Healthcare IT NewsHealthcare IT News
TwitterFacebookLinkedInHealthcareITNews International
  • Home
  • Topics
    • Business Intelligence
    • Claims Processing
    • Data Warehousing
    • EDIS
    • Election 2012
    • Electronic Health Records
    • Enterprise Content Management
    • Enterprise Resource Planning
    • ePrescribing
    • Financial/Revenue Cycle Management
    • Health Information Exchange (HIE)
    • ICD-10
    • Meaningful Use
    • Mobile/Wireless
    • Network Infrastructure
    • Policy and Legislation
    • Privacy and Security
    • Quality and Safety
    • RIS and PACS
    • RTLS
    • Telehealth
    • Workforce Management
  • Issues
    • May 2012
    • April 2012
    • March 2012
    • February 2012
    • January 2012
    • December 2011
  • Blog
  • Webinars
    • Upcoming Webinars
    • On Demand Webinars
  • White Papers
  • Events
  • HIMSS JobMine
  • Press Releases
  • Slideshows
  • Videos
  • Podcasts
  • Supplements
  • Survey Analyses
  • Newsletters
  • Advertise
  • Login
  • Register
  • SUBSCRIBE
    • Newspaper
    • Email Newsletter
Home » News » Mobile/Wireless | Privacy and Security | Quality and Safety
Receive News By Email

  • del.icio.us
  • Digg
  • StumbleUpon
  • Reddit
  • Facebook
  • Google
  • RSS Icon
  

Microsoft embeds HIPAA compliance into Office 365

December 16, 2011 | Mike Miliard, Managing Editor

Suggested Content

  • When giants meet
  • GE brings EMRs, analytics to London 2012 Olympics
  • Newsmaker Interview: Michael J. Simpson - Caradigm CEO
  • GE Healthcare, Microsoft name their new company
  • GE, Microsoft launch new health IT company
  • GE launches multi-pronged $1B cancer initiative
  • GE launches new company to spur IT development
  • Microsoft announces 'Direct' way to move from Google Health to HealthVault
  • Denver Health sees dividends with Microsoft chronic condition management

Related Resources

  • Architecting the Hospital of the Future
  • Defining an EMR and HIE Strategy for Medical Imaging
  • Embrace Healthcare Change Safely: Practical Strategies for Security Risk Management
  • Business Intelligence for Hospitals: Empowering Healthcare Providers to Make Informed Decisions
  • Improve Federal Care and Wellness with Video

REDMOND, WA – Seeking to allay providers' privacy concerns and spur communication, Microsoft this week announced that its cloud productivity service, Microsoft Office 365, will comport with information security standards for customers in the U.S. and Europe.

As part of its contractual commitment to customers, officials say, Microsoft will now sign the EU’s model clauses, which will help customers certify compliance with the European Commission’s stringent Data Protection Directive, and will comply with the Health Insurance Portability and Accountability Act (HIPAA) in the U.S.

Officials say that with the new capabilities for Office 365 – which includes Exchange, SharePoint, Lync and Office – health organizations can more confifently implement technologies for communication tools such as IM, paging, video conferencing and document sharing, accessing information from any secure device.

[See also: GE, Microsoft launch new health IT company.]

"The economic advantages of cloud-based productivity solutions to drive down operational costs and complexity are well understood, but for most health organizations, HIPAA security and privacy concerns have been a show-stopping barrier to realizing the full anywhere, anytime productivity potential of cloud-based technologies," wrote Dennis Schmuland MD, Microsoft's chief health strategy officer for U.S. health & life sciences, in a blog post.

"[C]ommunication and collaboration is the lifeblood of the health industry and Office 365 makes it easier for people and teams to be efficient and productive anytime and anywhere," he added. "By embedding HIPAA privacy and security capabilities in Office 365, Microsoft is enabling health organizations to confidently empower their staff to communicate and collaborate anytime, anywhere and substantially lower their IT operating costs."

[See also: HIPAA Security Rule authority moved to Office for Civil Rights.]

