Skip to content
Lattix

Security

Permitted access. Controls that survive diligence.

We maintain a data security, privacy, and governance program designed for the most sensitive class of information in American healthcare — and for the questionnaires that come with real diagnostic partners.

Secure and trusted

HIPAA

Protected health information is processed under a Business Associate Agreement. Minimum necessary access, workforce training, and retention aligned to the BAA.

Encryption & tenancy

In transit and at rest. Logical separation between organizations. No patient data on laptops as a matter of policy.

Audit

Every order, result, and record access is logged. Partners can see what moved, when, and under which purpose of use.

How we protect the lattice

Encryption

In transit and at rest. Keys managed under production controls. No patient data on laptops as a matter of policy.

Perimeter and tenancy

Perimeter security, penetration prevention, and logical separation between organizations and purposes of use.

Audit

Every order, result, and record access logged. Every fact traceable to its source. Retention aligned to HIPAA and the BAA.

Workforce

Least privilege, training, and a practice of compliance — not a poster. Background checks as the team grows.

Purposes of use

Treatment, payment, and operations are enforced in the product — not only in the contract.

Vendors

Subprocessors are reviewed, contracted, and listed. We do not improvise with health data.

Request documentation

BAAs, subprocessors, and security questionnaires are available to customers and serious prospects under NDA. Independent attestations follow as the program matures. Use thecontact form.

Get started today

Talk with us about labs, imaging, and putting the chart on one interchange.