> ## Documentation Index
> Fetch the complete documentation index at: https://docs.iru.com/llms.txt
> Use this file to discover all available pages before exploring further.

# HIPAA Compliance

> How Iru supports HIPAA compliance for healthcare organizations: security controls, data protection measures, and Iru's role with PHI and BAAs.

### HIPAA Compliance

The Health Insurance Portability and Accountability Act (HIPAA) Security Rule defines a series of administrative, technical, and physical security procedures for covered entities to use to assure the confidentiality, integrity, and availability of electronically-protected health information.

### Do I need a Business Associate Agreement with Iru?

Iru does not store or manage Protected Health Information (PHI) on behalf of customers. As a result, we do not act as a business associate under HIPAA, and a Business Associate Agreement (BAA) is not required.

### Can Iru help my organization become HIPAA compliant?

Yes! As a [CIS partner](https://www.cisecurity.org/partner/iru-inc), Iru can help you employ CIS benchmarks to securely configure workstations used to manage electronic protected health information and be a major component of your HIPAA compliance plan.
