Book a Demo

Security / Compliance and Standards

Trust Center

Compliance Built into Our Operations

Care Daily recognizes that healthcare organizations and their technology partners operate in a highly regulated environment. Our security and privacy program is designed to support compliance with applicable requirements and align our controls with established international standards.

At a glance
  • The control frameworks our program aligns to
  • How responsibility splits between Care Daily and you
  • What documentation we provide during a security review
Layered plates with a checkmark, representing an ordered compliance framework

Frameworks

What informs our controls.

Our policies, technical safeguards, operating procedures and governance practices are informed by:

HIPAAsupporting the protection of health information in the United States
GDPRsupporting privacy and data-protection requirements for individuals in the European Union
PIPEDAsupporting responsible handling of personal information in Canada
ISO/IEC 27001providing a framework for information-security governance and risk management
NISTcybersecurity and risk-management guidance
NIST AI Risk Management Frameworksupporting responsible development and operation of artificial intelligence

Ownership

Shared responsibility.

Security and compliance responsibilities may vary based on the deployment model. Care Daily maintains responsibility for the platform, analytics, infrastructure security, operational controls and services within our defined scope. Customers may retain responsibility for certain identity, access, interface and organization-specific controls.

Our goal is to give customers and partners clear control ownership, documented safeguards, and the evidence needed to support your security review.

See it in your world.

Book a demo and we will walk through exactly how Care Daily would work for you, or ask us for the documentation your security review needs.