Health Data
HIPAA Ready Virtual Inspection Software
Safeguards for inspections that touch protected health information.
The Health Insurance Portability and Accountability Act (HIPAA) governs how Protected Health Information (PHI) is handled by covered entities and their business associates. Inspections in healthcare facilities, medical device manufacturing, and life sciences often touch PHI incidentally — VIP is built to handle it safely.
Safeguards Implemented
HIPAA requires three categories of safeguards. VIP implements each:
Administrative — workforce training, access management, incident response, contingency planning
Physical — facility access controls, workstation security, device and media controls
Technical — access control, audit controls, integrity, transmission security, encryption
Business Associate Agreements
VIP executes a Business Associate Agreement (BAA) with any covered entity or business associate that requires one before PHI enters the platform. Contact your account team to initiate a BAA.
Minimum Necessary and Breach Notification
Access controls enforce the HIPAA minimum-necessary principle. In the event of a suspected breach, VIP follows the HIPAA Breach Notification Rule timelines and coordinates directly with the covered entity.
Frequently asked
Will you sign a BAA?
Yes. BAAs are available for enterprise customers processing PHI on the platform.
Talk to sales
Need documentation for procurement?
Enterprise customers can request reports, questionnaires, and DPAs through their account manager or by contacting our security team directly.