Epiconcept certified as Health Data Host

25 April 2019

Epiconcept has been certified as a “Health Data Host” (HDH) on April 19, 2019. The certification was issued LSTI consultancy, following an on-site and a documentary audit. It covers the development, maintenance, support and data science services of Epiconcept’s Voozanoo applications and of their modules hosted by the company.

Epiconcept company, specialized in the hosting of personal health data

An expert in the hosting, storage and archiving of personal health data, Epiconcept has been providing its customers with a secure and approved hosting solution since 2012. Its transition to HDH certification validates the high level of protection of its infrastructures and confirms its will to protect its customers (and their patients)’ data, which face increasingly high cyber security risks.

A new, more demanding and regularly checked certification

HDH certification is based on international industrial standards (ISO 27001+ elements of ISO 2000-1 & ISO 27018 standards), completed by supplements based on French regulations. The six activities covered by its perimeter start from the concrete hosting databases and extend to all stages of data management, from the provision of data to its backup. Epiconcept is certified for outsourcing activities.

Epiconcept, certified under activities 3 to 6:

Activity 1 corresponds to the provision and maintenance in operational condition of physical sites that host the physical infrastructure of the information system used to process health data. It covers the walls, premises, electricity, refrigeration and physical security of the site. Those services are generally offered by data centres.

Activity 2 refers to the provision and maintenance in operational condition of the physical infrastructure of the IS used to process health data. This perimeter covers servers and other physical machines (Firewall, storage bays, etc.). Epiconcept subcontracts this service to an ISO 27001-certified host, which does not access the data (a security guarantee validated for certification).

Activity 3 concerns the provision and maintenance in operational condition of the virtual infrastructure (operating system, middleware, database, etc.) of the information system used to process health data. Epiconcept is HDH-certified for this activity. Its infrastructure contains about a hundred client systems developed by it and inaccessible to its physical hosting subcontractor.

Activity 4 concerns the provision and maintenance in operational condition of the information system application hosting platform. Epiconcept is HDH-certified for this activity, which it proposes to its customers.

Activity 5 includes the administration and operation of the health data information system. Data update, recoding, exploitation: Epiconcept is HDH-certified for this activity, which it proposes to its customers.

Finally, activity 6 represents the backup of health data. Epiconcept is HDH certified for this activity. This service is included in its service contracts.

For further information, do not hesitate to contact us.