Web enabled Knowledge Process Outsourcing service provider for Healthcare and Accounting Processes
Be a part of eCommunity!
HIPAA Compliance
 Introduction    Data Privacy    Compliance Management    Staff Education & Training  

HIPAA compliant procedures under implementation in risk areas like:
  • Data processing
  • Fax and email communication to external agencies
  • Information disclosure to payers, patients, family members and others

There is a thorough understanding of patient confidentiality and all medical records. It is also well known that HIPAA makes constant changes as it incorporates or discards certain practices. We are always aware of such changes, thereby ensuring that all information is safe and adheres to the highest standards of quality.

We provide 3-tier security like below:
  1. Physical Security

  2. Everyone has to pass through security checks at the entrance and without prior appointments, visitors are not allowed. All visitors are logged in by name, purpose of visit, date and time. Our 24/7 - security is supported by state-of art access control system and manned by the physical security.

  3. Electronic Data Access & Sharing Security

  4. The physical servers are kept in a sub-area of the data center. Hardware maintenance staff, data backup people and in exceptional cases Database/System administrators can have access to those servers. A perfect role access policy is defined for every user, which will be periodically supervised by the Super Administrator. All activities are logged and stored, which can be reviewed by the authorized users anytime.

    Every employee signs confidentiality agreement with severe penalties for HIPAA violations. Access to applications/databases is defined on 'need to know' and 'minimum necessary' basis. All our processes are automated. Our Proprietary interactive workflow technology puts everyone in control 24/7. Our employees log in to their respective workspaces on the server, where the work allocated to them is stored. They process the input from the client and log out once they are done with their work. Computers dedicated to client work do not have floppy/CD drives and not connected to printers. Only authorized people have access to Internet.

  5. Data Backup & Security

  6. Data is accessible only on a secured network, the access to which is controlled through use of assigned user ids and passwords. Each entry/ update into the database is logged with the time and name of operator.

Copyright © 2006 eCommunity India Pvt. Ltd.  This site is resolution independent & best viewed in IE 4.0 or above.