North Memorial Health Care
ent_2ed31a3ae5b58e2fae92ae73
Disclosures
3
HHS OCR · HHS OCR enforcement · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
21,236
nationwide · HHS OCR MN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- North Memorial Health Care
- Normalized
- north memorial health care— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (3)newest first
- MINNESOTAHHS OCRas victim2020-09-30
North Memorial Health reported to HHS on 2020-09-30 a Hacking/IT Incident affecting 21236 individuals. Breached information located on Network Server. A business associate experienced a ransomware attack affecting ePHI including names, addresses, DOBs, and treatment info.
- FEDERALHHS OCR enforcementas victim2016-03-16
North Memorial Health Care settled charges of potentially violating HIPAA Privacy and Security Rules by failing to execute a business associate agreement with a major contractor and failing to conduct an organization-wide risk analysis. The settlement includes a $1,550,000 payment and a corrective action plan.
- MINNESOTAHHS OCRas victim2011-09-27
North Memorial Health Care (MN) reported a Theft breach to HHS OCR on 2011-09-27 affecting 9,497 individuals. An unencrypted, password-protected laptop was stolen from a business associate (Accretive Health, Inc.) workforce member's locked vehicle, exposing patient ePHI. OCR found North Memorial lacked a required BA agreement and failed to complete an enterprise-wide risk analysis. North Memorial agreed to pay $1,550,000 and implement a corrective action plan. Breached information located on Laptop.