What is HIPAA?
HIPAA includes the Privacy Rule, Security Rule, Breach Notification Rule, and the Health Information Technology for Economic and Clinical Health Act (HITECH). It requires covered entities and business associates to take steps to protect health information and personally identifiable information (PII).
The Health Insurance Portability and Accountability Act (including the Privacy Rule, Security Rule, Breach Notification Rule, and Health Information Technology for Economic and Clinical Health Act).
HIPAA requires Covered Entities and Business Associates to take certain measures to protect health information that can identify an individual. It also provides specific rights to individuals. You can request our BAA template by sending an email to legal@zohocorp.com.
Zoho does not collect, use, store, or maintain health information protected by HIPAA for its own purposes. However, Zoho Learn provides certain features to help customers use Zoho Learn in a HIPAA-compliant manner.
Why is it important for businesses to choose a HIPAA-compliant platform?
Stronger data security: Choosing a platform designed to support HIPAA requirements helps ensure that all data is properly encrypted and securely stored.
Maintaining industry standards: Choosing a HIPAA-compliant platform can help businesses to ensure that their data management practices are in line with industry standards.
Access control: With a HIPAA-compliant platform, businesses can control who has access to sensitive data and ensure that only authorized individuals can view or handle it.
Accountability: Covered entities that fail to protect protected health information (PHI) are subjected to legal consequences. This level of accountability not only helps to prevent data breaches but also ensures that businesses are compliant with HIPAA regulations.
Here's how Zoho Learn ensures HIPAA compliance.
Encryption and protection of health data: We ensure that all data stored in Zoho Learn, including articles, article comments, lessons, lesson discussions, and course ratings and reviews is encrypted. Data classified as electronic Protected Health Information (ePHI) is specifically identified and encrypted both in transit and at rest, providing complete end-to-end protection.
Restrict access to data: Data stored in Zoho Learn will only be visible to members with whom you choose to share your data with. This helps prevent unauthorized access and data breaches.
Register and maintain audit trails: Track user activities in the platform. Admins can see the audit logs of all users. These trails will be stored for a period of six years.