Global Upside – the leading provider of accounting, human resources, payroll, PEO, and talent acquisition services globally – announced that it now complies with the U.S. Health Insurance Portability and Accountability Act (HIPAA), which sets the national standard for protecting sensitive patient health information.
The compliance verified by a third-party audit confirms that technical; physical; and administrative safeguards, and company policies, and procedures meet HIPAA requirements.
“We are committed to helping our Clients to operate efficiently and grow, no matter what industry they are in or types of products and services they provide. Companies need to trust that their services providers are equally responsible for the security and compliance over protected health information (PHI) and this measure allows us to validate our commitment to data protection. Companies across healthcare, healthcare technology, pharmaceutical, and government industries can rest assured that we meet and exceed HIPAA’s regulatory requirements,” said Gita Bhargava, Chief Operations Officer and Co-founder, Global Upside.
Global Upside does not collect or store PHI as part of normal business operations; however, any HIPAA-subject Clients relying on Global Upside, can enter into a Business Associate Agreement (BAA) with Global Upside in which both parties agree to fully comply with the requirements of the HIPAA rules.
“We’ve been making consistent investments in implementing processes and technologies to ensure compliance with all information security and data privacy measures globally. We understand how critical data privacy is for our Clients and their employees. Our compliance with HIPAA further inspires confidence in our commitment to data and information security,” added Rohit Lohia, Managing Director, India.
Global Upside’s other certifications and compliances include:
International Organization for Standardization – ISO 27001 – The international standard for best practices in managing and processing financial information, intellectual property, employee details, and information entrusted by third parties. ISO 27001 relates to information security risk management. Global Upside received certification in December 2019.
International Organization for Standardization – ISO 20000-1: 2011 – The international standard for best practices in managing and processing financial information, intellectual property, employee details, and information entrusted by third parties. ISO 20000 relates to service management and processes. Global Upside received certification in 2018.
System and Organization Controls (SOC) /System and Organization Controls II (SOC 2) – SOC1 and SOC 2 compliance certification are an attestation standard defined by the American Institute of Certified Public Accountants (AICPA), certifying that data and information security practices, policies, and procedures for handling financial and other data are officially approved to meet the SOC trust principles criteria for security, availability, processing integrity, and confidentiality. Global Upside obtained certification in September 2019.
General Data Protection Regulation (GDPR) Compliant – GDPR carries provisions that require businesses to protect the personal data and privacy of EU citizens for transactions that occur within EU member states. It also regulates the exportation of personal data outside the EU. Global Upside first announced compliance in 2016, audited by a big 4 public accounting firm.
Global Upside is part of the Global Upside Corporation brands, which collectively provide the most comprehensive range of solutions for domestic needs, international expansion, staffing, human resources, accounting, payroll, and HR technology. Global Upside corporate brands are supporting our Clients in 150+ countries. (www.globalupside.com)