You are currently viewing Medical professionals, protect your data with HIPAA-compliant SurveyCTO

Our secure platform is now fully HIPAA-compliant. Use our best-in-class security options to protect sensitive patient data.

It’s official: SurveyCTO is HIPAA compliant

Keeping data safe is one of SurveyCTO’s guiding principles. Our goal has always been to empower users to put in place the security measures that best meet their needs—and those of their customers, survey respondents, program participants, or patients.

We have long provided our users the tools and reassurance they need to be HIPAA compliant, including being a SOC-2 certified platform as well as providing a robust array of survey security features like end-to-end encryption and custom user roles that let you restrict access to data. 

As part of our ongoing commitment to rigorous compliance practices and technology, and after a thorough independent auditing process, we are delighted to announce that SurveyCTO is officially HIPAA compliant.

Table of Contents

All about HIPAA—and why we made our compliance official

The Health Insurance Portability and Accountability Act of 1996 (HIPAA) is a U.S. federal law that put in place regulations that protect the privacy of Protected Health Information (PHI). HIPAA stipulates that healthcare providers, insurers, and their business associates in the United States must adhere to specific physical, administrative, and technical processes that safeguard patient medical information. These safeguards work to ensure authorized-only access to patient data, so that only providers who need to know someone’s medical history to provide or pay for care have access to it.

Hospitals, medical nonprofits, and other companies who collect the medical data of Americans must abide by HIPAA at all times. This includes being especially careful about HIPAA when it comes to choosing and using a data collection platform. 

Not all survey software offers the features needed to safeguard access to patient data at the level HIPAA requires. At SurveyCTO, we know how important HIPAA is to users running clinical trials and operating medical programs in the United States, and have made sure our features empowered HIPAA-compliant data protection. Due to the robust data security options we have always offered, many organizations and researchers have been successfully using our platform for projects and programs subject to HIPAA.

However, while offering the right functionality is critical, we also believe strongly in independent audits and certifications that confirm the power and efficacy of that functionality! As such, we pursued the full HIPAA auditing process to confirm our suitability as a platform for organizations and researchers who must adhere to HIPAA. 

We are thrilled to announce that we have thoroughly passed this audit and are now a HIPAA-compliant platform.

Do you practice medical research? Is your organization in the healthcare space?

It is now easier than ever to demonstrate SurveyCTO’s suitability for medical and health-related fields. We have long provided robust security features required for sensitive medical data collection, but now we are making it official. We are proud to announce our formal HIPAA compliance that shows how our platform meets the rigorous regulatory standards needed to protect patient privacy and health data.

Melissa Kuenzi

Senior Product Marketing Specialist

Melissa is a part of the marketing team at Dobility, the company that powers SurveyCTO. She manages content across SurveyCTO’s external platforms, publishing expert insights on best practices for high-quality data collection and survey research for professionals in international development, global health, monitoring and evaluation, humanitarian aid, government agencies, market research, and more.

Her background in the nonprofit sector allows her to draw on firsthand experience as a user of software solutions for the social impact space to bring SurveyCTO’s tools for uncompromising data quality to researchers all around the world.