This is a clinical decision support tool. AI assists -- clinicians decide. Every AI-generated analysis requires clinician APPROVE/REVISE/REJECT before clinical use.
| Doc | Purpose |
|---|---|
| SECURITY_OVERVIEW.md | Security architecture, VPC, encryption, access control |
| DEPLOYMENT_CHECKLIST.md | Step-by-step deployment requirements and 6-month timeline |
| USER_GUIDE.md | For clinicians and researchers using the platform |
| compliance/hipaa.md | HIPAA compliance details |
| ethics/ETHICS_AND_BIAS.md | Bias detection and mitigation framework |
| Component | Requirement |
|---|---|
| Cloud | GCP organization (HIPAA-compliant) |
| Compute | Cloud Run (serverless, auto-scales) |
| Auth | Azure AD SSO |
| EHR | Epic FHIR R4 (local-only deployment for PHI) |
| Monitoring | Cloud Logging (10-year audit retention) |
Personnel: Hospital IT lead, security officer, Epic integration team, Azure AD admin, bioinformatics lead.
Timeline: 6 months -- see DEPLOYMENT_CHECKLIST.md.
See Value Proposition for metrics and Cost Analysis for breakdowns.
See also: Executive Summary | Server Registry | HIPAA Summary