Sun Managed Operations Customer Presentation,09 20 2006
PD_CL_HIPAACompliantCloud_0116
1. ViaWest and the ViaWest logo are registered trademarks of ViaWest, Inc.
To learn more about additional ViaWest solutions, contact us at 1-877-448-9378 or sales@viawest.com
HIPAA Compliant Protection on
the Ground and in the Cloud
HIPAA Compliant Cloud
Features
PRODUCT DATA SHEETS
ViaWest’s HIPAA Compliant Cloud is purpose built for the heavily regulated healthcare and life science sectors
offering you a fully audit-ready Compliance-as-a-Service solution to meet your IT and compliance needs. With
increased regulation comes increased risk and complexity surrounding HIPAA compliance. Businesses associated
with healthcare are faced with the challenge of securing internal infrastructures and data like never before. Without
physical security, proper infrastructure, power and HVAC redundancies and advanced IT engineering know-how,
companies run the risk of non-compliance.
Comprehensive and Compliant Network Security
• Redundant firewalls
• Intrusion detection/prevention
• Log collection and change management
• Attack prevention and network forensics
• Vulnerability assessments and penetration testing
• Two factor authentication
• Monitoring and reporting
Full Service Administration
• OS hardening and management
• Patching and updates
• Anti-virus protection
• File integrity monitoring
• Configuration review
• Segmentation and access controls
• Performance reporting and notification
Best-in-Class Infrastructure
• Industry leading VMware Technology
• Cisco Powered architecture
• Compliant data center infrastructure
(SSAE16 Type II, PCI Sections 9/12)
HIPAA Compliant Cloud
Daily Log Reviews
Manages Firewall Rules
Manages and Reports
Trend Deep Security -
Providing Highly
Scalable Cloud Security
Provides Design Network
Segmentation for Ultimate
Cloud Economics
Manages Logs for
Web Application
Firewall
Manages Your 2-Factor
Authentication Compliant
Security Tools
Custom Built
Security Platforms
Access to internet
External Communication
Services Remote Hands
Firewall
Management
Cisco UCS Environment
Security
Services
Networking
UCS
ViaWest Customized
Virtual Firewall
2. ViaWest and the ViaWest logo are registered trademarks of ViaWest, Inc.
To learn more about additional ViaWest solutions, contact us at 1-877-448-9378 or sales@viawest.com
PRODUCT DATA SHEETS
PD_CL_HIPAACOMPLIANTCLOUD_1015
HIPAA REQUIREMENT DELIVERY
SECURITY MANAGEMENT
PROCESS
§164.308(A)(1)
Security policy, change control, risk management, incident response, configuration
management and vulnerability management, roles and responsibility identification
and provisioning, validation reporting
WORKFORCE SECURITY
§164.308(A)(3)
Background checks, onboarding and termination, acknowledgment and awareness
procedures
FACILITY ACCESS
CONTROLS
§164.310(A)(1)
Facility designed to ensure security controls throughout the facility, power, HVAC,
communications and efficient scalable redundancy to reduce risk of system damage
and destruction
DEVICE AND MEDIA
CONTROLS
§164.310(D)(1)
Hardened provisioning, performance reporting and configuration management
ACCESS CONTROL
§164.312(A)(1)
Role based access control, encryption of data
AUDIT CONTROLS
§164.312(B)
Log monitoring and management, Security Operations Center, incident alerting,
security administration activity and access reports, vulnerability reports and
hardening reports
INTEGRITY
§164.312(C)(1)
File, data and change integrity, penetration testing, vulnerability management, IDS/
IPS
PERSON OR ENTITY
AUTHENTICATION
§164.312(D)
Role based access control, secure administration with 2factor authentication
TRANSMISSION SECURITY
§164.312(E)(1
Secure firewalls, routing and switching providing a multi-layer network architecture
with the segmentation
ViaWest Secure
Infrastructure
The HIPAA Compliant Cloud
is Cisco and VMware vCloud™
powered utilizing the industry’s
leading virtualization and security
technologies. These platforms
are designed to provide secure,
partitioned environments that
optimize data protection for customer
compliant workloads.
Hybrid Capability
With HIPAA Compliant Cloud, you
can right-size your environment, and
leverage Hybrid IT services with your
existing colocation and compliant
workloads; thus eliminating idle
resources and instantly adapt to
variability while on a platform
designed to provide a
secure environment.
HIPAA Audit-Ready
ViaWest’s HIPAA Compliant Cloud is
referenced, assessed and audited to
HIMSS-Good Informatics Practices
(GIP) specifications and procedures
that have been used within the
healthcare industry for more
than a decade.
Mitigate Risk.
ViaWest mitigates your risk by providing secure, regulatory compliant data center environments throughout the
United States and multi-layer network redundancy architecture design built with the segmentation and isolation,
required for healthcare- related compliance requirements.