In 2009, BCBST submitted a notice to HHS that reported 57 encrypted hard drives containing personal health information for more than one million people had been stolen from a leased facility in Tennessee.
A 2010 investigation conducted by the Office for Civil Rights found “BCBST failed to implement appropriate administrative safeguards to adequately protect information remaining at the leased facility,” according to the release.
In addition to the monetary settlement, BCBST must enact a corrective action plan for its HIPAA compliance.
More Articles on Healthcare Settlements:
N.C. Baptist Hospital Wants Employees to Cover Tax Bill From $4M Settlement
DOJ Asks Court to Finalize BCBS of Montana Antitrust Settlement
Beth Israel Medical Center in NY to Pay $13M for “Turbocharging”
At the Becker's 11th Annual IT + Revenue Cycle Conference: The Future of AI & Digital Health, taking place September 14–17 in Chicago, healthcare executives and digital leaders from across the country will come together to explore how AI, interoperability, cybersecurity, and revenue cycle innovation are transforming care delivery, strengthening financial performance, and driving the next era of digital health. Apply for complimentary registration now.