UCHealth and Data Breach

December 4th, 2015 by admin Leave a reply »

UCHealth, Colorado is notifying approximately 800 patients of an internal healthcare data breach. According to the reports, an employee inappropriately accessed electronic patient files. The incident was discovered during one of the hospitals precautionary HIPAA audits.

The auditors discovered the breach and determined that the employee was accessing electronic patient records out of personal curiosity. There is no reason to believe that the employee has shared the accessed information with anyone else.

Affected information includes patient names, addresses, phone numbers, dates of birth, insurance information, and descriptions of care and treatment plans received during visits. The employee did not access Social Security numbers or other financial and billing information.

According to the statement:

UCHealth takes its obligations to protect healthcare information very seriously. This staff members employment with UCHealth has been terminated. Re-training has been given to all employees to re-emphasize that staff can only view health records of patients for whom they are actively providing care.  All employees also will continue to receive annual training on how to properly access healthcare information.

About UCHealth

UCHealth is a Front Range health system that delivers the highest quality patient care with the highest quality patient experience.  UCHealth combines Memorial Hospital, Poudre Valley Hospital, Medical Center of the Rockies, Colorado Health Medical Group, and University of Colorado Hospital into an organization dedicated to health and providing unmatched patient care in the Rocky Mountain West.

Get your personal as well as office laptops encrypted by Alertsec

Unencrypted laptops present a major risk of data loss. 80% of information theft is due to lost or stolen laptops and other equipment. About 50% of network intrusions are performed with credentials gathered from lost or stolen devices. The penalties for a data breach are severe not only in terms of the monetary fines imposed on the organization, but also the potential loss of trust from customers and suppliers. Encryption software greatly enhances the security of your organization’s data as the information is not compromised if a laptop is lost or stolen.

Alertsec Xpress is the full disk encryption service that delivers a mobile data protection system for all information stored on laptops used throughout your organization.

Leave a Reply