KAISER PERMANENTE GROUP TRUST
bd_1381d5fc32baa8eb · schema v1 · pii pii-v1
Full breach record for KAISER PERMANENTE GROUP TRUST →4 incidents on fileKaiser Permanente mistakenly emailed a list of former Northern California employees, including names and Social Security numbers, to an unauthorized recipient on August 24, 2012. The incident was discovered in late August 2012. Investigation confirmed the recipient deleted the data and did not further distribute it. No personal health information was involved. New controls were implemented to prevent recurrence.
J jump to incidentP pin to compareR raw source
Incident timeline
Aug 24, 2012
Begins
Aug 31, 2012
Discovered
Oct 29, 2012
Filed
vs. sector median
4 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.