|
Smartmed Summit was designed to comply with HIPAA
regulations and standards. Summit uses Secure
Sockets Layer (SSL) to provide authenticated and
encrypted communication of protected health information. The encryption
uses a 128 bit symmetric key and 1024 bit asymmetric key. Users
are authenticated by the Summit system using a username/password
pair. Summit also assigns each user to a role. For example, a
user in the transcription role can only utilize features of the
system that are allowed for transcriptionists.
SmartMed Summit servers are located at the MD Anderson Data Center
in Houston, Texas. The MD Anderson Data Center has 24x7 onsite
security, including internal and external surveillance monitors
and biometric hand and card scanners to insure that only authorized
persons have physical access to the computers housing the data.
The SmartMed Summit servers are protected against denial-of-service
(DoS) attacks and other forms of unauthorized network access by
both a stateful inspection firewall and intrusion detection system.
|