Data Security
iConfiDent has partnered with Rackspace, the industry’s leading data center provider to provide unparalleled data security and availability. This means that you can count on your data remaining your data, and that you will be able to access it when you need it.
Our environment at the Rackspace data center provides:
- Multiple redundancies in the flow of information to and from our data centers.
- We deploy parallel systems that continuously backup data.
- Every fiber carrier must enter the datacenters at separate points.
- You get the fastest and most reliable network connections because the Proactive Network Management methodology monitors route efficiency and end-user performance, automatically improving the network's topology and configuration in real-time.
- The network is purposely operated with excess capacity, making it resilient to even the largest Internet routing issues.
- The network's configuration, co-developed with Cisco, guards against any single points of failure at the shared network level and continually creates ever-improving ways of monitoring and securing our network.
Rackspace owns and operates four US and four UK data centers, engineered to the standards required to support the Zero-Downtime Network.
Physical Security
- Keycard protocols, biometric scanning protocols and round-the-clock interior and exterior surveillance monitor access to every one of the data centers.
- Only authorized data center personnel are granted access credentials to the data centers.
- No one else can enter the production area of the datacenter without prior clearance and an appropriate escort.
- Every data center employee undergoes multiple and thorough background security checks before they're hired.
Precision Environment - Every data center's HVAC (Heating Ventilation Air Conditioning) system is N+1 redundant. This ensures that a duplicate system immediately comes online should there be an HVAC system failure.
- Every 90 seconds, all the air in the data centers is circulated and filtered to remove dust and contaminants.
- The advanced fire suppression systems are designed to stop fires from spreading in the unlikely event one should occur.
Conditioned Power - Should a total utility power outage ever occur, all of the data centers' power systems are designed to run uninterrupted with every server receiving conditioned UPS (Uninterruptible Power Supply) power.
- The UPS power subsystem is N+1 redundant, with instantaneous failover if the primary UPS fails.
- If an extended utility power outage occurs, on-site diesel generators can run indefinitely.
Internet Security iConfiDent utilizes some of the most advanced technology for Internet security available today. When you access our site using Netscape Navigator 6.0 or Microsoft Internet Explorer versions 5.5 or higher, Secure Socket Layer (SSL) technology protects your information using both server authentication and 128-bit data encryption, ensuring that your data is safe, secure, and available only to registered Users in your organization. Your data will be completely inaccessible to intruders. iConfiDent provides each User in your organization with a unique user name and password that must be entered each time a User logs on. iConfiDent issues a session "cookie" only to record encrypted authentication information for the duration of a specific session. The session "cookie" does not include either the username or password of the user. iConfiDent does not use "cookies" to store other confidential user and session information, but instead implements more advanced security methods based on dynamic data and encoded session IDs. These session IDs are an important security feature for unattended computers, as they will automatically log you out after a specified period of inactivity.
Health Insurance Portability and Accountability Act (“HIPAA”)
Please note that HIPAA standards require medical providers to address internal policies and procedures and change their practices in ways that extend beyond the scope of our products and services. It is not possible for us or any other technology provider to make customers “HIPAA-compliant.” While we will continue to provide industry-standard data protection and encryption, our customers, as a “covered entity” under HIPAA, are strongly encouraged to become familiar with all HIPAA regulations and how they impact their own respective practices.
For more information on HIPAA, see the links below:
http://www.cms.hhs.gov/SecurityStandard/