According to a copy of the notification letter provided to the Norwich Bulletin, an employee took patient records home to work from home, and a non-employee may have viewed them. The incident occurred from Aug. 11, 2014 to May 29. The hospital learned of the event June 20.
Affected information includes patient names, medical record number, date of treatment in the emergency department, diagnosis and treatment information.
The hospital said it has “appropriately disciplined” the employee, which includes education regarding privacy policies and procedures in maintaining patient confidentiality.
Additionally, the hospital has no evidence the affected information was improperly used in any way.
More articles on data breaches:
9 latest healthcare industry lawsuits, settlements
Lawrence General Hospital reports data breach due to missing thumb drive
3rd lawsuit filed against MIE after data hack: 5 things to know
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.