Our SOC2 certification is finally here! I have been waiting for so long to be able to tell this story.
Our normal workflow has historically involved the delivery of our client’s services on their own hosting services. However, as apps get more complex, and HIPAA becomes a top priority, we started to realize that this was not the way.
There are alternatives, of course. Services like Medstack are great for this. But we also wanted to be able to do this ourselves so we can have granular access to the infrastructure. So we started a long process of creating our DevSecOps unit, that now has 5-6 people in charge of our compliant production environment.
From a vision 2 years ago of being the best partner to build, maintain, host, and operate digital health apps, having this be a reality is such an amazing accomplishment. We’ve been doing everything to be HIPAA compliant for years, now we have our shiny new SOC2 Type 1 certification, and by the end of this year or beginning next, we should be SOC2 Type 2 certified.
As we also move towards operating our own product, this is a must, and all the pieces of what I think will be a really good future for our company are finally starting to come together.
Thanks to all the team that made this possible, and to our current hosting clients that have been patient with all the new policies this has required to guarantee a secure and private solutions for them.
Let’s go!