Protecting Healthcare Information with Industry Standards
Full compliance with healthcare data protection standards
SonoAssist is fully compliant with the Health Insurance Portability and Accountability Act (HIPAA) and is committed to protecting the privacy and security of Protected Health Information (PHI).
Understanding the regulation
The Health Insurance Portability and Accountability Act (HIPAA) is a federal law that establishes national standards for protecting sensitive patient health information. HIPAA applies to healthcare providers, health plans, and healthcare clearinghouses, as well as their business associates.
Administrative safeguards we implement
Designated HIPAA Security Officer responsible for compliance
Regular HIPAA training for all employees
Role-based access controls and user authentication
Comprehensive BAAs with all vendors and partners
Documented procedures for security incidents
Regular risk assessments and vulnerability testing
Protecting physical access to PHI
Controlled access to facilities where PHI is stored or processed
Secure workstations and devices used to access PHI
Controls on the movement and removal of hardware and media
Technical measures to protect PHI
Our agreements with partners and vendors
We maintain comprehensive Business Associate Agreements with all vendors and partners who may have access to PHI:
Identifying and mitigating threats
Our breach response procedures
In the event of a potential breach of PHI, we have established procedures for:
Contain and assess the breach
Notify affected clients
Submit breach report to HHS
Implement corrective measures
Comprehensive training programs
Independent verification of our compliance
Annual security, availability, and confidentiality audit
Information security management system certification
Annual HIPAA compliance assessment
Get in touch with our HIPAA team
For questions about our HIPAA compliance or to report a potential security incident, please contact us:
Complete text version for detailed review
Last updated:
SonoAssist is fully compliant with the Health Insurance Portability and Accountability Act (HIPAA) and is committed to protecting the privacy and security of Protected Health Information (PHI).
The Health Insurance Portability and Accountability Act (HIPAA) is a federal law that establishes national standards for protecting sensitive patient health information. HIPAA applies to healthcare providers, health plans, and healthcare clearinghouses, as well as their business associates.
Administrative Safeguards
Access Control
Audit Controls
Integrity
Transmission Security
We maintain comprehensive Business Associate Agreements with all vendors and partners who may have access to PHI:
We conduct regular risk assessments to identify and mitigate potential threats to PHI:
Risk Assessment Process
Risk Mitigation
In the event of a potential breach of PHI, we have established procedures for:
Breach Response Timeline
All employees receive comprehensive HIPAA training and ongoing education:
Training Program
Compliance Monitoring
We undergo regular third-party audits and maintain various security certifications:
For questions about our HIPAA compliance or to report a potential security incident, please contact us: