SlideShare une entreprise Scribd logo
1  sur  22
Télécharger pour lire hors ligne
Security and Privacy in SharePoint 2010: Healthcare


   Webinar presented by: Planet Technologies and
   CipherPoint Software


   NOVEMBER 2, 2011




                                                   © 2011 PLANET TECHNOLOGIES, INC.
Agenda
    1. Overview – Mr. Jim Hietala, CipherPoint Software

    2. Security and Privacy in SharePoint 2010: Healthcare – Dr.
       Marie-Michelle Strah, Planet Technologies

    3. CipherPoint Demo and Case Studies – Mr. Mike Fleck,
       CipherPoint Software

    4. Q&A
Presenters




                                                       Microsoft Gold Partner

                                                       •   5x Federal Partner of
                                                           the Year
                                                       •   2x State and Local
                                                           Government Partner
                                                           of the Year
                                                       •   2011 xRM Partner of
                                                           the Year




                                   www.go-planet.com

© 2011 PLANET TECHNOLOGIES, INC.
Objectives

         Objectives
        •         Introduction: Why SharePoint for
                  healthcare?
        •         Context: ARRA/HITECH: INFOSEC and
                  connected health information
        •         Reference models: security, enterprise
                  architecture and compliance for
                  healthcare
        •         Best Practices: privacy and security in
                  Microsoft SharePoint Server 2010


© 2011 PLANET TECHNOLOGIES, INC.
What keeps a CMIO up at night?

Excerpted from John D.
Halamka, MD Life as a
Healthcare CIO Blog…



•     Unstructured data
•     Compliance
•     Security
•     Workforce recruitment



    http://geekdoctor.blogspot.com/2011/10/what-keeps-me-up-at-night-fy12-
    edition.html
    © 2011 PLANET TECHNOLOGIES, INC.
Microsoft SharePoint in Healthcare

                  •EHR Integration                                   •Clinical Decision
                  •“Meaningful Use”                                   Support
                                                                     •Data Analytics
                                                                     •Logistics and Asset
                                                                      Management




                                                       Practice
                                       Enterprise
                                                    Management
                                        Content
                                                     and Hospital
                                      Management
                                                    Administration




                                         Patient    Research and
                                      Engagement    Collaboration
                                                                          •Public/Private
                  •Web Content                                             Partnerships
                   Management and
                   Outreach                                               •Collaborative,
                                                                           Cross-
                  •Patient/Veteran                                         disciplinary
                   Relationship                                            care delivery
                   Management

© 2011 PLANET TECHNOLOGIES, INC.
Planning for Security and the “Black Swan”




© 2011 PLANET TECHNOLOGIES, INC.
Privacy
                                   • Data (opt in/out)
                                   • PHI
                                   • PII

                                   “Black Swans”

                                   • Consumer
                                     Engagement
                                   • Business Associates
© 2011 PLANET TECHNOLOGIES, INC.
Enterprise Security Model



                                   ������    ������
           ������ = (������ ∗ ������ )
     Information Security (Collaborative Model)
     Equals
     People (all actors and agents)
     Times
     Architecture (technical, physical and
     administrative)

© 2011 PLANET TECHNOLOGIES, INC.
From HIPAA to HITECH…


        Health Insurance Portability and Accountability
         Act of 1996 (HIPAA) (Pub L 104–191, 110 Stat
         1936)
        The Health Information Technology for
         Economic and Clinical Health Act (HITECH Act),
         enacted on February 17, 2009
        American Recovery and Reinvestment Act of
         2009 (ARRA) (Pub L 111-5, 123 Stat 115)




© 2011 PLANET TECHNOLOGIES, INC.
������ = (������ ∗ ������ ) do the HITECH math… ������        ������

