1 min read

Children's Pediatric Hospital fined $3.2 million

Children's Pediatric Hospital building exterior

Children’s Pediatric Hospital in Dallas, Texas has paid a fine of $3.2 million in accordance to several breaches of the Health Insurance Portability and Accountability Act. Children’s Hospital is the seventh largest pediatric healthcare provider in the nation. This fine was a result of multiple disclosures of electronic protected health information and failure to comply with HIPAA’s security rule. Children’s was provided instructions to grant a motion for a hearing, however they denied these instructions and proceeded to settle with the penalty payment.

 

Read about Children's Pediatric Hospital HIPAA fine

On January 18, 2010 Children’s reported a breach of HIPAA to the Office of Civil rights due to the loss of a unencrypted Blackberry phone. This device contained ePHI of about 3800 individuals and went missing in the Dallas/Fort Worth International Airport. On July 5 th, 2013 reported a separate incident involving an unencrypted laptop that was stolen from Children’s containing ePHI of 2,462 individuals. Children’s hospital had implemented physical safeguards including security cameras and employee badges to limit and monitor outsider access, however necessary action was not taken to encrypt laptops and other electronic devices containing PHI. In 2007 PwC conducted a risk assessment and recommended that data encryption become a high priority and be put in place by the fourth quarter of 2008. Despite the information and recommendations from their risk assessment Children’s continued using unencrypted devices up through their most 2013 breach.

HIPAA Fines Include:

  • Failure to implement physical safeguards for all workstations that access ePHI to restrict access to unauthorized users.
  • Failure to follow third party security recommendations
  • Failure to implement policies and procedures to govern the removal of electronic devices from the workplace.

 

Try Paubox Email Suite for FREE today.
Paubox HIPAA Email Breach graphic

The Children's Hospital of Philadelphia suffers HIPAA email breach

On October 23, 2018, The Children's Hospital of Philadelphia submitted a HIPAA Email Breach to the U.S. Department of Health and Human Services...

Read More
Paubox HIPAA Email Breach logo

Phoenix Children’s Hospital reports recent phishing attack

Phoenix Children’s Hospital, which provides specialty pediatric services, released a notice January 14 to inform the public and its patients about a...

Read More
Boston Children's Health Physicians logo

Learning from the Boston Children’s Health Physicians' ransomware attack

Ransomware gang BianLian recently targeted Boston Children’s Health Physicians (BCHP), a pediatric group operating in New York and Connecticut, by...

Read More

Subscribe to Paubox Weekly

Every Friday we bring you the most important news from Paubox. Our aim is to make you smarter, faster.