Building trust and accelerating healthcare innovation: responsible AI at Rightway
Managing risk with an ISO 42001 Artificial Intelligence Management System.
AI is reshaping healthcare as we know it. Companies using artificial intelligence effectively and responsibly will lead the industry and change patient lives for the better.
But in this high-stakes field, this demands trust.
Rightway's AI leadership
Rightway is at the forefront of this change. A healthcare company helping people find the doctors and medicines they need, Rightway combines smart technology with human guidance to facilitate care navigation and pharmacy benefits management (PBM).
While maintaining a human touch and ensuring its members feel they have a “doctor in the family,” the company is simultaneously deploying AI to accelerate employee productivity and let them make better decisions.
To do so responsibly, though, the company had three primary concerns:
Cybersecurity
In addition to regulated Protected Health Information (PHI), Rightway needed to protect trade secrets like its pricing strategies and proprietary approaches to benefits delivery.
Stopping data leaks stemming from AI use was critical to reduce the risk of costly penalties, reputation damage, and lost competitive advantage.
Compliance
On top of the Health Insurance Portability and Accountability Act (HIPAA), which mandates PHI security and privacy measures, Rightway had to contend with a variety of other compliance obligations. For example, it already maintains a System and Organization Controls (SOC) 2 + HITRUST attestation.
Trust
Because it serves large enterprises as customers, Rightway had to demonstrate responsible AI use to the savvy security teams evaluating it. Complex contractual requirements could hamstring the business, so Rightway took the initiative to build its own AI governance framework as a starting point.
Rightway members also rely on the company to keep their sensitive health data private.
Building an AI Management System with StackAware
To tackle the three key challenges it faced, Rightway contracted with StackAware to custom-build an ISO/IEC 42001:2023-compliant AI Management System (AIMS). We provided Rightway with:
Comprehensive regulatory and business issues analysis
Detailed risk and impact assessments
Tailored policies and procedures
and everything it needed to build and maintain an effective AIMS. Rightway also opted for a continuous monitoring and governance support retainer to avoid compliance drift and manage risk effectively over time.
“While the human touch will always remain, AI lets us guide members more effectively and efficiently. As we deployed artificial intelligence throughout the company, I was deeply concerned about data protection, privacy, and regulatory compliance. StackAware helped Rightway address all of these issues, and more. Our AI is secure, follows the rules, and truly builds patient trust.”
— Jason Melo, Head of Information Security & Technology, Rightway
Leading with confidence
With an effective AIMS in place, Rightway can:
Confidently adapt to and comply with new AI rules, cutting legal/regulatory risk.
Communicate clearly and openly with customers to boost trust.
Track performance over time and continually improve.
Identify and manage AI-specific risks.
Make better business decisions.
Building trust and speeding AI adoption in healthcare
Are you a security, technology, or business leader at an AI-powered healthcare company that needs to:
Control risk?
Stay compliant?
Build patient trust?
The StackAware team can help.