Alight Solutions Savings Plan
ent_019e643c90b7bf15835662ea1b7e75ba
Disclosures
4
State AG · 3 jurisdictions
Incidents
1
filings grouped by incident
Max affected reported
2
as filed · State AG ME
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Alight Solutions Savings Plan
- Normalized
- alight solutions savings plan— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- 549300922ZOJZO81O050
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (4)newest first
- 🐻California State AGas victim2025-10-25
Alight Solutions notified individuals of a privacy incident on September 23, 2025, involving the inadvertent disclosure of personal information (name, SSN, address, benefit plan enrollment) to an unauthorized client contact due to human error. The recipient confirmed deletion of the data. Alight reviewed procedures, implemented additional safeguards, provided training, and offered 12 months of credit monitoring.
- 🍁Vermont State AGas victim2023-02-23
Alight Solutions, LLC reported a November 2022 security incident where an unauthorized individual accessed its corporate email environment. The attacker forwarded emails containing names, Social Security numbers, and benefit status to an external mailbox. Alight blocked access, engaged forensic investigators and federal law enforcement, and offered 24 months of Experian IdentityWorks monitoring to affected individuals.
- 🦞Maine State AGas victim2023-02-23
Alight Solutions, LLC reported an external system breach that occurred between June 1, 2022, and November 15, 2022, and was discovered on November 15, 2022. The incident compromised the names and Social Security numbers of 2 Maine residents. Affected individuals were notified on February 24, 2023, and offered 24 months of complimentary credit monitoring and identity protection services through Experian.
- 🐻California State AGas victim2019-08-20
Alight Solutions LLC reported a data security breach involving the SmartBenefits online account system. Between September 22, 2014, and June 29, 2019, system-generated emails and URLs inadvertently included participants' Social Security Numbers and dates of birth. The breach was discovered during a routine security review on May 20, 2019. Alight encrypted the data and offered two years of identity theft protection to affected individuals.