pMD Completed Annual SOC 2 and HIPAA Security Audits
The healthcare technology firm confirmed adherence to federal privacy rules and internal control standards.
Updated on Oct. 2, 2026 in Cybersecurity

Live Poll
Do you trust healthcare technology providers more when they complete annual third-party security audits?
pMD has completed its annual SOC 2 Type II and HIPAA security audits. The assessments confirm that the company's internal policies meet federal requirements for protecting patient data.
Why it matters
Regular security auditing is a critical defense for health technology firms managing sensitive data. These validations help mitigate risks in an environment where healthcare data breaches are frequent and costly.
The SOC 2 Type II audit evaluated internal controls over a 12-month period, focusing on security, availability, processing integrity, and confidentiality. The HIPAA audit independently verified adherence to the Security, Breach Notification, and Privacy Rules.
The players
pMD
A San Francisco-based healthcare technology company that provides software solutions for communication and patient data management.
Linford & Company LLP
An independent audit firm specializing in SOC, HIPAA, and other regulatory security assessments for technology companies.
The details
Linford & Company LLP conducted the security assessments for pMD. The SOC 2 Type II standard is a framework for managing data based on trust services criteria, ensuring that a system is designed to keep data secure over an extended duration rather than at a single point in time. The HIPAA audit ensures the platform complies with the federal Health Insurance Portability and Accountability Act by protecting electronic personal health information.
Timeline
2025: 772 large healthcare data breaches were recorded.
October 02, 2026: pMD announced the completion of its annual security audits.
The Tech Race
This audit completion follows a year in which 772 large-scale breaches affected nearly 140 million individuals according to the Office for Civil Rights. The move mirrors a broader industry standard where platforms must provide third-party validation to secure enterprise contracts.
These audits verify that pMD's platform meets the technical prerequisites necessary for handling sensitive patient information within the US healthcare system. While the audits are internal, they serve as the foundational security baseline for the software used by medical providers.
The takeaway
Healthcare data breaches cost an average of $6.64 million per incident, making these annual audits a vital exercise in risk management for providers. Organizations relying on third-party vendors should verify current audit status to ensure compliance with shifting privacy requirements.
Further reading
For broader trends in enterprise defense, visit Cybersecurity.
More information
View the pMD healthcare technology solutions platform for more information.
Source note: This article includes information reported by The Manila times.
Live Poll
Do you trust healthcare technology providers more when they complete annual third-party security audits?









