Healthtech 1 controls access to the infrastructure that we use to store and process the data on the platform. We use Microsoft Azure's secure cloud hosting service to securely store and process patient data. The Azure regions used are exclusively located in the UK, for both live, test and backup environments.
For Microsoft’s Online Services (e.g. Office 365, Azure, Dynamics), normal operations are managed without access by Microsoft personnel. In some cases, support, troubleshooting, or service maintenance requirements (triggered by Healthtech-1) may require Microsoft personnel to access the customer’s data.
ISO 27001, ISO 27018, SOC 1, SOC 2, SOC3, FedRAMP, HITRUST, MTCS, IRAP, and ENS.
Resources
Encryption at rest:
Microsoft Professional Services - Data Access Summary (2020).pdf