Click on the magnifying glass to the right. Starting typing a topic you wish to learn about

Redcap Security Features

REDCap Security 

REDCap resides in a HIPAA compliant protected space within the University of Utah Center for High Performance Computing (CHPC).  The production and development servers use encrypted drives for data at rest.  Data access between the database and the web server is encrypted and restricted to a monitored port.  All REDCap data, which is displayed or captured by the user interface, is encrypted using Secure Socket Layer (SSL) technology.  Within REDCap all data transactions including inserts, updates, deletions, import/export and reporting are logged.

Administrative Access to REDCap data

The operations and practices of the Biomedical Informatics Core (BMIC) and other University staff with regard to operational and research data are subject to Federal, State and University regulations, guidelines, policies and procedures.  The BMIC is in compliance with regards to privacy, confidentiality, intellectual property and related legal requirements.

REDCap Server Access

The hardware that the REDCap application is installed is owned and maintained by the University of Utah CHPC ( Center for High Performance Computing ). https://chpc.utah.edu/

Physical hardware is secured in a locked and guarded facility at the University of Utah Data Center. Physical access to the systems is limited to data center staff and limits CHPC staff.  Login access to the servers is restricted to CHPC and CTSI personnel only and is only accessible after first logging into a limited VPN.

REDCap Data Backup Storage

Application Data is backed up to disk every 3 hours, and backed up to tape every night.