Third Party Index

Snapshot 15463

Document
Trust center
URL
https://trust.cantatahealth.com/
Fetched
HTTP status
200
Content type
text/html
Fetch mode
browser
Size
98839 bytes
SHA-256 (raw)
9dc64e109b80ed559aff63df69ab16f6b3b16398a0ed9c5d1d97422645f996ea
SHA-256 (normalized text)
249c692b459bd4dd618c4f55f856bd2b9929ad6ad2148895d66986ba72ee2bb5

Normalized text

Scripts and page chrome removed; this is what change detection compares.

Skip to navigationSkip to main content
Cantata Health Solutions
At Cantata Health Solutions, safeguarding the confidentiality, integrity, and availability of customer data is one of our highest priorities. Security is embedded into every layer of our operations—from product design to infrastructure management and day-to-day business processes.
Our approach to security is both proactive and continuous, built around industry standards and best practices such as SOC 2, HIPAA, ISO 27001, NIST frameworks, and participation in GovRAMP’s Progressing Security Snapshot Program. We combine advanced technical controls with strong governance to maintain a resilient and trustworthy environment.
[email protected]
Privacy PolicyOpens in new tab
Compliance
SOC 2
HIPAA
ISO 27001:2022
ISO 27001:2013
GovRAMP – Progressing
NIST 800-53
Resources
View all
Compliance Reports
Cantata Health SOC 2 Type II Report – 2025
Cantata Health SOC 2 Type II Report – 2024
Cantata Health SOC 2 Type II Report – 2023
Cantata Health SOC 3 Report – 2025
View 1 more
Security Assessments
Cantata Health Arize Application Security Assessment Attestation – May 2026
Cantata Health GOSH Application Security Assessment Attestation – May 2026
Cantata Health IMA Application Security Assessment Attestation – May 2026
Cantata Health Meta Application Security Assessment Attestation – May 2026
View 1 more
Controls
View all
Infrastructure security
Unique production database authentication enforced
Encryption key access restricted
Unique account authentication enforced
View 12 more Infrastructure security controls
Organizational security
Visitor procedures enforced
Product security
Control self-assessments conducted
Data transmission encrypted
Vulnerability and system monitoring procedures established
View 1 more Product security control
Internal security procedures
Continuity and Disaster Recovery plans established
Production deployment access restricted
Development lifecycle established
View 7 more Internal security procedures controls
Data and privacy
Data retention procedures established
Data classification policy established
Data deletion requests handled
View 15 more Data and privacy controls
FAQ
Updates
View all
Compliance
Annual SOC 2 Type II Audit Completed
Published September 15, 2026
Cantata Health Solutions has completed its annual SOC 2 Type II audit. The final report is being prepared and will be added to the Compliance Reports section of our Trust Center once issued.
Compliance
Cantata Health Achieves GovRAMP Progressing Status
Published September 15, 2026
As of August 2026, Cantata Health Solutions’ Arize EHR is listed on the GovRAMP Program Participants page with a Progressing status at the Moderate impact level. This designation recognizes products that are actively working toward a GovRAMP security status. It does not mean that our assessment or verification is complete.
This milestone reflects the work completed to assess our controls, gather supporting evidence, and demonstrate our security posture. We will continue strengthening our controls and completing the remaining program requirements, with the goal of achieving GovRAMP Core verification.
View Cantata Health’s listing on the GovRAMP Program Participants page - https://govramp.org/program-participantsOpens in new tab.