Promantra is HIPAA Compliant
As our focus and our client base has been the U.S. Healthcare, we understand the value and importance of PHI (Protected Health Information). We align our quality policies with our customers outsourcing objectives to ensure compliance and integrity. Therefore we have taken several steps to ensure that PHI entrusted to us is fully protected.
Following is an overview of our Security & Best Practices
Security Measures
- 24/7 on-campus security staff
- Secure and dedicated infrastructure
- No tail-gating is allowed
- Controlled access to Printer
- Instructions to shred all papers containing client information
- Clean Desk approach
- Critical Documents and Electronic Data (backed up in DLT tapes, DVDs) are stored in Fireproof cabinets
- Staff screening and background checks
- Confidentiality agreements with staff
System Security & Access
Controls
- Firewalls
- Point-to-point network connectivity with routers configured with encryption at both ends
- Anti-Virus software
- User-IDs and passwords to log into the client systems
- Disabled floppy, CD drives, USB, Ports, Wi-Fi etc...
Monitoring
- Regular reviews of firewall logs
- Periodic network and host vulnerability audits
- Client audit teams are allowed to conduct security audits on the dedicated network provided for their services
- Information security management and control audits
HIPAA Training
We have periodic ongoing HIPAA training for our employees to ensure compliance with HIPAA regulation. We have the quality and regulatory team which does a periodic audit and ensures compliance is met within the organization.