One way for a software solution to help you be HIPAA compliant is to offer you HIPAA encryption as part of the package. But is that something you need to be HIPAA compliant? Technically, no, it’s not mandatory.
The rules state you should use encryption if it would be needed to safeguard electronic Protected Health Information (PHI). But, they do say if you don’t use encryption, you need to have an alternative to encryption that will safeguard as well as encrypting would. Or you need to have documentation with justifiable cause, as to why have taken a different tact with regard to safeguarding PHI.