Optum360, LLC
bd_a5b314b02c7bdb35 · schema v1 · pii pii-v1
Full breach record for Optum360, LLC →Optum, Inc. reported to HHS on 2022-05-06 a Unauthorized Access/Disclosure affecting 1584 individuals. Breached information located on Paper/Films. The business associate reported that an employee of its vendor mailed the protected health information (PHI) of 1,584 individuals to incorrect addresses. The PHI involved included names, addresses, claims information, and treatment information. The BA notified HHS, the affected individuals, and the media. In response to the breach, the BA provided complimentary credit monitoring services and implemented additional administrative and technical safeguards to better protect PHI.
Source provenance
- Source URL
- https://ocrportal.hhs.gov/ocr/breach/breach_report.jsf
DisclosureLens renders the full SEC/HHS filing inline below from the originating regulator’s public record (§4.5 fair report privilege).
- Filed at
- May 6, 2022
- Raw hash
- 4e74e8e48166c81f02d28d56374833ab7ca02121c091053dd4f28120cbcdfa10
Source filing
Reporting entity
- Name
- Optum360, LLCnorm: optum360
- Industry
- Health Care Services
Victim entity
- Name
- Optum360, LLCnorm: optum360
- Industry
- Healthcaresource default
Incident
- Discovered
- Not extracted — the OCR public portal omits it
- Materiality determined
- —
- Notification sent
- —
- Affected individuals
- 1,584
- Data types
- PHIHEALTH_BASICIDENTITY_BASIC
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1530 Data from Cloud Storage
- Threat actor
- Internal
- Regulator citations
- Notified HHS
- Third party
- via Optum, Inc.business associate
Compliance
- Compliance flags
- HHS notified
- Discovery-date grounding
- no discovery dateNo discovery date was extracted, so no notification clock can be evaluated.
- Clock breakdown
Statute Window Elapsed Threshold Status HIPAA Discovered: not extracted→ Notified: not extracted— regulatory submission HHS notified
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.