Your residents’ data deserves the highest level of protection. CareBridge Connect is designed for healthcare privacy and security, hosted on SOC 2 Type II-certified AWS infrastructure, encrypted in transit and at rest.
We meet and exceed the security standards required by healthcare organizations and regulatory bodies.
Designed to support the HIPAA Privacy, Security, and Breach Notification Rules. A BAA and launch approval are required before a facility may process PHI through the platform.
Hosted on Amazon Web Services (AWS), which maintains SOC 2 Type II certification, under a signed AWS Business Associate Agreement. Our own SOC 2 Type II audit is on the roadmap.
All data at rest is encrypted using AES-256, the same standard used by financial institutions and government agencies.
Data transmitted between your devices and our servers is protected with TLS 1.2 or newer using a modern CloudFront security policy.
We partner with industry-leading infrastructure providers that maintain the highest levels of security certification.
Cloud infrastructure for application hosting, database, and authentication — with row-level security, encryption at rest and in transit, a global CDN, and automatic SSL certificate management.
Transactional email for care notifications and demo requests, sent from the same HIPAA-eligible AWS environment as the rest of the platform — no third-party email processor touches your data.
We maintain rigorous compliance standards to ensure your facility meets all regulatory requirements.
Our security team is available to discuss your compliance requirements, review our security documentation, or schedule a security assessment call.
Contact Security Teamsecurity@carebridgeconnect.ai