Keep patient data encrypted in transit
The HIPAA Security Rule asks covered entities and their business associates to protect electronic Protected Health Information (ePHI) while it's transmitted. A VPN is one of the most effective ways to do that. PremierVPN provides the encrypted network layer: dedicated servers, a dedicated IP for access control and secure site-to-site links.
- Encryption in transit
- Dedicated servers and IPs
- Kill switch
- No activity logs
- Rated Excellent on Trustpilot
- No activity logs
- UK-based support, 24/7
- 30-day money-back guarantee
The encryption and network layer
Three building blocks for keeping ePHI confidential as it moves between your people and your systems.
Strong encryption
Traffic is encrypted between each device and the VPN server, hidden from anyone else on the network. WireGuard® uses ChaCha20-Poly1305; OpenVPN uses AES-256.
Dedicated IP
A static address that only your organisation uses. Allow-list it on the systems that hold health data and block access from anywhere else.
About dedicated IPs →Site-to-site
Connect securely to your internal business network from anywhere through a private gateway, so multi-location practices work as one network.
Secure every touchpoint of patient data
A VPN creates an encrypted tunnel that guards against eavesdropping, interception and unauthorised access to patient data in transit.
Clinics and practices
Protect staff who reach your health records system from more than one place. Data between clinic devices and your records system is encrypted, whether staff are on site, at home or travelling between sites.
Remote work and telehealth
Remote consultations are routine now, but public Wi-Fi and home networks are easy to snoop on. The VPN encrypts the connection for telehealth sessions, patient portal access and remote logins.
Multi-location organisations
Link branch offices, hospitals and remote staff through secure site-to-site tunnels. Business VPN gives you a dedicated server with central user management, so you decide exactly who has access.
Safeguards a VPN helps with
- Encryption for data in transit
- Dedicated IP for access control and allow-listing
- Kill switch to stop unencrypted traffic leaking if the tunnel drops
- No-logs policy: we don't store your activity
Infrastructure of your own
For health data we recommend dedicated infrastructure: a server and IP address that nobody outside your organisation shares.
Dedicated WireGuard® server
A private server built for you, with its own IP address and no other customers on it.
- Dedicated IP, yours alone
- A separate config for each device or member of staff
- Port forwarding to reach on-site systems
- Managed from your dashboard, no command line
Business VPN
One plan for your whole practice, with a dedicated server and central user management.
- A login for every member of staff
- Add and remove people from one dashboard
- Every protocol and every location
- Kill switch and DNS leak protection
Dedicated IP
A static IP on our network that only you use, for allow-listing your access to patient systems.
- Included with Premium VPN
- An add-on for Personal VPN
- Choose its location from your dashboard
- Set up within 24 hours
Important: a VPN is a critical part of HIPAA compliance, but it is one part of a broader security strategy. Full compliance also needs access controls, audit logging, staff training and organisational policies. PremierVPN provides the encryption and network security layer. We recommend a HIPAA compliance specialist for a complete assessment.
Questions
How does PremierVPN fit into HIPAA compliance?
PremierVPN encrypts your traffic in transit and offers dedicated servers and dedicated IPs for access control. That helps with the technical safeguards for protecting ePHI during transmission described in the HIPAA Security Rule. A VPN is one part of compliance, not the whole of it.
Do I need a dedicated IP?
We recommend one. A dedicated IP gives your staff a consistent address that nobody else shares, so you can allow-list it on the systems that hold patient data and refuse connections from anywhere else.
Will a VPN stop HIPAA violations?
Not on its own. A VPN improves security and privacy, but full HIPAA compliance also depends on your own policies and practices for protecting PHI: access controls, audit logging, staff training and more. A VPN is one layer of that strategy.
How does PremierVPN protect PHI?
It creates an encrypted tunnel for your internet traffic, so patient data can't be read by anyone on the network between your device and the VPN server while it's being transmitted.
Is it suitable for providers of all sizes?
Yes. A solo practitioner can start with a plan and a dedicated IP. A clinic or group can use Business VPN, with a login for every member of staff. Organisations that want infrastructure of their own can have a dedicated WireGuard® server.
Do you help with HIPAA compliance?
Our UK-based support team is available 24/7 to help you set up and run your VPN, including guidance on security best practice. We can't assess your organisation's overall compliance, so we recommend a HIPAA compliance specialist for that.
Protect patient data in transit
A dedicated server or a Business VPN plan, with encryption, a dedicated IP and UK-based support around the clock.