SECURITY & COMPLIANCE

Security first.
At every step.

Rounds handles protected health information with the same rigor you expect from your EHR. Security is foundational, not an afterthought.

01

HIPAA Compliance

Rounds meets all HIPAA requirements for protected health information. Business Associate Agreements are available for all customers.

02

SOC 2 Type II

Our infrastructure and processes are independently audited for security, availability, and confidentiality controls.

03

ISO 27001

Rounds maintains ISO 27001 certification, the international standard for information security management systems (ISMS).

PATIENT DATA PROTECTION

Protected by design.
Across every layer.

AES-256 At restTLS 1.3 In transit
01

Encryption at Rest

All patient data is encrypted at rest using AES-256 encryption in secure, redundant data centers.

02

Encryption in Transit

All data transmitted between patients, providers, and our systems is protected with TLS 1.3.

03

Access Controls

Role-based access controls ensure that patient data is only accessible to authorized clinical staff.

04

Audit Logging

Comprehensive audit trails track all access to patient data for compliance and security review.

LET’S TALK SECURITY

Questions?
We’re here to help.

Our security team is available to answer questions and provide documentation for your compliance review.

Contact our security team

security@rounds.health

Hire your first
agentic PA today.

Book a demo