LuxSci has been offering services that can be used in a HIPAA-compliance context since 2008. LuxSci's services contain (as included or optional features) all of the appropriate controls that may be required or desired to help you meet your business' HIPAA-compliance requirements. These include items such as: transport encryption with appropriate ciphers, at-rest encryption, software and hardware firewalls, intrusion detection, anti-virus scanning, server segmentation, unique access controls and access auditing, breach reporting, proper media disposal, disaster-recovery plans, etc.
Furthermore, LuxSci performs its own:
As required by HIPAA, LuxSci has explicit Business Associate Agreements in place with all its vendors that could come into contact with your ePHI. They include:
LuxSci customers with HIPAA accounts must read, agree to, sign, and return LuxSci's HIPAA Business Associate Agreement and Account Restrictions Agreement. This version is updated with the provisions required by the Omnibus Final Rule.
Customers with HIPAA accounts can read these agreements and fill out the form to signify their agreement to these terms of service and to include their written signature, captured using LuxSci's Ink Signature technology.
Who should sign? To ensure HIPAA compliance, an officer of your organization with legal right to enter into a HIPAA Business Associate Agreement should be the one to sign. If you have someone without sufficient authority sign (a Webmaster, for instance) the agreement, then it's possible you're failing to properly meet your obligations under HIPAA.
Can I modify the BAA? LuxSci does not generally accept customer-suggested modifications to its HIPAA BAA. For customers with a strong need, we do have a fee-based to pay for reviewing your BAA change requests; the changes may or may not be permitted. LuxSci ensures that the spirit of its BAA is consistent across all customers so that LuxSci can consistently abide by the terms of the BAA without needing to refer to many various contracts for every situation that may arise.
Your standard and HIPAA-compliant hosting services are awesome, working exactly like we envisioned. Pricing is very fair and support has been wonderful! Would definitely recommend you."
After being a long time customer (under several different companies), I haven't had *any* problems with my LuxSci services, and I bet you folks don't hear enough that you're doing a spectacular job running the hardest service on the Internet. I rarely think about LuxSci, as my mail just works, which ultimately means absolute success in my book. Keep it up!"
I have been very happy with the products & services. They have exceeded my expectations thus far because whenever I need something, I can either easily find the answer myself, or if not the telephone tech support is extremely helpful. Thanks!"
I would like to commend LuxSci on its hosting services. I have tried many other lower cost shared hosting plans but yours definitely outshines theirs in features, and more importantly, operates flawlessly each and every time!"
Again you have made things easier, and I cannot begin to tell you and your colleagues that LuxSci has far and away the best tech support/customer service I have ever encountered."