Security

Security Standards for Electronic Medical Records

Nightingale understands that data security is the number one priority for our clients. The security architecture of our Electronic Medical Records (EMR) and Practice Management System Nightingale on Demand, is very robust and customizable to meet varying degrees of security stringency.

We realize that it is vital to implement a layered approach to security, often referred to as defence-in-depth. Use of defence-in-depth means that security is addressed at a number of levels, including organizational security policies, Windows Server 2003 configuration, IIS configuration, ASP configuration, Nightingale CMS configuration, communication security, firewall configuration, and so on. Nightingale’s security framework can be summed up as follows:

  • An industry-leading state-of the-art software application, Nightingale’s software is deployed over tiered network layers that are Firewall protected mitigating single-point compromise of the infrastructure service.
  • Nightingale’s solution includes RSA SecurID’s two-factor authentication which provides maximum identity protection, strong access control measure and a secure online user experience.
  • Nightingale’s n+1 design architecture delivers fault-tolerant application services in excess of 99.5% availability (monthly SLA).
  • As concurrent user loads and storage requirements increase over time, Nightingale’s infrastructure solution scales easily while maintaining low operating costs.
  • Installed on Microsoft Operating Systems and technologies and leading hardware vendors such as IBM, DELL, HP, Nightingale CMS offers the clinics with several hardware service and maintenance alternatives (ie. not locked in to a specific maintenance service vendor).

To find out more information on the security that Nightingale has in place, for its Electronic Medical Records and Practice Management system,  please complete our request information form.