All information on a HIPAA site must adhere to strict security standards. The challenge comes from the fact that this information comes from many sources and can be in multiple formats. For instance, a customer may give you information directly by filling out forms in your portal. Their doctor or imaging lab might upload files from their own system, and some of those could be images (as opposed to scalable text). Electronic signatures may also be captured. All of this must be encrypted or tokenized, readable by multiple systems, and restricted only to those who need to see it.
This level of security and organization takes a developer with experience, once that has seen the problems associated with such complex situations.