Privacy and Security

Patient privacy and data security is our priority 


Healthix adopts a continual data security improvement model. We invest in the people, processes, and technology to exceed data privacy requirements. Healthix adheres to both HIPAA and HITECH requirements and has also earned HITRUST CSF Certification for information security.


We use state-of-the-art technologies that actively block would-be attackers, alert us of potential attacks, and protect our servers. Our technologies include:

  • Firewalls
  • Antivirus
  • Managed Security Services Provider
  • File Integrity Monitoring
  • Multifactor Authentication
  • Network Intrusion Prevention Systems


As a steward of data for over a thousand organizations in the network, Healthix is deeply committed to protecting the privacy of patient information. We follow the New York Department of Health Policies developed for Health Information Exchange providers and regularly perform audits to monitor access to patient data.


Healthix has a range of cybersecurity programs including;

  • Cybersecurity Risk Management
  • Incident Response
  • Security Architecture (Network and Application)
  • Identity and Access Management
  • Threat and Vulnerability (including yearly penetration testing)
  • Awareness and Training
  • Configuration Management
  • Data Protection