AccessOne Receives HIPAA Security Rule Compliance Report and SOC 2 Type II Attestation
Independent Auditors Verify Company’s Commitment to Meeting Industry Security Standards
CHARLOTTE, N.C. – May 23, 2023 – AccessOne, a leading provider of consumer-centric patient payment tools and financing options, today announced that it has completed audits for HIPAA and SOC 2 Type II, performed by KirkpatrickPrice. This independent review of the company’s information security control structure demonstrates its compliance with the HIPAA Security Rule as well as a strong commitment to having all the necessary internal controls and processes in place to ensure high levels of security.
“Taking steps to demonstrate verified HIPAA Security Rule compliance and optimal security practices is foundational to our commitment to building client trust and confidence,” said Mark Spinner, CEO of AccessOne. “We want our partners to have peace of mind knowing that we are following industry best practices and complying with federal security requirements in protecting data.”
The Health Insurance Portability and Accountability Act (HIPAA) sets a national standard for the protection of consumers’ protected health information (PHI) and electronic protected health information (ePHI) by mandating risk management best practices and physical, administrative, and technical safeguards. HIPAA was established to provide greater transparency for individuals whose information may be at risk, and the Department of Health and Human Services’ Office for Civil Rights enforces compliance with the HIPAA Privacy, Security, and Breach Notification Rules.
The goal of the HIPAA Security Rule is to create security for ePHI by ensuring the confidentiality, integrity, and availability of ePHI, protecting against threats and unpermitted disclosures and ensuring workforce compliance.
A SOC 2 audit provides an independent, third-party validation that a service organization’s information security practices meet industry standards stipulated by the AICPA. During the audit, a service organization’s non-financial reporting controls as they relate to security, availability, processing integrity, confidentiality, and privacy of a system are tested. The SOC 2 report delivered by KirkpatrickPrice verifies the suitability of the design and operating effectiveness of AccessOne’s controls to meet the standards for these criteria.
“We determined from our review that AccessOne has good technical controls in place in accordance with industry-accepted standards, and appropriate physical and environmental controls and is in compliance with all HIPAA Security Rule standards,” said Joseph Kirkpatrick, President of KirkpatrickPrice. “KirkpatrickPrice’s independent audit determined that all access controls to ePHI stored on AccessOne systems are in compliance with HIPAA requirements, and the company follows industry best practices as laid out by the SOC 2 Trust Services Criteria.”
AccessOne, a leading healthcare fintech company, partners with health systems to provide consumer centric payment tools for the modern patient. From pay-in-full to extended payment plans, our mobile-native pathways make understanding and paying medical bills easy and affordable. Our text-to-pay platform strips out the need to remember usernames, passwords or account numbers, creating a frictionless experience that drives more payments. Our inclusive patient financing solution adds a Care Now, Pay Later component that accepts all patients, meaningfully lowering the financial barriers to receiving high-quality healthcare. AccessOne is reimagining payments for healthcare. Learn more at www.accessonepay.com or connect with us on LinkedIn.
KirkpatrickPrice is the leader in cyber security and compliance audit reports. Our experienced auditors know audits are hard, so they take complicated audits such as SOC 1, SOC 2, PCI DSS, HIPAA, HITRUST, GDPR, and ISO 27001 and make them worth it. The firm has issued over 10,000 reports to over 1,200 clients worldwide, giving its clients trusted results and the assurance they deserve. Using its Online Audit Manager, the world’s first compliance platform, KirkpatrickPrice partners its clients with an expert to guide them through the entire audit process, from audit readiness to final report. For more information, visit www.kirkpatrickprice.com, follow KirkpatrickPrice on LinkedIn, or subscribe to our YouTube channel.