By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Health Works CollectiveHealth Works CollectiveHealth Works Collective
  • Health
    • Mental Health
  • Policy and Law
    • Global Healthcare
    • Medical Ethics
  • Medical Innovations
  • News
  • Wellness
  • Tech
Search
© 2023 HealthWorks Collective. All Rights Reserved.
Reading: HIPAA Certified vs. HIPAA Compliant
Share
Notification Show More
Font ResizerAa
Health Works CollectiveHealth Works Collective
Font ResizerAa
Search
Follow US
  • About
  • Contact
  • Privacy
© 2023 HealthWorks Collective. All Rights Reserved.
Health Works Collective > Uncategorized > HIPAA Certified vs. HIPAA Compliant
Uncategorized

HIPAA Certified vs. HIPAA Compliant

onlinetech
onlinetech
Share
3 Min Read
HIPAA Certified Data Centers?
SHARE

This is a blog post on the phrase ‘HIPAA certified’ to inform you that there is no such thing as ‘HIPAA certified.’ What’s the correct term, then? ‘HIPAA compliant.’ This means that you, as a covered entity, or business associate, has been found in compliance with the HIPAA Security and Privacy Rules as established by the Department of Health and Human Services (HHS). You have done your due diligence by putting in policies, processes and procedures to achieve technical, administrative and physical safeguards to protect PHI.

This is a blog post on the phrase ‘HIPAA certified’ to inform you that there is no such thing as ‘HIPAA certified.’ What’s the correct term, then? ‘HIPAA compliant.’ This means that you, as a covered entity, or business associate, has been found in compliance with the HIPAA Security and Privacy Rules as established by the Department of Health and Human Services (HHS). You have done your due diligence by putting in policies, processes and procedures to achieve technical, administrative and physical safeguards to protect PHI.

The HHS does recognize any ‘HIPAA certification’ program as legitimate. When they come to inspect and audit, they will likely not care if you have a ‘HIPAA certified’ seal on your website. They care about the security and design of your controls to protect PHI to the best of your ability, and the actual policies and procedures your organization abides by.

While many use ‘certified’ and ‘compliant’ interchangeably to mean the same thing, they cannot be used to describe data centers, hosting providers or any service provider acting as a business associate to a covered entity that needs to achieve their own compliance. For example, it’s not ‘HIPAA certified data centers,’ it’s ‘HIPAA compliant data centers.’ Or ‘HIPAA compliant hosting,’ not ‘HIPAA certified hosting.’

More Read

12 Women in Health IT You Should Know
Two-Factor Authentication to Meet HIPAA and PCI Compliance
First Lawsuit Filed Against a Business Associate Under HIPAA / HITECH
Essential Steps to Take to Recover from a Slip and Fall Injury
Do’s and Dont’s of Telemedicine

This article, from ZDNet is properly titled Will Your Cloud Be HIPAA Compliant? Yet, despite its title, ‘certified’ appears everywhere in the article as it refers to data center providers:

HIPAA Certified Data Centers?

But at least one person commenting on the article seems to understand the difference:

 

So for service providers in the healthcare industry – and for healthcare organizations that contract out to them, please take heed: the correct term is “HIPAA compliant” not “HIPAA certified.” Be wary of those that claim to be certified – because chances are, they might not really know what they’re talking about at all.

TAGGED:HIPAAHIPAA certifiedhipaa compliantHIPAA compliant hostingHIPAA hosting
Share This Article
Facebook Copy Link Print
Share

Stay Connected

1.5KFollowersLike
4.5KFollowersFollow
2.8KFollowersPin
136KSubscribersSubscribe

Latest News

Dr. Marlow Hernandez on Why Value-Based Care Was Never the Final Frontier
Dr. Marlow Hernandez on Why Value-Based Care Was Never the Final Frontier
Health
May 16, 2026
How Liposomal Supplements May Support Better Nutrient Absorption
Health
May 14, 2026
man with bandage on foot
How Personal Injury Claims Intersect with Healthcare Treatment and Medical Documentation in Everyday Patient Care Settings
Health care
May 9, 2026
close up of dental examination in belo horizonte clinic
A Modern Approach to Straighter Teeth Without Disrupting Daily Life
Dental health
May 9, 2026

You Might also Like

cloud services
BusinessPolicy & LawTechnology

Evaluating and Choosing Healthcare Cloud Service Providers

April 3, 2015

Healthcare Employees Plus Social Media Can Spell T-R-O-U-B-L-E

July 13, 2014

HIPAA Hosting: What’s in a Business Associate Agreement?

November 10, 2011
icd-10 and HIPAA
FinanceHospital AdministrationMedical RecordsPublic Health

Improve Document Security in the Face of ICD-10: A HIPAA Checklist

March 29, 2014
Subscribe
Subscribe to our newsletter to get our newest articles instantly!
Follow US
© 2008-2025 HealthWorks Collective. All Rights Reserved.
  • About
  • Contact
  • Privacy
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?