Summary
As organizations transition to the cloud, security and privacy are important considerations for customers. The healthcare industry is particularly concerned with safeguarding protected health information or “PHI” as many healthcare organizations are regulated by the US Health Insurance Portability and Accountability Act of 1996 (HIPAA). HIPAA establishes the security and privacy requirements for storing, transmitting, using, and disclosing PHI. As a result, cloud providers that want to provide services to HIPAA-regulated customers must comply with various HIPAA-related obligations.
Red Hat is pleased to announce that Red Hat is prepared to act as a business associate to service these specific Red Hat Online Service offerings. This enables these HIPAA-qualified services to be used by HIPAA-covered entities who are required to protect PHI, such as healthcare providers, healthcare insurance companies, and organizations associated with HIPAA covered entities. Customers who want to build healthcare applications on those Red Hat online services that are HIPAA qualified should contact your account representative to enter into the Red Hat Business Associate Agreement (BAA).
The following Red Hat Online Services are HIPAA Qualified.
Service | Note |
---|---|
Red Hat OpenShift Dedicated v. 4 | Only Customer Cloud Subscriptions* |
Red Hat OpenShift Service on AWS (ROSA) v. 4 | |
Red Hat OpenShift Service on AWS (ROSA) with Hosted Control Planes v. 4 | |
Red Hat OpenShift Application Programming Interface (API) Manager (RHOAM) v. 1.0 | Only Customer Cloud Subscriptions* |
Red Hat OpenShift Data Science (RHODS) v. 1 | Only Customer Cloud Subscriptions* |
*These Red Hat HIPAA-Qualified Online Services are limited to “Customer Cloud Subscriptions” which means they are Red Hat Online Services where the customer separately purchases or procures the underlying hosting infrastructure services from a cloud provider.
Validated and supported compliance automation profiles are available for the versions of RHEL listed below.
Products in Scope
- Red Hat OpenShift Dedicated
- Red Hat OpenShift Service on AWS
- Red Hat OpenShift API Management
- Red Hat OpenShift Data Foundation
- Red Hat OpenShift AI
- Red Hat Enterprise Linux
- 8.3
- 8.4
- 8.5
- 8.6
- 8.7
- 8.8
- 8.9
- 8.10
- Red Hat Enterprise Linux
- 9.0
- 9.1
- 9.2
- 9.3
- 9.4
Links
Additional Resources
For information about Microsoft Azure Red Hat OpenShift (ARO), please see Azure compliance documentation
Meta Data
Products
Regions
Industries