP’s.
• HIPAA Compliance:
HIPAA secure data storage ensuring PHI is
handled in accordance with strict healthcare privacy standards.
• SOC2 Certified Servers:
Ensure compliance with protocols for secure
data management and confidentiality for sensitive information.
• AES 256 Bit Encryption:
High-level encryption applied at rest and in-transit, ensuring data integrity and security
across the data lifecycle.
• Secure Transmission:
Secure report transmission to clients by
secure fax, e-fax, EMR, digital queue, or directly to a printer.
• PHI Redaction:
Redaction of PHI from AI-mediated functions.