Offsite SAN Can Help Your Organization Achieve HIPAA Compliance
HIPAA has enacted several mandates to improve the access and portability of patient health records while maintaining strict privacy and security. A critical aspect of the HIPAA privacy ruling is Data Protection, requiring compliant backup methodologies to ensure the security and confidentiality of patient records. Health care providers who engage in electronic transactions must observe privacy safeguards to restrict the use and disclosure of individually identifiable health information.
Offsite SAN supports HIPAA compliance through automated off-site data protection with on-demand recovery, while ensuring strict data security and confidentiality.
Requirements
Restrict Unauthorized Access
Patient record confidentiality is critical. Any electronic data transfer and storage must be adequately protected and secure from all unauthorized access.
Contingency Plan
Organizations are required to have a contingency plan to continue operations in the event of data loss. This contingency plan MUST include details concerning the data backup and recovery process, who handles the backup media, the media rotation process, where the media is stored off-site, how quickly it can be retrieved in the event of a disaster, and all other aspects associated with data backups, protection, security, storage, and recovery.
Data loss can result in further losses of productivity, patients/customers, and revenue. In many cases significant data loss will result in lost business. Fortunately, the damaging impact of data loss can be negated with a qualified data protection solution as part of your contingency plan.
Offsite SAN for HIPAA Compliance
HIPAA compliant information systems require a combination of administrative procedures, physical safeguards and technical measures to protect patient information during storage and transmission across communication networks. As a significant part of your overall contingency plan, Offsite SAN provides secure, automated data transmission and storage services for data backup and recovery.
Offsite SAN implements the following HIPAA compliant features:
Automated, unattended data backups with built-in notifications.
Ultimate data security via 448-bit encryption - data is ALWAYS compressed and encrypted during transmission and storage.
Data integrity controls with mutual authentication.
Restricted password access - a secret encryption key can be specified for ultimate security, even Offsite SAN can’t get access your data.
Off-site storage at highly-secured data centers.
Data is mirrored to secondary secure facilities for ultimate data availability.
Extended storage is available (HIPAA requires storage for minimum 6 years).
On-demand, exact copy data retrieval - 24x7x365.
Optional monthly CD or DVD archives are available.
Additionally:
No cost or hassles with external devices, media, or offsite storage.
US company with the lowest subscription rates in the industry.
HIPAA privacy rules provide Offsite SAN and its affiliates with "business associate" rights to limited use and disclosure of the information. Offsite SAN never discloses data unless required by law. Offsite SAN does not access any portion of the backup data unless authorized for customer support purposes. Offsite SAN can be fully prevented from data access by use of the client-side secret encryption key.