Your data,gold standard.

gold standard.
Our interoperability platform keeps patient information safe with 100% cloud hosting, HITRUST certifications, and third-party audits. Just Connect exceeds industry, HIPAA-compliant, and NIST-recommended encryption standards.
HITRUST r2. SOC 2 Type 2. HIPAA. Every year.
For all our cloud environments, Just Connect maintains HITRUST certification. For transactions on AWS and GCP, we hold the HITRUST r2 certification, the highest standard achievable, validated by a third-party auditor. We maintain a SOC 2 Type 2 report continuously, with SOC 3 available on request.
- HITRUST CSF r2
- SOC 2 Type 2
- HIPAA
- GDPR
- CCPA / CPRA
- NIST CSF
Safe data connections you can trust.
100% hosted on AWS and GCP, with BAAs in place.
| Capability | Layer | Control | Detail |
|---|---|---|---|
| Transport | Encryption | End-to-end over HTTPS and managed VPN | TLS 1.2+, forced HTTPS |
| Hosting | Isolation | Private subnets for databases and app containers | Automatic security updates |
| Authentication | Zero Trust | OAuth, salted and hashed credentials | MFA for every dashboard user |
| Resilience | Failover | Encrypted redundant backups | No interruptions during deploys |
| Assurance | Bug bounty | Public program managed by HackerOne | 500+ researchers per year |
| Monitoring | 24/7 | Dark-web and intel monitoring for compromised accounts | Assisted resolution |
Application security you can count on.
Defense in depth, from connection to dashboard.
Connection safeguards
End-to-end encryption over HTTPS, private subnet hosting, automatic endpoint updates.
Authentication
OAuth and other protocols, salted and hashed credentials, Zero Trust built on CISA guidance.
Access control
SSO, RBAC, two-factor authentication for all dashboard users and support employees.
Audit APIs
Pull every access and configuration change into your own SIEM.
Data minimization
Filters keep PHI from traveling further than a workflow requires.
Incident response
Compromised-account alerts, assisted resolution, and a public disclosure process.
Security is a partnership.
We publish a shared responsibility model, allow-listing guidance, and trust documentation so your security team knows exactly where the line is.
- Shared responsibility model
- Allow-listing guidance
- BAA templates
- SOC 3 on request
Stuff your CISO needs to see.
Request our HITRUST certificate, SOC 2 report, and penetration test summary.