Security & Compliance

Your patients trust you with their health data. We take that responsibility seriously. ClearPath is built from the ground up with security and compliance at its core.

Certifications & Compliance

HIPAA Compliant

Full compliance with Health Insurance Portability and Accountability Act

SOC 2 Type II

Independently audited security controls

HITRUST CSF

Healthcare-specific security framework certification

PCI DSS

Payment Card Industry Data Security Standard compliant

Enterprise-Grade Security

Multiple layers of protection keep your data safe.

End-to-End Encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Your patient data is never exposed.

Secure Infrastructure

Hosted on HIPAA-compliant cloud infrastructure with redundant data centers and automatic failover.

Access Controls

Role-based access control, multi-factor authentication, and single sign-on (SSO) support.

Audit Logging

Complete audit trail of all system access and data modifications for compliance reporting.

Threat Detection

24/7 security monitoring, intrusion detection, and automated threat response.

Automatic Backups

Continuous data backup with point-in-time recovery. Your data is never lost.

Our Security Practices

Security is not just about technology — it's about processes and people. We maintain rigorous security practices across our organization.

  • Annual penetration testing by third-party security firms
  • Regular vulnerability assessments and patching
  • Employee security awareness training
  • Incident response plan and procedures
  • Vendor security assessments
  • Data retention and disposal policies

Request Security Documentation

Need our SOC 2 report, penetration test results, or security questionnaire? We're happy to provide documentation to support your vendor assessment.

Request Documentation

Business Associate Agreement

We sign a BAA with every customer. It's included with your subscription at no extra cost.

View Our BAA