HIPAA
Abbreviation · Security & Infosec
Definitions
The Health Insurance Portability and Accountability Act — a US federal law that sets standards for protecting sensitive patient health information (PHI). In tech, 'HIPAA-compliant' means the system meets strict data security and privacy requirements for handling medical data.
In plain English: A US law that says companies handling medical data must keep it secure and private, with serious penalties for breaches — the reason healthcare tech is so heavily regulated.
Example: "We can't use that SaaS tool for patient data unless it signs a BAA and is HIPAA-compliant."
Related Terms
- Audit Log
- Credential Rotation
- Homomorphic Encryption
- Confidential Computing
- SOC 2
- Audit Trail
- Chain of Custody
- Data Masking
- DNS over HTTPS
- DNS over TLS
- End-to-End Encryption
- Information Disclosure
- Log Management
- Mobile Device Management
- PCI DSS
- WORM Storage
- Aggregation Attack
- CMMC
- Data Anonymization
- Data Destruction
- Data Privacy
- Data Sovereignty
- DoH
- GLBA
- ISO 27001
- ISO 27002
- K-Anonymity
- L-Diversity
- PCIDSS
- PII
- Privacy Policy
- Protected Health Information