Healthcare Industry: Primed for a Large Data Breach

As we shared earlier this month, healthcare breaches in the US are on the rise: up 32% over the previous year. Larry Ponemon, chairman of the Ponemon Institute, discussed these findings with Government HealthIT, alongside Rick Kam of ID Experts, saying that a “data spill” in healthcare could be more damaging than what BP faced after [...]

US Hospital Data Breaches Rising

According to a new Ponemon study sponsored by ID Experts, the Second Annual Benchmark Study on Patient Privacy and Data Security, healthcare breaches continue to rise. The frequency of data breaches was up 32% over the previous year, averaging four data breaches per healthcare organization. To further complicate matters, 55% of healthcare organizations say they have [...]

Healthcare Organizations Lack Mobile Policies

According to a new report by the mobile health division of the Health Information and Management Systems Society (mHIMSS), the 2011 mHIMSS Mobile Technology Survey, many healthcare organizations lack mobile security policies. Mobile devices are being used on a widespread basis to access health information; 97% of healthcare organizations access data on mobile devices. Despite [...]

Senate Committee on Health Information

In a recent hearing of Senate Judiciary Committee‘s panel on privacy, technology and the law entitled “Your Health and Your Privacy: Protecting Health Information in a Digital World“, experts called for stronger federal enforcement of health data breach violations. Deven McGraw, director of the Health Privacy Project at the Center for Democracy and Technology, gave [...]

Health Net Suffers Large Breach

Health Net, who recently settled the first HIPAA-related lawsuit for the 2009 loss of a computer disk drive that put 1.5 million patients at risk, has suffered another data breach of a sizeable nature. The unexplained loss of 9 server drives at its data center has put 2 million Health Net members, employees and health [...]

First Civil Money Penalty for HIPAA Privacy Rule Violations

While 2010 saw the first HIPAA lawsuit and settlement the US Department of Health & Human Services (HHS) has now imposed a $4.3 million civil money penalty for violations of the HIPAA Privacy Rule. The penalty was levied against Cignet Health of Maryland and is the first civil money penalty issued by the Department for [...]

First HIPAA Settlement

As we previously mentioned, Connecticut Attorney General Richard Blumenthal filed the first HIPAA-related lawsuit. That lawsuit has now been settled, also a first. The settlement agreement [PDF] between the State of Connecticut and the defendants (Health Net) is the result of the loss of a computer disk drive that had unencrypted health information for 1.5 [...]

Ontario Teachers Affected by Data Breach

Who Breached: Ontario Teachers Insurance Plan Number Affected: 8,600 Information breached: Social Insurance Numbers How: laptops stolen On December 3rd, laptops containing the private information (names, address, social insurance numbers) of about 8.600 Ontario teachers was stolen from the Waterloo offices of the Ontario Teachers Insurance Plan. Those affected were notified of the breach in [...]