Security

We do everything in our power to keep our client's data safe. We make use of industry-leading technology and security best practices to help reduce our client's risk of data breaches.

You own your data

We are the caretakers of your data, but you remain the owner. We take every step to help you manage your information securely and confidentially. And, if the time ever comes for you to leave, we will hold your data for a minimum of 90 days after cancellation.

If you'd like to transfer your info outside of Hugo Systems, you can take it anywhere you want using Hugo Systems's data download features.

Two-factor authentication

Given the sensitive nature of your data, we require all clinical users of Hugo Systems to use a time-based one-time password (TOTP). The temporary passcode expires after 30 seconds, enhancing your practice security and keeping out prying eyes.

Encryption

Whenever your data is shared with us, it’s encrypted using HTTPS (end-to-end encryption). We use a SHA-256 SSL certification for encryption in transit. All data is also backed up daily.

If that sounds like a bunch of jargon nonsense to you, here’s what it means: all data shared between you and Hugo Systems is transmitted securely. No one can read the information except for you and us. Plus, we refresh your backup every day to make sure it stays current.

Accreditations and Certifications

We choose our partners carefully. Our image hosting partner, Amazon Web Services (AWS), has achieved the following accreditations and certifications:

  • PCI DSS Level 1 (Payment Card Industry Data Security Standard)
  • ISO 27001 (Information Security Management System)
  • FIPS 140-2 (United States Federal Information Processing Standard)

Our server and database partner, Digital Ocean, has achieved the following accreditations and certifications:

  • ISO/IEC 27001:2013 (Information Security Management System)
  • PCI-DSS (Payment Card Industry Data Security Standard)

Ultra-secure facilities

Hugo Systems is hosted in state-of-the-art datacenter facilities. Physical access is controlled at the perimeter and building entry points by professional security staff using video surveillance, intrusion detection systems, and other electronic means.

High availability

We use datacenter facilities that are built in clusters. In case of failure, automated processes move customer data traffic away from the affected area and into other sites that are functioning properly. It all occurs behind the scenes, and you won’t even notice when it’s happening.

24/7/365 Monitoring

Hugo Systems has software monitoring it 24 hours a day, 7 days a week, 365 days a year. If something goes wrong, we’ll be the first to know about it, and our team will be able to assist.