Software healthcare company continues to strengthen commitment to security and trust
ALEXANDRIA- February 17th, 2022– Bluesight, the leading automation vendor of Medication Intelligence solutions, which brings cost savings, efficiency, and patient safety to hospitals, announced today that it has passed its examination for System and Organization Controls 2 (SOC 2) and 3 (SOC 3), a widely-adopted auditing standard developed by the American Institute of Certified Public Accountants (AICPA). These compliance standards build on the SOC 2 Type 1 compliance review Bluesight passed last year. In addition to these evaluations,Bluesight has also undergone a third-party examination of its HIPAA policies, procedures, and controls to ensure it conforms against the HIPAA Security and HITECH Breach Notification Rule requirements from a leading provider of attestation and compliance services, Schellman and Company. This examination was completed to ensure customers’ peace of mind that Bluesight will appropriately safeguard protected health information.
“The security and trust of our customers is always our top priority when delivering our solutions into their hospitals,” said Vijay Venkatesh, Chief Technology Officer of Bluesight. “We chose to participate in these rigorous evaluation processes to take one more thing off our customers’ plates by ensuring their data is safe and secure when they are using Bluesight’s suite of Medication Intelligence solutions. Along with our annual third-party HIPPA examination process, we will focus on continuously improving our processes and procedures to meet the ever-evolving industry standards for data management.”
The SOC 2 and SOC 3 Type 2 standards were created to assess the design and integrity of security processes performed over a 12-month period, confirming that an organization’s internal security controls are suitably designed and implemented. In achieving SOC 2 and SOC 3 Type 2 compliance, Bluesight has demonstrated controls ensuring the secure processing and storage of customer data, conforming with the rigorous and sophisticated security and confidentiality standards for technology companies worldwide.