De-identified-data first
Where feasible, initial work begins without patient names, medical record numbers, contact information, or other direct identifiers.
Azimuth begins with the minimum operational data necessary, respects the health system’s approval path, and keeps ownership and clinical responsibility clearly defined.
Where feasible, initial work begins without patient names, medical record numbers, contact information, or other direct identifiers.
Periodic CSV, XLSX, or approved database extracts can support the first workstream while technical and security review proceeds.
When Azimuth will create, receive, maintain, or transmit protected health information on a customer’s behalf, a customer-approved business associate agreement is executed first.
The health system retains ownership of its supplied data. Azimuth retains its platform, software, algorithms, methods, templates, and workflows.
Engagements are structured around access control, confidentiality obligations, encryption in transit and at rest where applicable, incident response, and secure disposal.
Production access, automated interfaces, APIs, single sign-on, and system integrations proceed only with written scope and customer technical approval.
Azimuth provides operational analytics, workflow support, and decision-support information. The health system retains authority over clinical care, sterilization, infection prevention, policy enforcement, staffing, vendor access, purchasing, and whether instrumentation is accepted, processed, released, or used.
The fastest responsible path is not unrestricted system access. It is a governed sample, an agreed data specification, a validated output, and then a deliberate expansion approved by operational, privacy, security, procurement, and legal owners.
Request security materials