“Business Associates”:                   •   Application of HIPAA Security
•    Legal                                   Standards to Business
                                             Associates
•    Accounting
                                         •   42 USC §17931
•    Administrative
•    Claims Processing                   •   New Security Breach
•    Data Analysis                           Requirements
•    QA                                  •   42 USC §17932(j)
•    Billing
•    Contractors                         •   Electronic Access Mandatory
                                             for Patients 42 USC 17935(e)
45 CFR §160.103
                                         •   Prohibited Sale of PHI without
                                             Patient Authorization 42 USC
Consumer Engagement                          §17935(d)




 © 2011 PLANET TECHNOLOGIES, INC.
Complexity = Higher Risk and Costs




© 2011 PLANET TECHNOLOGIES, INC.
SOA (Service-Oriented Architecture)


“Hub” Model reduces complexity and variability
while maintaining collaboration and interoperability




© 2011 PLANET TECHNOLOGIES, INC.
Microsoft Connected Health Framework Business and Technical Framework
             (Joint Architecture)
             http://hce.codeplex.com/
© 2011 PLANET TECHNOLOGIES, INC.
Security Architecture SharePoint Server 2010




                 Authentication               Permissions                           Data Level               Endpoint




                                                                        Services




                                                                                                  Hardware
                                        UPM
 Authorization




                                                            Business Connectivity
                 Federated ID                 Security                              Security                 Security
                 Classic/Claims               Groups                                LOB                      Mobile
                                                                                    Integration              Remote
                 IIS/STS




                                                                      ������                                       ������
                    ������ = (������ ∗ ������ )
     © 2011 PLANET TECHNOLOGIES, INC.
Behavioral Factors: Security Architecture



                                   • #hcsm
                                   • User population challenges
                                         -clinicians
                                         -business associates
                                         -domain knowledge
                                   • “Prurient interest”
                                   • Mobile technologies



                                    ������               ������
        ������ = (������ ∗ ������ )
© 2011 PLANET TECHNOLOGIES, INC.
Enterprise Security Planning


 PIA (Privacy Impact Assessment)
 Encryption
 Data at rest/data in motion
 Perimeter topologies
 Segmentation and compartmentalization of PHI/PII
  (logical and physical)
 Wireless (RFID/Bluetooth)
 Business Continuity
 Backup and Recovery



© 2011 PLANET TECHNOLOGIES, INC.
Security Planning Considerations (SharePoint 2010)



  Content types (PHI/PII)                     Metadata and tagging (PHI/PII)
  ECM/OCR                                     Blogs and wikis (PHI)
  Digital Rights Management (DRM)             Plan permission levels and groups
  Business Connectivity Services and           (least privileges) – providers and
   Visio Services (external data                business associates
   sources)                                    Plan site permissions
           – Excel, lists, SQL, custom data    Fine-grained permissions (item-
             providers                          level)
           – Integrated Windows with           Security groups (custom)
             constrained Kerberos              Contribute permissions




© 2011 PLANET TECHNOLOGIES, INC.
The Security Lifecycle: SharePoint Deployments




Adapting the Joint Commission Continuous Process Improvement Model…
                              Plan

                             •Technical, Physical, Administrative Safeguards

                              Document

                             •Joint Commission, Policies, Procedures, IT Governance

                              Train

                             •Clinical, Administrative and Business Associates

                              Track

                             •Training, Compliance, Incidents, Access…. everything

                              Review

                             •Flexibility, Agility, Architect for Change

© 2011 PLANET TECHNOLOGIES, INC.
Best Practices – Proactive Security Model



              Involve HIPAA/HITECH specialists early in the planning process.
               (This is NOT an IT problem)
              Consider removing PHI from the equation.
               (Compartmentalization and segregation)
              Evaluate the outsourcing option. Trust, but verify.
              Look to experts to help with existing implementations. (Domain
               expertise in healthcare and clinical workflow as well as
               HIPAA/HITECH privacy and security)
              Use connected health framework reference model

