Security
The Highest Data Security Standards in the Industry
MediSked is a leader in data security, hosting, deployments, and policy development. Our platforms offer high system availability and security and are designed to your specifications. MediSked’s clients routinely collaborate with our internal Compliance professionals on the latest regulatory requirements and guidance, to promote consistent compliance and industry expertise.
- HIPAA Compliant
- HITECH Compliant
- NIST 800-53 Compliant
- HITRUST Certified for our MediSked Care Coordination Suite comprised of MediSked Coordinate, MediSked Connect Exchange, and MediSked Portal hosted in Amazon Web Services (AWS)
HIPAA-Compliant Security Solutions
Encryption
Encryption
Encrypted using industry standards. Secure FTP and 2048-bit SSL used between Web and SQL Servers behind firewalls.
High Availability
High Availability
East Coast Availability Zone – all services are redundant (mirrored RDS DB servers).
Access Controls
Access Controls
Role-based access controls through the applications.
Network Security
Network Security
Role-based security, ACLs firewalls, filtering for US-traffic only through AWS web app firewall, and network restriction via VPCs.
Security, Incident & Event Monitoring
Security, Incident & Event Monitoring
Network traffic and updated threat intelligence leveraged 24x7x365 to monitor network traffic for threat actors.
Penetration Testing
Penetration Testing
Annual penetration testing conducted by trusted third-parties to ensure applications and data are secure.
Secure Remote Access
Secure Remote Access
No public-facing access. All ingress points via VPN or Load Balancer.
Vulnerability Scanning
Vulnerability Scanning
Internal and web-facing scans conducted at least monthly.
Data Backup
Data Backup
Copied to multiple availability zones using S3.
Compliance
Compliance
Up to date on the latest regulatory requirements and guidance, applications hosted in an AWS SOC1/SOC2 certified environment.
Performance Monitoring
Performance Monitoring
Server performance (CPU, drive space, memory utilization) and security event monitoring and alerts.
Scalability
Scalability
Instances in hardened AWS environment for enhanced scalability.
MediSked's Information Security Program Includes:
- Security Architecture & Engineering
- Hosting Services
- Identity & Access Management
- Security Risk Assessments
- Business Continuity & Disaster Recovery
Related Insights
White Paper: Cybersecurity Best Practices
Learn about Security Best Practices, including identity and access management, security information and event management, and best practices for remote access.
Learn More About Our Security Solutions
To report information concerns or contact the organization’s senior security official, click here.