PKI for the Healthcare Industry
Mitigate risk against security issues comprising of identity verification, confidentiality and privacy and meet existing and emerging regulatory frameworks.The Healthcare industry is a challenging environment in which to provide effective security, with growing pressures to meet strict budgets and regulations it is becoming ever more complex for healthcare organizations to ensure patient care is not compromised as a result. A balance between procedural effectiveness and patient care has to be upheld, especially as today’s healthcare authorities face increasing pressures to meet the standards of competitive healthcare organizations, changing regulations, as well as patient confidentiality.
Organization Drivers
As a highly paper intensive and budget restricted industry, healthcare organizations are striving to achieve greater efficiency by automating business processes, streamlining communications and reducing the volume of paperwork - increasing customer satisfaction levels, whilst ensuring their network infrastructure remains secure. Customers are more conscious about the protection of their personal data, even more so within healthcare organizations which hold highly confidential details regarding an individual’s medical status.
Regulatory Compliance
All healthcare organizations have to comply with numerous Government stipulated regulations regarding security of networks, documents and information. These include the Health Insurance Portability and Accountability Act (HIPAA), the Food & Drug Administration Code of Federal Regulations (FDA CFR) and the Sarbanes-Oxley Act (SOX). It is therefore significantly important that healthcare organizations have the necessary security policies in place to allow these regulations to be firmly met.
HIPAA 1996 - set national standards regarding privacy and security of medical records designed to improve the efficiency of the healthcare system by encouraging widespread use of electronic data interchange, rather than by paper based methods. HIPAA requires healthcare organizations to conduct thorough IT risk assessment as well as develop and implement a plan for improving and maintaining security.
FDA 21 CFR Part 11 1997 - defines the principle of which electronic records and digital signatures are considered to be trustworthy, reliable, and equivalent to paper records. These standards for use of electronic records and digital signatures were introduced as a response to soaring costs associated with managing the distribution, storage, and retrieval of records – particularly in the healthcare industry where budget could to be allocated to more beneficial resources. Additionally, security concerns surrounding wet ink signatures emerged as it became evident that these signatures including the content they were assigned to could be easily falsified.
SOX 2002 - requires publicly listed companies to implement and maintain increased controls with regards to financial reporting processes in response to serious accounting scandals of the past. Public organizations must provide an annual internal control report stating the responsibility of management for establishing and maintaining an adequate internal control structure and procedures for financial reporting.
SSL Managed Service
Manage your organization's multiple SSL Certificates via an advanced SaaS web portal / APIManage the complete lifecycle of your organization's SSL Certificates through the SSL Managed Service. One time vetting means once vetted, your enterprise's users simply log into the web based account (or XML API) and issue, reissue, renew, or revoke SSL Certificates on demand. Granular user privileges allow Administrators to create roles for users to apply, approve or just report on billing and activity within the account. Plus, the immediate discounts mean you save over purchasing SSL Certificates from multiple suppliers or via premium priced retail sites.
Adobe Certified Document Services
Publish secure and authentic electronic PDF documentsAs an authorized participant in Adobe’s Certified Document Services (CDS) Solution, GlobalSign can offer enterprises a more secure, reliable electronic PDF document exchange service to enable recipients to easily determine the documents authenticity and authorship.
Enterprise PKI
Manage employee / extranet Digital IDs for Microsoft Windows and Adobe platformsEnterprise PKI (ePKI) is GlobalSign's managed service for standard Microsoft Windows Digital IDs and Adobe Trusted Digital Certificates. Issue Digital IDs to multiple employees, suppliers, and extranet users for authentication, secure email and document security. Offers complete lifecycle management and online identity management.
Trusted Root Certificate Authority
Root Signing to enable your Enterprise Certificate Authority to issue globally trusted Digital CertificatesEnterprises operating their own Microsoft Certificate Services or in house Certificate Authority can chain their Root Certificates to the widely distributed and highly trusted GlobalSign Root CA Certificate - eliminating costly "not trusted" errors and immediately benefiting from the trust associated with GlobalSign and its 10 year+ long relationships with all the browser, application, and Operating System vendors.







