NavigatorMD, LLC
Security
Health plan data is some of the most sensitive information an employer holds. Securing it isn't a feature of our platform — it's a condition of being trusted with the work at all.
SOC 2 Certified
Our security program is independently audited against the SOC 2 standard, covering how client data is secured, accessed, and handled across the NavMD Insights platform and our Advisory Intelligence services.
Your data stays yours
Client data is used to deliver the analyses and reporting our clients engage us for — nothing else. We do not sell it, and we never use it as a bargaining chip with carriers, vendors, or anyone else. Independence is our business model, not a threat to it.
How we protect client data
- Encryption in transit. Data moving between you and our services is encrypted using industry-standard protocols.
- Access controls. Access to client data is limited to personnel who need it to deliver the engaged services, under authentication and role-based controls.
- HIPAA Business Associate Agreements. Where client data includes protected health information, it is processed under a written BAA in accordance with HIPAA.
- Vetted partners. Marketplace solution partners receive data only as authorized under the applicable client agreement, and transparency into utilization and results is a condition of being in the Marketplace at all.
Reporting a security concern
If you believe you've found a vulnerability in navmd.com or the NavMD Insights platform, or have a security question about working with us, contact us and we will respond promptly:
NavigatorMD, LLC
4225 W. 107th Street, Suite 7292
Overland Park, KS 66207
glenn.fisher@navmd.com