major life sciences company case study -...

2
Case study: Major Life Sciences Company CipherCloudwww.ciphercloud.com Major Life Sciences Company Case Study Life Sciences Company Protects Patient, Doctor and Genomic Information in the Cloud CipherCloud for NetSuite Encrypts Data to Protect ePHI Info per HIPAA-HITECH 2013 Quick Facts � Headquarters: Massachusetts � Industry: Life sciences � Regulations: HIPAA, HITECH � Products and Services: Genomic and proteomic products and services for physicians � Certified genetic testing laboratory focused on neurological and metabolic disorders Challenges � Using cloud system for services that require handling sensitive patient, doctor, and genomic data � Meeting HIPAA-HITECH 2013 Final Omnibus Rule’s higher standards for protecting cloud- based data � Assuring HIPAA-compliance of ePHI data stored in the cloud Solution � CipherCloud for NetSuite � Seamless deployment of NetSuite platform to over 1,000 users in just 66 days � Provided seamless strong encryption of sensitive patient, doctor, and genomic data Top Benefits � Successful launch of key applications to the cloud � Assuring compliance and integrity of highly sensitive patient information; protecting corporate reputation � Support for NetSuite to streamline operations on a single platform breach notifications in many countries Challenge This privately held life-sciences company provides genomic and proteomic products and services for physicians and the life sciences industry. Commied to helping physicians, families and children suffering with neurological disorders, their bioinformacs and genec tesng converts raw informaon into highly usable clinical data that can lead to posive changes and improvements in a child’s quality of life. This advanced technology company wanted to rely on cloud systems to manage their data and make it more accessible. This involved migrang services and data to the cloud, including sensive informaon on paents, doctors, and genomics. They selected the NetSuite business management plaorm and needed a reliable system to secure proper handling of medical records. Requirements The life-sciences company needed to meet HIPAA compliance of ePHI (electronic personal health informaon) in the cloud. This included protecng paent informaon according to HIPAA-HITECH 2013 Final Omnibus Rule, which mandates even higher standards for protecng cloud-based data. The company makes strong commitments to its clients and they wanted to keep their good reputaon strong by honoring those commitments. To do this, their security soluon needed to provide: HIPAA-compliance of ePHI data stored in the cloud, including the higher standards of the HIPAA-HITECH 2013 Final Omnibus Rule Strong encrypon of encrypon paent, genomics, and tesng data Seamless integraon with NetSuite business management plaorm

Upload: others

Post on 28-Jun-2020

5 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Major Life Sciences Company Case Study - CipherCloudpages.ciphercloud.com/rs/ciphercloud/images/CS... · Major Life Sciences Company Case Study Life Sciences Company Protects Patient,

Case study: Major Life Sciences Company CipherCloud│www.ciphercloud.com

Major Life Sciences Company Case Study

Life Sciences Company Protects Patient, Doctor and Genomic Information in the Cloud CipherCloud for NetSuite Encrypts Data to

Protect ePHI Info per HIPAA-HITECH 2013

Quick Facts� Headquarters: Massachusetts� Industry: Life sciences� Regulations: HIPAA, HITECH� Products and Services: Genomic and proteomic products and services

for physicians� Certified genetic testing laboratory focused on

neurological and metabolic disorders

Challenges� Using cloud system for services that require

handling sensitive patient, doctor, and genomic data

� Meeting HIPAA-HITECH 2013 Final Omnibus Rule’s higher standards for protecting cloud-based data

� Assuring HIPAA-compliance of ePHI data stored in the cloud

Solution� CipherCloud for NetSuite � Seamless deployment of NetSuite platform to

over 1,000 users in just 66 days � Provided seamless strong encryption

of sensitive patient, doctor, and genomic data

Top Benefits� Successful launch of key applications to

the cloud� Assuring compliance and integrity of highly

sensitive patient information; protecting corporate reputation

� Support for NetSuite to streamline operations on a single platform breach notifications in many countries

ChallengeThis privately held life-sciences company provides genomic and proteomic products and services for physicians and the life sciences industry. Committed to helping physicians, families and children suffering with neurological disorders, their bioinformatics and genetic testing converts raw information into highly usable clinical data that can lead to positive changes and improvements in a child’s quality of life.

This advanced technology company wanted to rely on cloud systems to manage their data and make it more accessible. This involved migrating services and data to the cloud, including sensitive information on patients, doctors, and genomics. They selected the NetSuite business management platform and needed a reliable system to secure proper handling of medical records.

Requirements The life-sciences company needed to meet HIPAA compliance of ePHI (electronic personal health information) in the cloud. This included protecting patient information according to HIPAA-HITECH 2013 Final Omnibus Rule, which mandates even higher standards for protecting cloud-based data. The company makes strong commitments to its clients and they wanted to keep their good reputation strong by honoring those commitments.

To do this, their security solution needed to provide: � HIPAA-compliance of ePHI data stored in the cloud, including the

higher standards of the HIPAA-HITECH 2013 Final Omnibus Rule � Strong encryption of encryption patient, genomics, and testing data� Seamless integration with NetSuite business management platform

Page 2: Major Life Sciences Company Case Study - CipherCloudpages.ciphercloud.com/rs/ciphercloud/images/CS... · Major Life Sciences Company Case Study Life Sciences Company Protects Patient,

CipherCloud is the industry leader in cloud information protection, enabling organizations to securely adopt cloud applications by overcoming data privacy, residency, security, and regulatory compliance risks.

The award-winning CipherCloud Platform has been deployed globally by Fortune 1000 companies in banking, insurance, healthcare, hi-tech, and government.

CipherCloud protects over:1.2 million users100 million records12 industries8 countries6 languages

Products protected:SalesforceForce.comChatterBoxMicrosoft Office 365Google GmailAmazon Web ServicesAny cloud applicationDatabases

For more information:1-855-5CIPHER(1-855-524-7437)[email protected]: @ciphercloudCorporate headquarters:99 Almaden Blvd.San Jose, CA 95113

©2013–2014 CipherCloud. All trademarks are property of their respective owners.CC-CS-09-131114

SolutionCipherCloud for NetSuite was the right solution for this life sciences company. CipherCloud brings deep knowledge and experience to securing cloud applications, protecting data with AES 256-bit encryption. This company could apply encryption to its sensitive patient, doctor and genomic data, down to the characters in every specified field, per their requirements and security goals.

The company’s NetSuite platform was rolled out to over 1,000 internal and customer care users and they were able to deploy, integrate and go live in 66 days. This included assuring the platform security would meet compliance, protect the integrity of their highly sensitive patient information, and keep their reputation as a responsible medical provider intact.

BenefitsThe life sciences company is more than pleased with its NetSuite platform rollout, having achieved:

� Successful cloud-based systems for managing key applications� Compliance assurance, encryption of highly sensitive patient information, and

protection of corporate reputation� Deployment of NetSuite to streamline operations on a single platform

CipherCloud allowed us to continue using cloud infrastructure, while assuring we could meet this year’s HIPAA Omnibus Rules…”“