
HIPAA CompliantSelf-Service Analytics on PHI — Without the Risk
2026 HIPAA Security Rule update: New requirements for ePHI access controls and audit logging take effect this year. Preset already meets these standards.
One Platform, Multiple Regulatory Frameworks

HIPAA
Healthcare data compliance

SOC 2 Type 2
Security & availability certified
PCI-DSS Level 2
Payment card data protection
Your PHI Stays Where It Belongs
PHI never leaves your warehouse
Preset queries your database directly and returns results in real time. No data is extracted, copied, or cached outside your security perimeter.
Only metadata lives in Preset
Dashboard definitions, chart configurations, and user permissions — that's all Preset stores. Your actual data stays exactly where it is.
Your security controls stay in charge
Database-level permissions, VPC rules, and network policies continue to govern access. Preset operates within the boundaries you've already set.
Query result caching (AWS Elasticache) uses workspace-specific AES-128 encryption and expires after 24 hours by default. Caching can be disabled entirely for sensitive datasets.
Transform PHI Into Actionable Insights
Healthcare Providers
Hospitals and clinics analyzing patient outcomes, resource utilization, and operational efficiency to improve care delivery.
Insurance Companies
Payers evaluating claims data, provider performance, and member engagement to optimize costs and outcomes.
Pharmaceutical Companies
Research teams analyzing clinical trial data, drug effectiveness, and real-world evidence for better treatments.
Digital Health Startups
Telehealth platforms monitoring user engagement, health metrics, and treatment adherence at scale.
Medical Research Institutions
Organizations studying population health trends, treatment efficacy, and advancing medical knowledge.
Health IT Vendors
Software companies embedding analytics into their healthcare products to deliver data-driven value.
Enterprise Security Built for Healthcare
Technical Safeguards
- Encryption for data in transit with TLS 1.2+
- AES-256 encryption for all data at rest
- Role-Based Access Controls (RBAC) for fine-grained permissions
- Row-level security for granular data access
- SSO/SAML integration with your identity provider
- Multi-factor authentication (MFA) enforcement
Administrative Safeguards
- Business Associate Agreement (BAA) available
- Regular third-party penetration testing
- Continuous compliance monitoring with Vanta
- Comprehensive audit logging and monitoring
- Secure Software Development Lifecycle (SDLC)
- Employee security training and background checks
Choose the Right Option for Your Organization
Preset Cloud
Fully managed SaaS with HIPAA-compliant infrastructure on AWS. Get started quickly with enterprise security built in.
- Multi-tenant architecture on AWS
- SOC 2, PCI-DSS, and HIPAA compliant
- Multiple deployment regions available
- Automatic updates and maintenance
Managed Private Cloud
Dedicated deployment in your own AWS or GCP environment. Your data never leaves your VPC while Preset manages everything.
- Runs in your cloud account
- VPC peering and PrivateLink support
- Customer-managed encryption keys
- Full data residency control
Unlock secure healthcare analytics with Preset
Schedule a demo to see how Preset can help your organization transform healthcare data into actionable insights while maintaining HIPAA compliance.
