Skip to main content

HIPAA Notice

Last updated: March 11, 2026

Our Commitment to HIPAA Compliance

Guideway Care is committed to protecting the privacy and security of Protected Health Information (PHI) in accordance with the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and its implementing regulations.

How We Protect PHI

As a Business Associate to covered entities, Guideway Care implements comprehensive administrative, physical, and technical safeguards to ensure the confidentiality, integrity, and availability of all PHI we handle. These measures include:

  • End-to-end encryption for data in transit and at rest
  • Role-based access controls with multi-factor authentication
  • Regular security risk assessments and penetration testing
  • Comprehensive workforce training on HIPAA requirements
  • Documented incident response and breach notification procedures
  • SOC 2 Type II certified infrastructure and processes

Business Associate Agreements

Guideway Care enters into Business Associate Agreements (BAAs) with all covered entity clients before accessing or handling PHI. We also maintain BAAs with any subcontractors who may have access to PHI in the course of providing our services.

Use and Disclosure of PHI

We use and disclose PHI only as permitted or required by our BAAs and applicable law. PHI is used solely for the purposes of providing contracted services such as nurse triage, appointment scheduling, and patient communication on behalf of our covered entity partners.

Patient Rights

Patients whose information we process on behalf of covered entities retain all rights afforded under HIPAA, including the right to access, amend, and request an accounting of disclosures of their PHI. Requests should be directed to the relevant covered entity (your healthcare provider or health plan).

Breach Notification

In the event of a breach of unsecured PHI, Guideway Care will notify the affected covered entity without unreasonable delay and no later than 60 days following discovery, in accordance with HIPAA Breach Notification Rule requirements.

Contact Our Privacy Officer

For questions about our HIPAA compliance practices, please contact us at [email protected] or call 888.986.3638.