Encryption Software

They have: 25 posts

Joined: Nov 2002

Background:
My site would like to include forms where we can receive doctor referrals and patient information online. However, due to the HIPAA regulations (privacy act), we feel that a simple SSL certificate is not enough. My tech guy is looking into getting an encryption software to use with these pages.

Question:
HOW DOES THAT WORK? I know nothing about encryption. Do we need anything else? How does it work with html and forms? Am I going to have to learn a new language?
I'd like to be ready when my tech guy comes to me with the software and says, "Let's get started."

Thanks

Suzanne's picture

She has: 5,507 posts

Joined: Feb 2000

A simple SSL certificate is not enough? Interesting.

PGP is another option (pretty good privacy), can use it in conjunction with a secure server. Best thing would be to keep the actual client information on a different system, and use a special ID for referrals and patient information, not names.

Mark Hensler's picture

He has: 4,048 posts

Joined: Aug 2000

1 - SSL isn't 'simple'

2 - If you're looking to encrypt the data before sending it, you'll have to encrypt the data on the clients machine. If you do that, the client will have the ability to see your encryption algorithm.

Mark Hensler
If there is no answer on Google, then there is no question.

Want to join the discussion? Create an account or log in if you already have one. Joining is fast, free and painless! We’ll even whisk you back here when you’ve finished.