Skip to main content

We have a medical office that was using scan to email...however, their IT support is telling them that scan to email is not HIPAA compliant.  I don't know if this is true or not.  However, I believe that once they scan the document they are then going to email it so I don't see what the difference is...unless they are using a secure mail server or something of that nature.  If the MFP is using SSL, would that help them address compliancy?  Interested in hearing what others have experienced.

Original Post

Replies sorted oldest to newest

I had a medical company inquire about this during our negotiations. They did some investigating and Scan to Email is indeed HIPAA compliant, provided that their email provider/email server meets the security standards. Scanned documents don't get stored on the hard drive, nor does the email go anywhere except from the email server to the recipient's inbox. If email is HIPAA compliant, then Scan to Email is just fine.

 

If your customer is still concerned, you can upgrade them to have Scan to Encrypted PDF. Most brands offer DoD encryption standards to password protect scanned files that get sent.

 

I highly recommend everybody read this article: http://www.techrepublic.com/bl...-securing-your-data/

 

Edit: Sounds like inexperienced IT trying to cover their own ass after reading some article off the web. Tell them to pick up the phone and check their facts first!

Last edited by Czech

Add Reply

Post
×
×
×
×
Link copied to your clipboard.
×
×