Six connected engagements that cover policy, technology, and process — brought together under one advisor instead of scattered across vendors.
We write the policies that keep client health information safe — and keep you compliant with BC's PIPA and Canada's PIPEDA. Includes a privacy policy, an information security policy, and staff-facing guidance in plain language.
Intune, Purview and Defender configured to lock down devices, encrypt data in transit, and catch breaches before they spread. We tune conditional access and retention to your practice's real workflow.
Clear, practical device policies for contractors and BYOD staff — password rules, encryption, screen locks, no jailbroken phones. Enforced through Intune, not just a PDF nobody reads.
A step-by-step plan for the day you hope never comes, so your team knows exactly who to call, what to say, and what to lock down first.
Keep client data on Canadian soil and retained for exactly as long as regulations require — no more, no less. We audit your current storage and migrate what needs to move.
Move off fragile spreadsheets onto secure, auditable systems that scale with your practice, without a disruptive platform overhaul.
We map your tools, data flows, and gaps against PIPA/PIPEDA.
Policies and safeguards sized to your practice, not a hospital system.
We configure Microsoft 365, devices, and workflows with your team.
Annual audits keep you compliant as regulations and your practice evolve.
Book a free 30-minute consultation. We'll review your current setup and outline where the risks are.
Vancouver, BC, Canada · hello@sitkalabs.ca