HIPAA Compliance System Implementation for a Triage System

Client: NDA Signed & Protected

Location: United States (US)

Platform

Bare Metal

Industry

Health

Standards

HIPAA

Provider

Hivelocity

Customer Requirement​​

Implement a scalable HIPAA Compliant infrastructure on multiple dedicated servers in multiple regions of HiVelocity Data Center for a Triage application used by various hospitals in the USA. Skynats was tasked with planning and implementing an HA architecture between the TAMPA and ATLANTA regions of Hi Velocity with maximum security and 99.99% uptime.

Challenges​

Skynats took on the task of designing, planning, and implementing the entire architecture, considering the existing working architecture and workflow. The architecture designed should be compatible with the security norms of the governing body, which would be audited and scanned by various CVEs. Architecture designed and implemented must provide decent connectivity and accountability in case of a failure of any aspects of the architecture. We also had the challenge of establishing hardware firewalls, dynamic VPNs, site-to-site VPNs, IPSEC, port mirroring, and other networking layer features for our client.

Skynat's Proposal and Solutions​

Skynats submitted our proposal for architecture, considering the current workflow of the application. We established a cluster of dedicated servers spanning across two data centers, each located in a different tectonic plate region, ensuring the environment adhered to disaster recovery norms. The proposal includes the following strategies:

  1. Analysis: Had meetings and conducted detailed analysis of the client’s requirements, including compliance requirements and business goals.
  2. Designing the architecture: Build and propose a suitable architecture with HA Clustering that meets HIPAA Compliance rules and regulations.
  3. Implementation: Implemented the approved system in both TAMPA and ATLANTA data centers with real-time replication of files and databases, including load balancing and security.
  4. Monitoring and Management: Implemented a proactive monitoring system to monitor the entire infrastructure to ensure 99.99% uptime.
Implementation Method and Components Used​
  1. Deployed multiple & multi-regional dedicated servers with HIPAA Compliance rules.
  2. Deployed real-time file replication with encryption.
  3. Deployed Master Master database replication with Data at Rest Encryption.
  4. Implemented Cisco ASA firewall to filter connections to infrastructure.
  5. Implemented Site to Site VPN to achieve connections between two infrastructures in TPA and ATL.
  6. Added HIPPA Compliance Security measures in Firewall and in the infrastructure.
  7. Added 24×7 monitoring for the entire infrastructure, including the firewall.
Implementation Timeline​

The project was completed in 2 months with deployments, testing, auditing, and final delivery.

Results and Conclusion​

The entire system was audited by HIPAA auditors in the USA and got the HIPAA compliance certification and the system is currently being used by major hospitals in the USA.

Have Similar Requirements ?

Let us know your requirement.

Thank You

We have received your query and will get back to you soon.