Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

REDCap resides in a HIPAA compliant (21-CFR-11) protected space within the University of Utah Center for High Performance Computing (CHPC).  The production and development servers use encrypted drives and the web server, which provides access to REDCap forms, reports and other data applications, resides outside of the CHPC protected spacefor data at rest.  Data access between the database and the web server is encrypted and restricted to a monitored port.  All REDCap data, which is displayed or captured by the user interface, is encrypted using 128bit Secure Socket Layer (SSL) technology.  Within REDCap all data transactions including inserts, updates, deletions, import/export and reporting are logged.

...

The hardware that the REDCap application is installed is owned and maintained by the University of Utah CHPC ( Center for High Performance Computing ). https://chpc.utah.edu/

Physical hardware is secured in a locked and guarded facility .  login at the University of Utah Data Center. Physical access to the systems is limited to data center staff and limits CHPC staff.  Login access to the servers is restricted to CHPC and CCTS IT personnel only and only accessible after first logging into a limited VPN.

...

Application Data is backed up to disk every 3 hours, and backed up to tape every night.