              Extend SharePoint: ISVs create effective and compliant solution
                                        CipherPoint
                Enterprise Content Management, Administration, Total Disk
                             Encryption, PII/508 Compliance
 © 2011 PLANET TECHNOLOGIES, INC.
Comprehensive Security Model


• Case Studies
• SharePoint is an enabler
  for healthcare
  transformation
• Introduction to
  CipherPoint


© 2011 PLANET TECHNOLOGIES, INC.
Thank You and Contact Information




                                                       Microsoft Gold Partner

                                                       •   5x Federal Partner of
                                                           the Year
                                                       •   2x State and Local
                                                           Government Partner
                                                           of the Year
                                                       •   2011 xRM Partner of
                                                           the Year




                                   www.go-planet.com

© 2011 PLANET TECHNOLOGIES, INC.

Contenu connexe

Plus de Marie-Michelle Strah, PhD

The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...
The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...
The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...
Marie-Michelle Strah, PhD
 
Change Management and User Adoption in Hierarchical Organizations: SharePoint...
Change Management and User Adoption in Hierarchical Organizations: SharePoint...Change Management and User Adoption in Hierarchical Organizations: SharePoint...
Change Management and User Adoption in Hierarchical Organizations: SharePoint...
Marie-Michelle Strah, PhD
 

Plus de Marie-Michelle Strah, PhD (12)

Securing Microsoft Technologies for HITECH Compliance
Securing Microsoft Technologies for HITECH ComplianceSecuring Microsoft Technologies for HITECH Compliance
Securing Microsoft Technologies for HITECH Compliance
 
Consumerization of IT: Mobile Infrastructure, Support and Security
Consumerization of IT: Mobile Infrastructure, Support and SecurityConsumerization of IT: Mobile Infrastructure, Support and Security
Consumerization of IT: Mobile Infrastructure, Support and Security
 
Security and Privacy in SharePoint 2010: Healthcare
Security and Privacy in SharePoint 2010: HealthcareSecurity and Privacy in SharePoint 2010: Healthcare
Security and Privacy in SharePoint 2010: Healthcare
 
The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...
The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...
The Myth of the SharePoint Unicorn: Recruiting and Staffing SharePoint Teams ...
 
Relational Productivity Applications: SharePoint 2010 and CRM 2011
Relational Productivity Applications: SharePoint 2010 and CRM 2011Relational Productivity Applications: SharePoint 2010 and CRM 2011
Relational Productivity Applications: SharePoint 2010 and CRM 2011
 
Best Practices in Supply Chain Management: SharePoint
Best Practices in Supply Chain Management: SharePointBest Practices in Supply Chain Management: SharePoint
Best Practices in Supply Chain Management: SharePoint
 
Best Practices in SharePoint for Healthcare: US Army Medical Command
Best Practices in SharePoint for Healthcare: US Army Medical CommandBest Practices in SharePoint for Healthcare: US Army Medical Command
Best Practices in SharePoint for Healthcare: US Army Medical Command
 
Case Study for a SharePoint SDLC
Case Study for a SharePoint SDLCCase Study for a SharePoint SDLC
Case Study for a SharePoint SDLC
 
Microsoft Technologies and Work Management Success and Women in SharePoint: D...
Microsoft Technologies and Work Management Success and Women in SharePoint: D...Microsoft Technologies and Work Management Success and Women in SharePoint: D...
Microsoft Technologies and Work Management Success and Women in SharePoint: D...
 
Change Management and User Adoption in Hierarchical Organizations: SharePoint...
Change Management and User Adoption in Hierarchical Organizations: SharePoint...Change Management and User Adoption in Hierarchical Organizations: SharePoint...
Change Management and User Adoption in Hierarchical Organizations: SharePoint...
 
