| System | SSN | PII | PCI | FEDRAMP | CJIS | CUI | HIPAA & PHI*** |
|---|---|---|---|---|---|---|---|
| Zoom Phone* | Not compliant | Compliant | Compliant | Not compliant | Not compliant | Not compliant | See below |
| Zoom for Government (including Zoom Phone) | Not compliant | Compliant | Not compliant | Compliant | Compliant | Not compliant | See below |
| Analog Fax - SBC | Not compliant | Not compliant | Not compliant | Not compliant | Not compliant | Not compliant | See below |
| Analog Fax - Zoom | Not compliant | Compliant | Compliant | Not compliant | Not compliant | Not compliant | See below |
| IP Fax/Hylafax | Compliant | Compliant | Not compliant | Not compliant | Not compliant | Not compliant | See below |
| Amazon Connect** | Compliant | Compliant | Compliant | Not compliant | Not compliant | Not compliant | See below |
| Analog Phones - SBC | Not compliant | Not compliant | Not compliant | Not compliant | Not compliant | Not compliant | See below |
| Analog Phones - Zoom | Not compliant | Compliant | Not compliant | Not compliant | Not compliant | Not compliant | See below |
*Zoom Phone Common Area lines are PCI compliant with the proper restrictions. See additional info: https://documentation.its.umich.edu/node/4643
**For PCI and MFA, one of these solutions must be present: DTMF masking, managed desk phones, restricted workstations, or transfer calls to basic cell phones. For SSN, IA consultation/approval is required.
***HIPAA/PHI compliance is governed by the Michigan Medicine Corporate Compliance Office, 734-615-4400- [email protected]. Please contact this office for any compliance questions.
For more information, please refer to the Sensitive Data Guide, or consult IA.
