概要

Alohiにとって医療保険の携行性と責任に関する法律(HIPAA)が重要なのはなぜですか?

HIPAAは、患者の医療情報を可能な限りプライベートかつ安全に保つための指針となるため、Alohiにとって非常に重要です。当社の卓越性への取り組みには、HIPAAによって定められた厳格な基準の徹底的な遵守が含まれます。必要なすべての管理上、物理的、および技術的な保護手段を綿密に実装することにより、その規制への包括的な準拠を保証します。

医師、病院、保険会社、および医療に従事するその他の団体は、当社の取り組みが業界のベストプラクティスを反映しているため、Alohiを信頼しています。これにより、Alohiは医療情報管理におけるプライバシーとセキュリティのベンチマークとして確立されます。

データ

Alohiのデータ保護手順とポリシーは何ですか?

At Alohi, we are deeply committed to protecting your data through meticulous monitoring, advanced encryption, secure handling practices, and a commitment to continual improvement, ensuring the utmost standards of data protection and regulatory compliance. Here is our approach:

Access Control

In the Alohi Suite, we vigilantly monitor every file transfer, automatically archiving each one. This allows us to maintain oversight over who accesses our systems, especially those that manage sensitive health information (ePHI).

Data Encryption & Secure Transmission

All stored files at rest, including signed and faxed documents, are encrypted using 256-bit Advanced Encryption Standard (AES). Each user benefits from unique encryption keys to ensure their data's security.

Audit Trails

Sign.Plus and Fax.Plus maintain comprehensive records of all documents sent or received, enabling thorough retrospective analysis. Our systems and policies are designed for strict monitoring of activities, especially concerning ePHI, to ensure robust oversight.

User Authentication

Accessing Alohi Suite requires a unique identifier like an email or a securely encrypted username and password. Each login is authenticated with a unique digital ID cookie, securing your session from beginning to end.

No-Storage Option

Alohi Suite offers you the choice to bypass storing your data on our servers. If selected, incoming documents are directly emailed to you without being saved on our end, and outgoing documents are deleted immediately after transmission.

Data Deletion

Should you choose to end your service with an Alohi product, you can request the removal of all your data from our servers. We ensure no paper trails are left; any necessary printed materials are destroyed immediately after use.

Fortified Data Centers

Our data centers are secure strongholds, adhering to the highest security standards and certifications. Designed to safeguard your information rigorously, they comply with a multitude of security frameworks and certifications.

Continuous Security Enhancement

We proactively identify risks and fortify our security measures, including regular updates to our policies, ongoing staff training, security assessments of our applications and networks, risk evaluations, and strict adherence to regulatory compliance.

Additional robust measures incorporated by Alohi:

  • 署名およびファックスされたドキュメントに保存された256ビットAES暗号化。
  • 安全なSSL/TLS証明書によるHTTPSの強制。
  • 安全なワールドクラスのデータセンターに保存されたデータバックアップ。
  • アカウント所有者の認証。
  • すべてのサーバーおよび本番ワークステーションへの外部からのアクセス制限。
  • 高度な監視およびエスカレーションシステム。
  • 自動データバックアップ。
  • 自動ウイルスチェック。
  • 認識した非準拠を報告します。
  • データ侵害の通知。
  • 本番システムへのアクセスは、一意のSSHキーペアで制限されています。
  • すべての従業員は徹底的な身元調査を完了し、雇用契約の一環として機密保持契約に署名する必要があります。
  • すべての従業員は、HIPAAの義務に従って、当社のポリシーと手順に関するトレーニングを受けます。
  • 当社のHIPAAポリシーと手順を作成、維持、およびトレーニングするHIPAAセキュリティ責任者を任命しています。