Information security
Last updated:
Our activity at Care Plus medical services is committed to protecting our clients’ information security in accordance with the laws of the State of Israel and the Privacy Protection Law and its regulations, and in accordance with the International Organization for Standardization (ISO):
- ISO/IEC 27001 – standard for the security of sensitive information
- ISO/IEC 27799 – information security standard for health organisations.
To fulfil our responsibility and commitment to information security, the following rules have been defined and established:
- Access control to medical information according to role and professional need.
- Physical security to prevent actions that may result in the exposure, theft, alteration or destruction of information.
- Ensuring the confidentiality of the confidential and highly confidential medical information of the company’s clients that is stored in the company’s information systems and facilities.
- Ensuring the availability of information in the information systems for business continuity and the provision of service to clients.
- Ensuring the reliability of information throughout all of the company’s work processes, and ensuring that reliable and accurate results are provided to all clients.
- Securing the business information relevant to the company’s activity.
- Securing and keeping confidential the personal information of the company’s employees.
- Compliance with binding regulations and information-security requirements.
- Raising information-security awareness among managers and employees, and raising the professional competence of those working in information security at the company.