Careview Security

Security Overview


The Careview Software Platform (Careview) uses Microsoft Azure as its Cloud Service Provider.  The five major reasons we selected Microsoft Azure were:
  1. Microsoft invests over 1 billion USD annually on cyber security research and development
  2. Microsoft employ more than 3,500 security experts who are completely focused on securing your data and privacy.
  3. Microsoft Azure has more compliance certifications than any other cloud service provider. View the comprehensive list.
  4. All information created in Careview is stored at Microsoft Data Centres located in Sydney.
  5. Microsoft Azure have SLAs in place to guarantee 99.99% service availability uptime.

Data Security

System Access

Several measures are applied to protect the information stored in Careview:

  1. Each User is provided with a unique Username and Password combination.
  2. Passwords are stored with a salt and asymmetrical encryption using a strong cryptographic cypher according to best practises.
  3. Two-factor authentication has been enabled for all Careview user accounts, using email and SMS messaging.

Please note that we strongly advise all Careview Users to create strong passwords that are a minimum of 8 characters, including combinations of letters, numbers and special characters. Ensure that your password is not the same as the password you use for your actual email login.

Data Storage and Encryption


Data created in Careview is encrypted both at rest (i.e., in storage) and during transit. All compute instances and database storage instances are kept in Azure Australian datacentres. All traffic from your web browser and from mobile devices are encrypted, routed through SSL (HTTPS protocol). Communication between compute instances and database storage within datacentres is kept within Australian infrastructure. All information created in Careview is stored onshore in Australia.

IRAP Compliance


Microsoft Azure has undergone Information Security Registered Assessor Program (IRAP) assessments and is certified on the Australian Government Certified Cloud Service List (CCSL) by the Australian Cyber Security Centre (ACSC).

For more information about the IRAP Compliance please visit this site: https://www.microsoft.com/en-us/trustcenter/compliance/ccsl.

Information Security

Careview follows the ISO 27001 framework for information security, ensuring that:
  1. security risks are assessed and appropriate controls are implemented to manage risk
  2. internal policies and controls exist and are followed for data classification and protection
  3. intrnal policies and controls exist and are followed for the prevention, detection and resolution of security vulnerabilities and issues
  4. our information security management system is reviewed on a regular basis, to ensure it is still fit for purpose and updated where required to meet changing needs and requirements.

If you have any specific queries or questions about information security, please send them to us on support@careviewapp.com
    • Related Articles

    • 2FA Access Code Generation Frequency Security Setting

      Use this Setting to control how often a Careview User Account will be prompted to enter an Access Code, when they login to the Careview Web Application. We strongly encourage you to consider changing the frequency from every 30 days to every 24 ...
    • Invoice Entry System Overview

      The Invoice Entry system is designed to enable Plan Managers to quickly enter, edit and clone a Service Provider Invoice within Careview for claiming. The Service Entry screen displays a list of all of the Invoices that you have created, excluding ...
    • Support Coordination Overview

      This section provides an overview of the functionality of the Support Coordination module. Access Support Coordination Module 1. Click the Support Coordination option in the Careview menu. 2. The menu expands to display the following sub-menu items: ...
    • Change your Organisation's 'Authorised Data Sharing Contact Information' Details

      Use the following steps to change your organisation's Authorised Data Sharing Contact Information in Careview; 1. Click on the Settings icon. 2. Under Security, click on Authorised Data Sharing Contact Information. 3. Make the required changes to the ...
    • How to Download and Extract Requested Data

      This article explains how to download and extract data that has been provided to you, as a result of a request you submitted. Once we have notified you that the requested data has been sent to the chosen secure email address, you can use the ...