Industry
Clinicians, vendors and devices under one policy.
A hospital has clinicians moving between shared workstations and personal tablets, vendors supporting imaging and laboratory systems, and patient data that must stay where the law says. Inlinea gives each the right door and keeps the evidence.
Context
What this sector has to answer for
Patient data falls under data protection law and sector rules on residency and access. Single-tenant hosting in your own country, or on-premises, keeps clinical data and the logs about it in one jurisdiction.
Medical device and system vendors need frequent, narrow access to the systems they support. A recorded Secure Session with a managed credential replaces the standing VPN account and the shared password.
Clinicians will use whatever device is nearest. Attested browsers and per-application limits make a personal tablet acceptable for the right applications and closed for the wrong ones.
Scenarios
The access problems this sector runs every day
- A clinician on a ward tabletThe clinical portal opens in the Workspace on an attested browser with a watermark; the finance system is not offered.
- Imaging vendor supportThe vendor opens the imaging server as a recorded Secure Session during the window you set.
- Clinics and the main hospitalRouting devices join each clinic; routes are granted by rule, with failover.
- A privacy inquiryZERA Access Logs show who opened a record system, from where, and the Browser Security Log shows what was blocked.
Deployment
Where it should run
- Inlinea Cloud, in your regionSingle-tenant, hosted in the region you choose.
- On-premisesFor health systems that keep clinical infrastructure in their own data centers.
- Dedicated sovereign environmentA named city, operated by Inlinea, for groups spanning jurisdictions.
Control mapping
The controls auditors ask about, and where they live
| Requirement | Inlinea control | Where to see it |
|---|---|---|
| Access to patient data by role | Access Rules on directory groups; visibility per group in the Workspace | Access Control, Workspace |
| Vendor access | Secure Sessions with managed credentials, time limits and Session Evidence | Secure Sessions |
| Unmanaged devices | Attested browsers, in-page controls, watermark, country and network limits | Browser Security, Access Control |
| Residency | Single-tenant in your own country or on-premises; logs and evidence stay in the tenant | Sovereignty, Trust Center |
| Accountability | Four log streams, Session Evidence replay, sign out everywhere | Insights |
Framework alignment status is published honestly in the Trust Center; controls are described here, not certifications.