Tricky Fit: Knowledge Management and the DoD (Healthcare) - May 2010 Update
Tricky Fit: Knowledge Management and the DoD (Healthcare) - May 2010 UpdateTricky Fit: Knowledge Management and the DoD (Healthcare) - May 2010 Update
Tricky Fit: Knowledge Management and the DoD (Healthcare) - May 2010 Update
 
Tricky Fit: Knowledge Management and SharePoint (Healthcare)
Tricky Fit: Knowledge Management and SharePoint (Healthcare)Tricky Fit: Knowledge Management and SharePoint (Healthcare)
Tricky Fit: Knowledge Management and SharePoint (Healthcare)
 

Dernier

Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 

Dernier (20)

Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 

Security and Privacy in SharePoint 2010: Healthcare Best Practices

  • 1. Security and Privacy in SharePoint 2010: Healthcare Webinar presented by: Planet Technologies and CipherPoint Software NOVEMBER 2, 2011 © 2011 PLANET TECHNOLOGIES, INC.
  • 2. Agenda 1. Overview – Mr. Jim Hietala, CipherPoint Software 2. Security and Privacy in SharePoint 2010: Healthcare – Dr. Marie-Michelle Strah, Planet Technologies 3. CipherPoint Demo and Case Studies – Mr. Mike Fleck, CipherPoint Software 4. Q&A
  • 3. Presenters Microsoft Gold Partner • 5x Federal Partner of the Year • 2x State and Local Government Partner of the Year • 2011 xRM Partner of the Year www.go-planet.com © 2011 PLANET TECHNOLOGIES, INC.
  • 4. Objectives Objectives • Introduction: Why SharePoint for healthcare? • Context: ARRA/HITECH: INFOSEC and connected health information • Reference models: security, enterprise architecture and compliance for healthcare • Best Practices: privacy and security in Microsoft SharePoint Server 2010 © 2011 PLANET TECHNOLOGIES, INC.
  • 5. What keeps a CMIO up at night? Excerpted from John D. Halamka, MD Life as a Healthcare CIO Blog… • Unstructured data • Compliance • Security • Workforce recruitment http://geekdoctor.blogspot.com/2011/10/what-keeps-me-up-at-night-fy12- edition.html © 2011 PLANET TECHNOLOGIES, INC.
  • 6. Microsoft SharePoint in Healthcare •EHR Integration •Clinical Decision •“Meaningful Use” Support •Data Analytics •Logistics and Asset Management Practice Enterprise Management Content and Hospital Management Administration Patient Research and Engagement Collaboration •Public/Private •Web Content Partnerships Management and Outreach •Collaborative, Cross- •Patient/Veteran disciplinary Relationship care delivery Management © 2011 PLANET TECHNOLOGIES, INC.
  • 7. Planning for Security and the “Black Swan” © 2011 PLANET TECHNOLOGIES, INC.
  • 8. Privacy • Data (opt in/out) • PHI • PII “Black Swans” • Consumer Engagement • Business Associates © 2011 PLANET TECHNOLOGIES, INC.
  • 9. Enterprise Security Model ������ ������ ������ = (������ ∗ ������ ) Information Security (Collaborative Model) Equals People (all actors and agents) Times Architecture (technical, physical and administrative) © 2011 PLANET TECHNOLOGIES, INC.
  • 10. From HIPAA to HITECH…  Health Insurance Portability and Accountability Act of 1996 (HIPAA) (Pub L 104–191, 110 Stat 1936)  The Health Information Technology for Economic and Clinical Health Act (HITECH Act), enacted on February 17, 2009  American Recovery and Reinvestment Act of 2009 (ARRA) (Pub L 111-5, 123 Stat 115) © 2011 PLANET TECHNOLOGIES, INC.
  • 11. ������ = (������ ∗ ������ ) do the HITECH math… ������ ������ “Business Associates”: • Application of HIPAA Security • Legal Standards to Business Associates • Accounting • 42 USC §17931 • Administrative • Claims Processing • New Security Breach • Data Analysis Requirements • QA • 42 USC §17932(j) • Billing • Contractors • Electronic Access Mandatory for Patients 42 USC 17935(e) 45 CFR §160.103 • Prohibited Sale of PHI without Patient Authorization 42 USC Consumer Engagement §17935(d) © 2011 PLANET TECHNOLOGIES, INC.
