Legal

HIPAA Compliance & Privacy Policy.

Last updated: February 11, 2026  ·  talentbyzia.com

ZIA is committed to protecting the privacy, security, and integrity of Protected Health Information ("PHI") and Electronic Protected Health Information ("ePHI") in accordance with the Health Insurance Portability and Accountability Act of 1996 ("HIPAA"), the HIPAA Privacy Rule, the HIPAA Security Rule, the HIPAA Breach Notification Rule, and applicable updates, including modifications aligned with 42 CFR Part 2 where applicable.

As a Business Associate to Covered Entities, ZIA implements administrative, physical, and technical safeguards designed to ensure the confidentiality, integrity, and availability of PHI entrusted to us.

Scope of PHI handling

ZIA may access, receive, maintain, transmit, or process PHI in connection with:

PHI is not used or disclosed except as permitted or required by our Business Associate Agreements (BAAs) and applicable law.

Administrative safeguards

ZIA maintains documented policies and procedures that include:

All workforce members are required to sign confidentiality agreements and acknowledge HIPAA compliance responsibilities.

Technical safeguards

In alignment with current regulatory guidance and evolving cybersecurity standards, ZIA implements:

Security posture is continuously evaluated to remain aligned with regulatory updates and industry best practices.

Physical safeguards

Where applicable, ZIA maintains:

Breach notification

In the event of a suspected or confirmed security incident involving PHI:

Patient rights and privacy practices

When applicable and directed by Covered Entity partners, ZIA supports:

For questions regarding individual rights, patients should contact their healthcare provider directly.

Compliance oversight

ZIA designates a Privacy and Security Officer responsible for:

For compliance inquiries, please contact our Fractional Compliance Officer:

ZIA
talentbyzia.com
hello@talentbyzia.com

ZIA. © 2026 ZIA · talentbyzia.com