Privacy Policy for Cloud Service Networks Inc.
Effective Date: October 22, 2024
At Cloud Service Networks Inc., we are committed to safeguarding the privacy and security of the information we collect, store, and transmit in the course of providing telecommunications services. This Privacy Policy outlines how we handle Protected Health Information (PHI) and Personally Identifiable Information (PII) in compliance with data protection regulations, including the Health Insurance Portability and Accountability Act (HIPAA) and applicable state privacy laws.
1. Scope
This Privacy Policy applies to all information collected by Cloud Service Networks Inc. in the course of providing services to our clients, including healthcare providers, and governs the use, disclosure, and protection of PHI and PII.
2. Definitions
- Protected Health Information (PHI): Any information about an individual’s health status, healthcare services, or payment for healthcare services that can be used to identify that individual.
- Personally Identifiable Information (PII): Any information that can be used to identify an individual, such as names, addresses, social security numbers, and other identifiers.
- Telecommunications Services: The services provided by our company, including data transmission, storage, and secure communication services that may involve handling PHI or PII.
3. Information Collection and Use
We collect PHI/PII in the course of providing telecommunications services to our clients. The information we collect may include:
- Transmission of Data: PHI/PII that is transmitted through our network as part of client communications.
- Storage of Data: PHI/PII that may be temporarily stored on our systems during data transfers.
We collect and use this information solely to provide our services, in compliance with applicable privacy and security regulations.
4. Data Security
We are committed to protecting the confidentiality, integrity, and availability of PHI/PII. To that end, we implement the following security measures:
- Encryption: All PHI/PII transmitted or stored by Cloud Service Networks Inc. is encrypted to prevent unauthorized access.
- Access Controls: We restrict access to PHI/PII to authorized personnel who need access to perform their job functions.
- Network Security: We use secure communication protocols and maintain network firewalls to safeguard the information in transit.
5. Data Sharing and Disclosure
We do not sell, share, or disclose PHI/PII except in the following circumstances:
- With Client Authorization: We may share PHI/PII as directed by our clients or as part of their healthcare services, provided that the disclosure complies with applicable laws.
- As Required by Law: We may disclose PHI/PII when required by law, such as in response to a court order or regulatory mandate.
No phone/mobile number information will be shared with third parties/affiliates for marketing/promotional purposes. All the above categories exclude text messaging originator opt-in data and consent; this information will not be shared with any third parties.
6. Breach Notification
In the event of a data breach that results in the unauthorized access, use, or disclosure of PHI/PII, we will:
- Notify the affected clients within [Insert Timeframe] of discovering the breach.
- Provide detailed information about the breach, including the type of information involved and the corrective actions being taken.
- Assist the client in complying with breach notification requirements under HIPAA or applicable state laws.
7. Client Responsibilities
To help us protect the PHI/PII we handle, we encourage our clients to:
- Limit the PHI/PII shared with us to the minimum necessary to provide telecommunications services.
- Notify us promptly of any potential security concerns related to their data.
8. Data Retention
We retain PHI/PII only for as long as necessary to fulfill the purpose for which it was collected or as required by law. Once the information is no longer needed, it will be securely deleted or anonymized.
9. Subcontractors and Third Parties
We may engage third-party service providers to assist in delivering our telecommunications services. Any subcontractors that handle PHI/PII on our behalf are required to comply with the same privacy and security standards outlined in this Privacy Policy.
10. Rights of Individuals
We acknowledge that individuals have rights regarding their PHI/PII under applicable laws. These rights may include:
- Access: Individuals may request access to their PHI/PII held by our company.
- Amendment: Individuals may request corrections to their PHI/PII if they believe it is incorrect.
- Disclosure Accounting: Individuals may request an accounting of disclosures of their PHI/PII.
Please note that such requests should be directed to the relevant client (e.g., healthcare provider) who collected the information.
11. Changes to this Privacy Policy
We may update this Privacy Policy periodically to reflect changes in our practices or to comply with regulatory requirements. Any changes will be posted on our website, and the updated policy will include the effective date.
12. Contact Information
If you have any questions about this Privacy Policy or how we handle PHI/PII, please contact us at:
Cloud Service Networks Inc.
Address: 324 S. Wilmington St., Suite 290, Raleigh, NC 27601
Phone: (919) 763-1205
Email: support@cloudservicenetworks.com
