Administrative users can have varying levels of access in the system. This limits the number of people who are able to view and edit sensitive data to only those who require that form of access.
Monitors the website for attempted malicious attacks, recording the date, time, IP address the attack originated from, and the type of attack. Also monitors user accounts for failed password attempts and logs IP addresses when a user accesses the system.
All PHR (Personal Health Records) data and billing information that is transmitted between a user’s computer and the HOW server is done so over a 256-bit encrypted connection. Encryption makes the data being sent and received unreadable without the proper key le, preventing malicious software on a user’s computer from being able to capture personal information as it is being transmitted.
All PHR data, billing information, and user passwords are stored in a database using 256-bit encryption. This means that, in the event of a security breach, all personal data will be unreadable without the proper key file. Additionally, administrative users at HOW are not able to view a person’s health record information, billing information, or passwords even if they have access to the database.