In February 2010, the EU released the model clauses to legitimize the transfer of personal data via international networks to locations outside the European Economic Area (EEA). When included in service agreements with data processors, the clauses assure customers that appropriate steps have been taken to help safeguard personal data, even if data is stored in a cloud-based service center located outside the EEA. European regulators have the option of requesting that customers halt the use of a service that hasn’t taken appropriate steps to safeguard personal data until they have evaluated the service and deemed it compliant with EU data protection and security standards.

Along with furnishing the model clause provisions, officials say, Microsoft has gone a step further to include a data-processing agreement for EU customers. Some of the 27 member states have more exacting requirements than those of the EU-wide Data Protection Directive. To streamline the use of cloud-based services for customers operating under additional compliance requirements, Microsoft has included with the model clause provisions a robust data-processing agreement that was developed in view of the specifics of member-state regulations.

“Developing cloud-based productivity tools that meet the needs of European businesses means more than simply building apps in a browser,” said Jean-Philippe Courtois, president, Microsoft International. “Microsoft has a more complete approach to European data protection and security laws than any other company, and we’re proud of the work we’ve done to ensure the widest range of organizations can move to the cloud with confidence — or choose an equally functional on-premises option.”

As the first major cloud-based productivity service to obtain certification under ISO/IEC 27001, a rigorous information security management benchmark, Microsoft submits to a yearly audit of its information security policy by an independent expert and shares the results with its customers, officials say. Additionally, the firm has developed its online services to provide physical, administrative and technical safeguards that facilitate full compliance with HIPAA requirements.

Mike Miliard
Managing Editor of Healthcare IT News
Follow Mike on Twitter @MikeMiliardHITN
Related Topics:
  • allay
  • Europe
  • European Union
  • GE
  • Microsoft
  • Mike Miliard
  • Redmond
  • United States
  • Mobile/Wireless
  • Privacy and Security
  • Quality and Safety

Reader Comments (0)Login to Post a Comment

Most Popular

Latest Headlines
Most Popular
  • 6 reasons physicians need to be on social media
  • Lawsuit seeks Allscripts CEO's removal
  • 6 things patients want from social media
  • Tablet adoption by docs soars
  • FCC gives green light to wireless medical devices
  • Lawsuit seeks Allscripts CEO's removal
  • Web First: Q&A with Allscripts CEO Glen Tullman
  • 6 reasons physicians need to be on social media
  • Oregon to implement new statewide HIE
  • Tablet adoption by docs soars
more news

WEBINARS AND WHITE PAPERS

  • WHITE PAPERS
    Winning the EHR Battle with Enterprise Content Management
  • WHITE PAPERS
    Sharp HealthCare: Growing Content Management into an Enterprise Strategy
  • UPCOMING WEBINARS
    June 6th @ 2PM ET--Healthcare Best Practices: 4 Critical IT Strategies to Avoid Data Breaches
  • ON DEMAND WEBINARS
    Case Study: Sentara Healthcare Completes an Award-Winning EHR with Enterprise Content Management
  • WHITE PAPERS
    Business Intelligence for Hospitals: Empowering Healthcare Providers to Make Informed Decisions
More Resources
Syndicate content

HIMSS JOBMINE

  • Clinical Informatics Physician - Epic - Verona, WI
  • Regional Senior Quality Analyst - Memorial Medical Center - Modesto, CA
  • Network Engineer II - Carilion Clinic - Roanoke, VA
  • EMR Implementation - Project Manager Rothman Specialty Hospital - Rothman Specialty Hospital - Bensalem, PA
  • Director of Information Systems - Mission Regional Medical Center - Mission, Texas
more jobs

Marketplace

Follow Healthcare IT News on TwitterFan Healthcare IT News on FacebookJoin Healthcare IT News on LinkedInRSS Subscriptions
Digital EditionBlogEvents
JobsMobile SiteMobile App
 
Healthcare Finance News Government Health IT EHRWatch Healthcare Payer News HITECHWatch ICD10Watch mHIMSS PhysBizTech NHINWatch
©2012 MedTech Media Healthcare IT News is a publication of MedTech Media
Subscribe Advertise About Us Privacy Policy