  • 12. Complexity = Higher Risk and Costs © 2011 PLANET TECHNOLOGIES, INC.
  • 13. SOA (Service-Oriented Architecture) “Hub” Model reduces complexity and variability while maintaining collaboration and interoperability © 2011 PLANET TECHNOLOGIES, INC.
  • 14. Microsoft Connected Health Framework Business and Technical Framework (Joint Architecture) http://hce.codeplex.com/ © 2011 PLANET TECHNOLOGIES, INC.
  • 15. Security Architecture SharePoint Server 2010 Authentication Permissions Data Level Endpoint Services Hardware UPM Authorization Business Connectivity Federated ID Security Security Security Classic/Claims Groups LOB Mobile Integration Remote IIS/STS ������ ������ ������ = (������ ∗ ������ ) © 2011 PLANET TECHNOLOGIES, INC.
  • 16. Behavioral Factors: Security Architecture • #hcsm • User population challenges -clinicians -business associates -domain knowledge • “Prurient interest” • Mobile technologies ������ ������ ������ = (������ ∗ ������ ) © 2011 PLANET TECHNOLOGIES, INC.
  • 17. Enterprise Security Planning  PIA (Privacy Impact Assessment)  Encryption  Data at rest/data in motion  Perimeter topologies  Segmentation and compartmentalization of PHI/PII (logical and physical)  Wireless (RFID/Bluetooth)  Business Continuity  Backup and Recovery © 2011 PLANET TECHNOLOGIES, INC.
  • 18. Security Planning Considerations (SharePoint 2010)  Content types (PHI/PII)  Metadata and tagging (PHI/PII)  ECM/OCR  Blogs and wikis (PHI)  Digital Rights Management (DRM)  Plan permission levels and groups  Business Connectivity Services and (least privileges) – providers and Visio Services (external data business associates sources)  Plan site permissions – Excel, lists, SQL, custom data  Fine-grained permissions (item- providers level) – Integrated Windows with  Security groups (custom) constrained Kerberos  Contribute permissions © 2011 PLANET TECHNOLOGIES, INC.
  • 19. The Security Lifecycle: SharePoint Deployments Adapting the Joint Commission Continuous Process Improvement Model… Plan •Technical, Physical, Administrative Safeguards Document •Joint Commission, Policies, Procedures, IT Governance Train •Clinical, Administrative and Business Associates Track •Training, Compliance, Incidents, Access…. everything Review •Flexibility, Agility, Architect for Change © 2011 PLANET TECHNOLOGIES, INC.
  • 20. Best Practices – Proactive Security Model  Involve HIPAA/HITECH specialists early in the planning process. (This is NOT an IT problem)  Consider removing PHI from the equation. (Compartmentalization and segregation)  Evaluate the outsourcing option. Trust, but verify.  Look to experts to help with existing implementations. (Domain expertise in healthcare and clinical workflow as well as HIPAA/HITECH privacy and security)  Use connected health framework reference model  Extend SharePoint: ISVs create effective and compliant solution CipherPoint Enterprise Content Management, Administration, Total Disk Encryption, PII/508 Compliance © 2011 PLANET TECHNOLOGIES, INC.
  • 21. Comprehensive Security Model • Case Studies • SharePoint is an enabler for healthcare transformation • Introduction to CipherPoint © 2011 PLANET TECHNOLOGIES, INC.
  • 22. Thank You and Contact Information Microsoft Gold Partner • 5x Federal Partner of the Year • 2x State and Local Government Partner of the Year • 2011 xRM Partner of the Year www.go-planet.com © 2011 PLANET TECHNOLOGIES, INC.