| Security,
reliability, and performance are core requirements
of any software system. |
| viaMD
IT professional users need the confidence that your
vendor’s technical infrastructure supports
your supply chain workflow requirements; data security
and access entitlement parameters; federal privacy
laws; and availability demands. Our team has designed
and developed a system which meets the challenge. |
Workflow Requirements: |
| viaMD
is a 100% browser based application that consists
of integrated web forms which pull and push data
from our central data repository into various application
modules. Data access is based on entity and user
role entitlements. We have a very diverse user base
with different work flow requirements, from surgeons
who pre-operatively requisition the surgery and
related materials; to schedulers who schedule surgeries
and admit patients; to hospital materials personnel
who plan inventory, pick the pick lists, approve
orders, and receive shipments; to supplier sales
representatives who support both the surgeon and
hospital; and finally to suppliers who fulfill orders.
Each user has a unique role with relevant data access.
We designed the application with the user needs
as our top priority. |
Security and Access: |
| Our
top technical concern is security of all data files
and transaction records. Every viaMD web form is
encrypted with 128 key encryption technology. The
viaMD web site has official Secure Site certification
from Verisign (NASDAQ: VRSN), www.verisign.com.
All servers are protected by Cisco firewalls, daily
monitoring and data back ups, and careful infrastructure
design. Customers have options as to the mechanisms
used for authentication. Security audits may be
performed on a regular basis by independent parties.
Users have entity and role-based access privileges.
|
Federal HIPAA requirements: |
|
The
entire security structure was designed to each
specific HIPAA requirement for patient privacy
and transactional security. Some viaMD security
features and their HIPAA relevance are listed
below. <<See
presentation>>
| viaMD Security
Features |
HIPAA Relevance |
- Secure
storage and retrieval at viaMD hosting
center
-
Identification/ Authentication and Logout
-
System events audit
-
Role based access control
-
Transaction back-out capability
-
Disclosure accounting
-
Data encryption
-
Minimum disclosure
-
Restriction request
-
De-identification
-
Notice of Information Practices
|
- Unique
user identification, secondary authentication
and automatic log-off
-
Audit trail
- Role,
context and user based access control
- Contingency
plan
-
Minimum and accounted disclosure
-
User discretion and surrogate access
-
Partner agreements
|
|
Usability: |
| Our
network infrastructure is designed to eliminate
single points of failure. Dual paths to the Internet
are provided. Web servers, application servers,
data servers, data storage, are all redundant. Failover
mechanisms are designed to ensure uninterrupted
service should any single component fail. Recovery
protocols are in place to facilitate rapid return
to normal service for any failed device. |
|
|