Cancerdocs is an HIPAA compliant platform that provides to its users private online-based medical consultations on the cancer-related topics to its users. The platform serves as a bridge between authorized healthcare professionals, and patients that are in need for a medical consultation. As a service, which deals with electronic private medical information, CancerDocs has to provide its users the confidentiality of all input data. In other words, it should comply with HIPAA Security Rules. Thus the HIPAA compliance means that the system corresponds to a set of established security standards that are protecting sensitive patients’ information.
Medicine is a highly regulated industry in terms of streamlining informational security compliance for any resourcing, including web applications. Being a health care provider that deals with protected health information (PHI), CancerDocs has to ensure that the required technical, networking and security measures are followed. The main challenge for our team within this project consisted of developing a software in correspondence with HIPAA Security Rules, which tell what has to be covered, what information has to be protected, and what safeguards must be in place to ensure appropriate protection of electronically protected health information.
We focused on the task to ensure all requirements were fulfilled. Besides that, the system has to be user-friendly and convenient for communications between doctors and patients.
Before we started working on the project, we’ve made an in-depth study of the HIPAA Rules, which consist of a few milestones, such as access control, audit controls, integrity, person or entity authentication, environmental and transmission security. While using the service, all patients’ data are created, received, used, proceeded, maintained and saved by a covered entity. All this process was technically covered and implemented to ensure confidentiality, integrity, and security by means of:
As an outcome, we have received a ConcerDocs system, with following key features:
As the result we have received a HIPAA complient environment for providing needed security for a health-care provider's service.