Geisinger Wyoming Valley Medical Center
ent_21ca6025fb9a840e4232b43a
Disclosures
3
HHS OCR · 1 jurisdiction
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
3,101
as filed · HHS OCR PA
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Geisinger Wyoming Valley Medical Center
- Normalized
- geisinger wyoming valley medical center— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- PAHHS OCRas victim2020-05-18
Geisinger Wyoming Valley Medical Center (PA) reported to HHS on 2020-05-18 an Unauthorized Access/Disclosure affecting 805 individuals. A workforce member impermissibly accessed ePHI stored in Electronic Medical Records, including names, dates of birth, addresses, phone numbers, email addresses, Social Security numbers, diagnoses, lab results, medications, and other treatment information. The CE sanctioned the responsible employees and implemented additional administrative safeguards.
- PAHHS OCRas victim2014-01-23
Geisinger Bloomsburg Hospital reported to HHS OCR on 2014-01-23 a Loss affecting 3,101 individuals. Archived PHI on Paper/Films could not be located after the hospital was acquired by Geisinger, though copies were available. No evidence of impermissible disclosure or theft. OCR provided breach notification guidance. The CE notified the website, media, and patients, and re-trained staff on PHI safeguards and disposal. No business associate was involved.
- PAHHS OCRas victim2010-12-28
Geisinger Wyoming Valley Medical Center (PA) reported to HHS OCR on 2010-12-28 a Theft/insider misuse incident affecting 2,928 individuals. A staff physician emailed PHI—including names, addresses, dates of birth, SSNs, and medication information—to his personal home email account while working on an analysis. The CE sanctioned the physician, implemented auto-encryption for PHI emailed externally, improved physical safeguards, and retrained staff following OCR investigation. Breached information was located on Email.