Health Insurance Portability and Accountability Act (HIPAA)



How ITIQ Enables Clients to Comply with HIPAA
Requirement ITIQ Service
Electronic personal health information (ePHI) must be protected against any reasonably anticipated threats or hazards. The data is housed in two separate Tier One data centers. Both the primary center and the secondary remote center are heavily secured.

Redundant fail-safe systems protect the data in every step of the backup and storage process.
Access to ePHI must be protected against any reasonably anticipated uses or disclosures that are not permitted or required by the Privacy Rule. The data is encrypted before transmission and is always maintained in encrypted state.

Access is restricted by password authentication.
Maintenance of record of access authorizations Access to data is date and time-stamped by user, providing a clear audit trail.
If the data is processed through a third party, entities are required to enter into a chain of trust partner agreement ITIQ enters into a Business Associate Agreement with client, in which the parties agree to electronically exchange data and to protect the transmitted data.