Security/Privacy
With EZ-Log, patient data is private and secure.
- Both the EZ-Log web application and the PDA are password protected and secure.
- Data transmission to and from the EZ-Log server is encrypted.
- Data collected and stored in the EZ-Log database is used only as agreed upon by the patient and healthcare providers.
- Data is stored in secure data centers with systems and protocols in place to address standards for HIPAA and 21 CFR part 11.
PRIVACY OVERVIEW
Ownership and Use of Data
The infusion data collected and stored in the EZ-Log database is owned in the same manner as patient hand-written infusion data. As such, the data can only be used as agreed upon by the patient and healthcare professionals. The system's sponsor, Bayer HealthCare, has no access to the data and the database administrators (Arrowhead Electronic Healthcare) are strictly forbidden by contract and law to share any patient data with Bayer HealthCare.
Demographic Data
Patient privacy risks are minimized because EZ-Log was designed without any fields that contain demographic data. Instead, patient identification numbers are used to identify EZ-Log users. Only patient ID numbers, assigned by the clinic during the enrollment process, are displayed on the EZ-Log PDA and the EZ-Log web application. No other demographic data are stored in the EZ-Log database.
Roles
EZ-Log web application users are assigned to defined user groups, or roles. Thus the patient, clinic user, administrator, and pharmacy are given limited access to only those areas and functions of the web application that is appropriate.

|