OMTI is HIPAA compliant
Most people have heard of HIPAA — the Health Insurance Portability and Accountability Act which set federal standards for protecting patients’s privacy and personal information.
While we do not handle patient records ourselves, OMTI follows the recommended procedures for handling sensitive personal data and is HIPAA compliant.

Furthermore, your data is stored on the Microsoft Cloud Platform — which is also HIPAA compliant and has additional procedures and safeguards to protect all the data on its services. And your data is encrypted when transmitted to the cloud servers for complete security.
Our HIPAA procedures
We have 7 steps we follow in-house as recommended by the US Department of Health & Human Services to comply with HIPAA. At OMTI we:
- Developed policies and procedures so that day-to-day activities comply with the HIPAA Privacy Rule.
- Designated a privacy and security officer.
- Implemented HIPAA training programs.
- Ensure channels of communication exist to report violations and breaches.
- Monitor compliance at floor level so poor compliance practices can be nipped in the bud.
- Enforce sanctions policies fairly and equally.
- Will respond promptly to identified/reported violations and breaches.
Want to know more?
In addition to our HIPAA compliance we undergo annual SOC 2 compliance audits which provide additional security and peace of mind. Read more about our SOC compliance >
If you have questions about our procedures to protect your data or if you would like a copy of any of our policies, please contact OMTI Support.