Built entirely on Microsoft Azure’s HIPAA-eligible infrastructure. Every layer engineered for healthcare-grade security and regulatory compliance.
Signed BAA with Microsoft Azure. Physical, technical, and administrative safeguards validated through independent audits. Architected on HIPAA-eligible services from day one.
HITRUST CSF, SOC 1/2/3, ISO/IEC 27001/27017/27018, FedRAMP. Inherited through Azure’s shared responsibility model.
AES-256 at rest, TLS 1.3 in transit. Each provider’s data in their own isolated Azure container. Private Link network isolation.
Never shared with other providers, never used to train external AI models. The only training your data powers is your own ENCOUNTERai pipeline.
Embedded in Terms of Service — same approach as Practice Fusion, Athena, Epic. You don’t need a separate agreement with Microsoft.
Request complete deletion at any time. U.S.-based data residency. No third-party subcontractors. Microsoft Azure is the only infrastructure provider.