You can use AWS to run sensitive workloads regulated under the U.S. Health Insurance Portability and Accountability Act (HIPAA). … Any AWS service can be used with a healthcare application, but only services covered by the AWS BAA can be used to store, process, and transmit Protected Health Information under HIPAA.
How do I make my AWS S3 HIPAA compliant?
- S3 Versioning should be implemented.
- S3 Buckets should be replicated or backed up.
- S3 Buckets with PHI should not be “Public” or available to everyone.
- S3 Read/Write Access should be limited to only those necessary.
Is Amazon Web Services GDPR compliant?
AWS offers a GDPR-compliant Data Processing Addendum (GDPR DPA), enabling you to comply with GDPR contractual obligations. The AWS GDPR DPA is incorporated into the AWS Service Terms. The DPA applies automatically to all customers globally who require it to comply with the GDPR.