Secure healthcare infrastructure and data protection
Trust

Security & compliance

MeridiaCare AI is designed for regulated healthcare environments. We do not claim certifications we have not earned — see our roadmap below.

HIPAA readiness

  • Encryption in transit (TLS) and at rest on supported infrastructure
  • Role-based access controls and campus-level permissions
  • Comprehensive audit logging for clinical and administrative actions
  • Business Associate Agreements (BAAs) with customers

SOC 2 roadmap

  • SOC 2 Type II assessment planned — not yet completed
  • Security policies and access reviews aligned to SOC 2 control families
  • Vendor risk review for subprocessors handling customer data
  • Status updates published when audit milestones are reached

Operational security

  • US-region hosting target for production workloads
  • Secrets managed via hosting provider — not committed to source control
  • Incident response procedures for security events
  • Planned status page at status.meridiacareai.com

See MeridiaCare AI on your campuses

Talk with our team about implementation timelines, data migration, and a walkthrough tailored to your operator type.