BioIQ Inc.
bd_6b49b1c5545b2b5d · schema v1 · pii pii-v1
Full breach record for BioIQ Inc. →On April 23, 2018, BioIQ, Inc., a business associate, sent a mass email to members of TML Multistate Intergovernmental Employee Benefits Pool containing incorrect member names in the salutations, exposing the first and last names of 4,059 individuals. The breach was reported to HHS on May 25, 2018. Upon discovery, the BA retrained the responsible employee, updated email workflow procedures to include QA review, and received OCR technical assistance on its risk analysis and risk management plan. Breached information located on Email.
J jump to incidentP pin to compareR raw source
Incident timeline
Apr 23, 2018
Begins
Apr 23, 2018
Discovered
May 25, 2018
Filed
vs. sector median
7 wks faster
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.