We were recently asked on Twitter whether Uber’s new service, Uber Health, was HIPAA compliant or not.
We know the HIPAA industry is vast so we can empathize with just how many people need to use cloud services in this sector.
In previous posts, we’ve covered the following cloud solutions and their capabilities for HIPAA compliance:
- Amazon CloudFront
- Apple iCloud
- Apple iMessage
- Citrix ShareFile
- Constant Contact
- Google Calendar
- Google Docs
- Google Drive
- Google Forms
- Google Hangouts
- Google Hangouts Chat
- Google Slides
- Google Voice
- Office 365
- Return Path
Today, we will determine if Uber Health offers HIPAA compliant service or not.
SEE ALSO: HIPAA Breaches and Cloud Providers
This month Uber launched a new business line called Uber Health. The service provides a ride-hailing platform available specifically to healthcare providers.
Uber Health allows covered entities like clinics, hospitals, and rehab centers assign rides for their patients and clients from a centralized dashboard. The rider is not required to have the Uber app, or even a smartphone.
Uber Health and the Business Associate Agreement
We’ve previously talked about how a Business Associate Agreement is a written contract between a Covered Entity and a Business Associate. It is required by law for HIPAA compliance.
We checked Uber Health’s site and on their homepage, they state:
Uber Health engaged HIPAA experts to design a program customized for the healthcare environment with numerous safeguards in place to protect PHI — including Business Associate Agreements with partners, technical controls and administrative processes.
In the Uber Newsroom, we also found this:
HIPAA Compliance. To ensure Uber Health meets HIPAA standards, we have been working hard to develop, implement, and customize numerous safeguards. We also worked with Clearwater Compliance, a leading HIPAA compliance company, to conduct comprehensive risk and compliance assessments. We are thus pleased to sign Business Associate Agreements (BAAs) with our healthcare partners.
Does Uber Health Offer HIPAA Compliant Service?
The Business Associate Agreement is a key component to HIPAA compliance between a covered entity and a business associate.
We were able to quickly determine that Uber Health is willing to sign Business Associate Agreements with the healthcare organizations they serve.
Conclusion: Uber Health is HIPAA compliant.