MAXIMUS, Inc.
bd_ca9899e2f1ee9508 · schema v1 · pii pii-v1
Full breach record for MAXIMUS, Inc. →7 incidents on fileMaximus, Inc. disclosed a cybersecurity incident where an unknown party accessed a server containing personal information for Ohio Medicaid providers. The breach occurred on May 17, 2021, and was discovered on May 19, 2021. Affected data included names, dates of birth, Social Security numbers, and DEA numbers. Maximus isolated the server, engaged forensic investigators, notified law enforcement and the Ohio Department of Medicaid, and offered 24 months of credit monitoring to affected individuals.
J jump to incidentP pin to compareR raw source
Incident timeline
May 17, 2021
Begins
May 19, 2021
Discovered
Jun 23, 2021
Filed
vs. sector median
8 wks faster
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- Massachusetts State AGbd_2e78ef3ff37c02522021-06-23Verified
- Oregon State AGbd_95fe17fd51c484b12021-06-23Verified
- South Carolina State AGbd_fc831cd1e2cfd1242021-06-26 · +3dVerified
- Montana State AGbd_15f95b9de6da42402021-06-18 · +5dVerified
Show 4 more filings ↓Show fewer ↑up to 173d gap
- Washington State AGbd_340e22bbd5965c2e2021-06-18 · +5dVerified
- Indiana State AGbd_50f3609197b402ce2021-06-18 · +5dVerified
- Maine State AGbd_c0f90fe419cd58bf2021-06-18 · +5dVerified
- Illinois State AGbd_a407b5166ea935272021-01-01 · +173dCandidate
Filing propagation · 9 filings · 9 states
View merged incident ↗Pattern: first filing Jan 1 (IL), last Jun 26 (SC) — a 176-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?
Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.