skip to Main Content
soc-service-org_b_marks_2c_web-1

Data Security is Our Top Priority

Securing our customers’ data, along with their patients’ and clients’ protected health information, is a top priority for the entire Mediware team. With our Service Organization Controls (SOC) certification, hosted and on-premise customers can be confident that their data is secure.

Mediware SOC 2 and SOC 3 Compliance Certification

Mediware has voluntarily subjected our security policy, practices, and procedures to independent auditors for SSAE 16 Service Organization Control (SOC) certification according to the five Trust Service Principles (TSP). SOC certification provides validation that our processes, procedures, and controls meet or exceed the stringent criteria established by the American Institute of Certified Public Accountants (AICPA). The independent auditors reviewed our controls for:

  • Security, determining that our systems are protected against unauthorized access
  • Availability, confirming that our systems are available as agreed
  • Processing integrity, validating that our processing is complete, accurate, timely, and authorized
  • Confidentiality, establishing that information designated as confidential is protected
  • Privacy, confirming that Mediware collects, uses, retains, and discloses personal information in conformity with the privacy principles established by AICPA

View Mediware’s SOC 3 report and certificate here. View Mediware’s SOC 2 Type II certificate and SOC 2 Type 1 certificate here.

Untitled-1
securityimage

Trust Mediware for your hosted and on-premise solutions

Whether you choose to host your software or manage your technology yourself, Mediware gives you the freedom to manage your business on your timetable with unmatched security.

  • Mediware’s SaaS solutions meet and exceed compliance criteria established by the AICPA including: network connectivity, firewall configuration, secure software development life cycle, computer operations, database access, data transmissions, backup, disaster recovery, and physical security
  • Data centers are monitored 24/7/365 with temperature, air quality, humidity, and security monitoring
  • On-premise customers receive instant notification when software updates are available for installation through our secure share file exchange