Security

Last updated: September 27, 2025

Our Commitment to Security

At DentalReception, we understand the critical importance of protecting your practice's sensitive information and patient data. We implement comprehensive security measures to ensure your data remains safe and secure.

1. Data Encryption

Data in Transit

  • TLS 1.3 encryption for all data transmission
  • HTTPS-only communication
  • Encrypted API connections
  • Secure WebSocket connections

Data at Rest

  • AES-256 encryption for stored data
  • Encrypted database storage
  • Secure key management
  • Encrypted backup systems

2. Access Controls

Multi-Factor Authentication

We require multi-factor authentication (MFA) for all user accounts to prevent unauthorized access.

  • Role-based access control (RBAC): Users only have access to data necessary for their role
  • Principle of least privilege: Minimal access rights are granted by default
  • Session management: Automatic logout after inactivity
  • Password requirements: Strong password policies enforced
  • Account monitoring: Suspicious activity detection and alerts

3. Infrastructure Security

Cloud Security

  • Australian-hosted cloud infrastructure
  • ISO 27001 certified data centers
  • Network firewalls and intrusion detection
  • Regular security assessments

Application Security

  • Regular security code reviews
  • Automated vulnerability scanning
  • Secure development practices
  • Third-party security audits

4. Compliance Standards

HIPAA Aware

Built with healthcare privacy principles in mind

AHPRA Aligned

Designed to meet Australian healthcare advertising standards

Australian Privacy

Compliant with Australian Privacy Principles

5. Data Backup and Recovery

  • Automated backups: Daily encrypted backups of all data
  • Geographic redundancy: Backups stored in multiple Australian locations
  • Recovery testing: Regular disaster recovery drills
  • Business continuity: Plans for service continuity during incidents
  • Retention policies: Secure backup retention and disposal

6. Incident Response

We maintain a comprehensive incident response plan that includes:

Detection & Response

  • 24/7 security monitoring
  • Automated threat detection
  • Rapid incident response team
  • Immediate containment procedures

Communication & Recovery

  • Prompt customer notification
  • Transparent incident reporting
  • Coordinated recovery efforts
  • Post-incident analysis and improvements

7. Employee Security

Human Security

We recognize that security starts with our team members.

  • Security training: Regular security awareness training for all employees
  • Background checks: Comprehensive screening for sensitive roles
  • Access reviews: Regular review and removal of unnecessary access
  • Confidentiality agreements: Strict data handling obligations
  • Incident reporting: Clear procedures for reporting security concerns

8. Reporting Security Issues

Found a Security Vulnerability?

If you discover a security vulnerability, please report it to us immediately. We take all reports seriously and will investigate promptly.

Contact Information

Security Email: [email protected]

General Contact: [email protected]

Phone: 03 7024 4084

Address: Suite 111, Level 1, M-City Shopping Centre, 2107 Dandenong Road, Clayton VIC 3168

9. Continuous Improvement

Security is an ongoing process. We continuously review and update our security measures to address new threats and incorporate industry best practices. This includes:

  • Regular security assessments and penetration testing
  • Staying current with security advisories and patches
  • Participating in security communities and threat intelligence sharing
  • Updating our security policies and procedures
  • Investing in new security technologies and training