Uncompromising Data Security Features
Muspell Archive is built with robust security measures to protect sensitive patient information:
- Granular Role-Based Access Control (RBAC): Muspell Archive implements fine-grained access permissions at both the user and service area levels. This ensures that only authorized personnel can access specific data based on their roles, maintaining data integrity and confidentiality.
- User-Level Audit Trails and Reporting: The system meticulously captures detailed information about all user activity, including who accessed what data and when. This comprehensive audit logging provides transparency and accountability, crucial for security monitoring and incident response. Specific filters allow tracking activity by username, patient name, source system, and duration.
- Unique Data Isolation: To prevent unauthorized access and commingling of data, Muspell Archive isolates data from other information stored within the archival solution, enhancing security.
- Access-Restricted Charts: Sensitive patient data is protected with specific restrictions, limiting access only to authorized personnel.
- Single Sign-On (SSO) with EHRs: Muspell Archive allows users to authenticate once to access data, supporting single sign-on with EHRs, including SMART on FHIR® in-app launch. This seamless integration means clinicians never have to leave Epic to access legacy patient data, improving workflow efficiency without compromising security.
- Cloud-Native Security: Hosted on secure cloud infrastructure, Muspell Archive ensures data is stored with robust encryption and multi-layered access controls. Documents uploaded to the archive are stored in S3.