Protected Information Policy
At Care Assurance Aging Solutions, we take the privacy and security of our users' healthcare information very seriously. We have implemented a comprehensive protected information policy to ensure that all personal health information (PHI) is managed and stored securely and transmitted in a manner that ensures its confidentiality, integrity, and availability.
​
This policy covers the following areas:
​
-
PHI Collection and Storage We collect and store PHI only to the extent necessary to provide services to our clients. We use industry-standard encryption protocols to ensure that all PHI transmitted to and from our website is secure. Access to PHI is restricted to authorized personnel and is protected by multiple layers of security, including firewalls and access controls. Our servers are regularly updated and maintained to ensure that they remain secure.
-
PHI Transmission We use secure methods for transmitting PHI between our website and our clients, including secure file transfer protocol (SFTP), encrypted email, and virtual private networks (VPN). We do not use unsecured email or other unsecured methods of transmission for PHI.
-
PHI Access Access to PHI is restricted to authorized personnel who need access to the information to perform their job duties. We maintain a record of all personnel who access PHI, as well as the purpose of the access and the date and time of access. We regularly review access logs to ensure that there are no unauthorized access attempts.
-
PHI Disclosure We do not disclose PHI to any third parties unless required by law or with the client's express consent. We maintain a record of all disclosures of PHI, including the date, time, and purpose of the disclosure and the identity of the party to whom the information was disclosed.
-
PHI Disposal We dispose of all PHI in a secure manner in accordance with state and federal regulations. We use shredding services or secure digital destruction methods to ensure that PHI cannot be accessed by unauthorized individuals.
-
HIPAA Compliance We are committed to compliance with the Health Insurance Portability and Accountability Act (HIPAA) and its regulations. We regularly review and update our policies and procedures to ensure that we are compliant with all relevant regulations and guidelines.
-
Employee Training We provide regular training to all employees on our protected information policy, including the importance of safeguarding PHI, the proper use of encryption and other security measures, and the consequences of violating our policies and procedures.
At Care Assurance Aging Solutions, we understand the sensitivity of personal health information and are committed to maintaining the highest standards of privacy and security.
We believe that our protected information policy reflects our commitment to these principles and our responsibility to our clients.