Providence Health Plan
bd_0edcd716cb12c6f0 · schema v1 · pii pii-v1
Full breach record for Providence Health Plan →4 incidents on fileProvidence Health Plan (PHP) filed a supplemental notice to the Washington AG regarding a security incident involving its business associate, Zipari. Unauthorized parties accessed unencrypted enrollment documents stored in a misconfigured AWS S3 bucket in May, September, and November 2019. The data included names, dates of birth, and employer plan details. PHP identified 3,324 affected Washington residents. Zipari encrypted the files, conducted forensic audits, and offered credit monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
May 1, 2019
Begins
Apr 17, 2020
Discovered
Jun 16, 2020
Filed
vs. sector median
2 wks faster
Linked disclosures
Why this link?Regulatory filings (1) · sorted by filing gap
- HHS OCRbd_93b1313e31a9e4e72020-06-16Verified
Filing propagation · 2 filings · 2 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.