GDPR Compliance on Healthlake

0

We are trying to build a health lake and considering to leverage Amazon health lake, However our security team would like to confirm that Healthlake offers GDPR Compliance. In specific right to be forgotten requests. I dont see any specific documentation around this. Can you please let us know how AWS supports this

2回答
0
承認された回答

Yes. HL is GDPR compliant. using the delete API customers can logically delete the patient data entry in HL, which is then deleted from the media as part of the recurring job. Its a soft delete but thereafter it is deleted from media (3-13 days SLA)

AWS
回答済み 10ヶ月前
0

Hi,

On your very specific question, you should analyze S3 Find & Forget: https://aws.amazon.com/blogs/big-data/handling-data-erasure-requests-in-your-data-lake-with-amazon-s3-find-and-forget/

You should also go to AWS Artifact on your AWS console and download reports related to GDPR: https://aws.amazon.com/artifact/

Then, you should also go to AWS GDPR Center: https://aws.amazon.com/compliance/gdpr-center/ and download this extensive wp about GDPR: https://docs.aws.amazon.com/pdfs/whitepapers/latest/navigating-gdpr-compliance/navigating-gdpr-compliance.pdf

You may also want to review the Shared Security Model to see how AWS services help you achieve GDPR compliance: https://aws.amazon.com/compliance/shared-responsibility-model/

Best,

Didier

profile pictureAWS
エキスパート
回答済み 10ヶ月前
profile picture
エキスパート
レビュー済み 10ヶ月前

ログインしていません。 ログイン 回答を投稿する。

優れた回答とは、質問に明確に答え、建設的なフィードバックを提供し、質問者の専門分野におけるスキルの向上を促すものです。

質問に答えるためのガイドライン

関連するコンテンツ