On June 21, the payer reviewed the former employee’s email account, according to an Aug. 20 news release. The company discovered the employee was sending internal documents to their personal email address.
The payer said it launched an investigation to determine the scope of the breach. The investigation did not uncover evidence the information was being used outside the employee’s scope of employment, according to the news release.
The investigation determined patients’ names, addresses, birth dates, diagnoses and other medical-related information may have been exposed.
The company is offering individuals affected by the breach complimentary credit monitoring.
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.