Medical Informatics Engineering, LLC
ent_019e0d8269933addb4d538d2c21ad25f
Disclosures
7
State AG · HHS OCR enforcement · HHS OCR · 6 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
3,500,000
nationwide · HHS OCR IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Medical Informatics Engineering, LLC
- Normalized
- medical informatics engineering— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 254900908SBKR5OB6Q32
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- mieweb.com
Disclosure history (7)newest first
- Indiana State AGas victim2022-03-31
Medical Informatics Engineering, Inc reported a data breach to the Indiana Attorney General. The breach occurred on 2022-02-28 and was reported on 2022-03-31. 1 Indiana residents were affected.
- FEDERALHHS OCR enforcementas victim2019-05-23
Medical Informatics Engineering, Inc. (MIE) paid $100,000 to HHS OCR to settle potential HIPAA Privacy and Security Rules violations. MIE provides software and electronic medical record services to healthcare providers in Indiana.
- INDIANAHHS OCRas victim2015-07-23
Medical Informatics Engineering, Inc. (MIE), an Indiana-based business associate providing software and electronic medical record services, reported to HHS OCR on July 23, 2015 a Hacking/IT Incident affecting approximately 3,500,000 individuals. Hackers used a compromised user ID and password to access ePHI stored on Electronic Medical Records and Network Servers. OCR found MIE failed to conduct a comprehensive risk analysis prior to the breach. MIE paid a $100,000 settlement and agreed to a corrective action plan including an enterprise-wide risk analysis.
- New Hampshire State AGas victim2015-07-15
Supplemental notice to NH AG regarding Medical Informatics Engineering (MIE) and subsidiary NoMoreClipboard. Sophisticated cyber attack occurred May 7-25, 2015, discovered May 26, 2015. Exposed PHI including names, SSNs, DOBs, medical conditions. MIE notified NH AG on July 15, 2015; individual notices mailed July 17, 2015. Investigation ongoing with FBI and forensic experts.
- California State AGas victim2015-06-26
Medical Informatics Engineering and its subsidiary NoMoreClipboard experienced a sophisticated cyber attack resulting in unauthorized access to their networks between May 7 and May 8, 2015, with additional access on May 25, 2015. The incident was discovered on May 26, 2015. Compromised data includes protected health information (PHI) such as names, addresses, dates of birth, Social Security numbers, lab results, and medical conditions. No financial or credit card information was compromised. The company engaged forensic experts, notified the FBI, and is offering 24 months of credit monitoring to affected individuals. The investigation is ongoing.
- South Carolina State AGas victim2015-06-24
Medical Informatics Engineering (d/b/a NoMoreClipboard) notified South Carolina residents of a sophisticated cyber attack. Unauthorized access to its network began May 7, 2015, and was discovered May 26, 2015. The incident compromised personal and protected health information (PHI) and PII. The company engaged forensic experts, notified the FBI, reset passwords, and offered 24 months of credit monitoring via Experian.
- Massachusetts State AGas victim2015-06-23
Medical Informatics Engineering reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2015-06-23. 17,156 Massachusetts residents were affected. The report records the breach type as electronic.