MetroPlus Health Plan, Inc.
ent_1774cb9ae1b5e9d62240840f
Disclosures
2
HHS OCR · 2 jurisdictions
Incidents
—
no linked incident in sample
Max affected reported
31,980
as filed · HHS OCR FEDERAL
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- MetroPlus Health Plan, Inc.
- Normalized
- metroplus health plan— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- NEW YORKHHS OCRas victim2017-01-03
MetroPlus Health Plan reported to HHS on 2017-01-03 a Unauthorized Access/Disclosure affecting 808 individuals. Breached information located on Other. Staff members sent unencrypted files containing ePHI and demographic information to a non-business-associate vendor. The vendor destroyed the data, and the entity retrained staff, updated training, and implemented new file transfer procedures.
- FEDERALHHS OCRas victim2014-11-20
An employee of MetroPlus Health Plan, Inc. emailed unencrypted files containing the electronic protected health information (ePHI) of 31,980 members to personal and work email addresses. The exposed information included members’ names, addresses, dates of birth, and Social Security numbers. The health plan notified HHS and affected individuals, offered one year of credit monitoring, sanctioned the employee, and ensured the ePHI was deleted from the personal email account.