Compliance

“Compliance & Security are the cornerstone of our operation.”



Being ISO 27001:2013 certified company, clients trust us to deliver the highest level of performance while safeguarding their brand, reputation, and patient goodwill. We protect your data and reputation as if it were our own.
Data Security
• High security firewalls ensure our networks are secure and reliable.
• Backup data and communication between our sites and our client sites are encrypted.
• Access to the Internet & our cloud server is monitored and restricted to essential web sites and we ensure that it is met with assistance of our IT Team.
• Only authorized personnel are granted access to systems containing client data, Printers, servers and storage.
Physical Security
• Round-the-clock web surveillance and security guards at the entry and exit points of our office ensure that our infrastructure is secure.
• Access control systems are installed; ensuring only authorized personnel can enter the workstation areas.
• Our computer systems are password protected with regular updates on Firewall and anti-virus software& patch updates.
• All portable disk drives are prohibited on user workstations.
• Data printing on paper is prohibited, if any data need to be printed then after use the material is shredded and carefully disposed.
• USB storage access is completely blocked.
Hipaa Training
• All employees are trained on ISMS & HIPAA guidelines before handling client data.
Confidentiality Agreement
• Each employee signs a confidentiality agreement to ensure the security of the client data as per standard HR practices.
Our employees are reviewed and scored weekly to ensure compliance. Our staff is trained with these core values:

  Accountability   Compliance   Learning
  Respect   Integrity   Service


The Health Insurance Portability and Accountability Act, 1996 demands that all HIPAA covered businesses prevent unauthorized access to “Protected Health Information” or PHI. PHI includes patients’ names, addresses, and all information pertaining to the patients’ health and payment records. According to the Department of Health and Human Services, “HIPAA Rules apply to covered entities and business associates.” Complete compliance with HIPAA guidelines requires implementation of basic and advanced security measures. Basic security includes benchmark-based password creation and use, personnel education and training, limited access to PHI, data encryption, use of firewalls, antivirus software, and digital signatures. With increasing adoption of electronic medical records and cloud-based software-as-service (SaaS), advanced security measures are necessary which Anant Health Care (AHC) follows.