Voicebrook
Security & Compliance

PHI is sacred. We treat it that way.

VoiceOver PRO is HIPAA-compliant and HiTrust certified. All data is encrypted in transit (TLS 1.2) and at rest (AES-256). Azure AD SSO. Insourced U.S.-based support. Deployment options that match your security posture — Voicebrook's managed Azure, your cloud tenant, or on-premises.

Quick answer

Is Voicebrook HIPAA-compliant and certified?

Yes. Voicebrook is HIPAA-compliant and HiTrust certified. Patient data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Authentication is via your organization's Azure AD / Entra ID single sign-on. Voicebrook can deploy on-premises in your environment, in your own Azure tenant, or in Voicebrook's managed Azure environment — your security posture decides. BAA and DPA are executed as part of standard onboarding.

  • HIPAA-compliant + HiTrust certified
  • TLS 1.2+ in transit, AES-256 at rest
  • Azure AD / Entra ID SSO
  • Deploy on-prem, your cloud tenant, or Voicebrook-managed

HIPAA Compliant

All data handling, storage, and transmission designed to support HIPAA-compliant use of protected health information.

HiTrust Certified

Certified against the HiTrust CSF framework — the de facto standard for healthcare information security in the U.S.

Microsoft Azure Hosted

Hosted in Microsoft Azure with enterprise-grade infrastructure controls. Cloud, hybrid, or on-premises deployment options.

Onshore Support, U.S.-based Team

All implementation, training, professional services, and support are performed by Voicebrook employees in the United States. No outsourced helpdesks, no offshore implementation partners.

Technical safeguards

The controls under the hood

Encryption in transit
TLS 1.2
Encryption at rest
AES-256
Single sign-on
Azure AD SSO
Audit logging
Comprehensive
Role-based access control
Enterprise
Downtime / offline mode
Built-in
Deployment options

Deploy where it fits your posture

Different organizations have different security models. We support three deployment patterns.

Voicebrook-managed Azure

Most enterprise customers

Server-side infrastructure delivered as a managed service from Voicebrook's Azure environment. No servers for your IT team to provision, size, or maintain. Customer footprint: desktop client on user workstations + a small (~5 GB) centralized file share for speech profile storage.

Your cloud tenant

Health systems with established cloud governance

Deploy VoiceOver PRO in your organization's existing Azure tenant. Useful when your security posture requires data residency or platform consolidation in your own cloud account.

On-premises

Federal, classified, or air-gapped environments

Voicebrook deploys and operates the platform inside your data center. Used by federal customers and security-restricted environments.

Contracting & procurement

BAA, DPA, and your paper.

Voicebrook contracts on customer paper for most enterprise engagements. Business Associate Agreement (BAA) and Data Processing Agreement (DPA) are executed as part of standard contracting alongside the master services agreement.

Standard payment terms: Net 45, with Net 60 available on request. No consumption-based pricing. Pricing capped for the full contract term — no in-term escalation.

For SOC reports, penetration test results, vendor risk assessment responses, and HiTrust certificate verification, contact our team — these are provided under NDA as part of vendor evaluation.

See the hour come back.

30-minute walkthrough with a pathology-informatics specialist — dictating real cases, with your AP system in the loop. You'll see where the time goes today, and where it comes back.

Why this matters: every report that signs out faster is a patient getting their result sooner.