Commonwealth Health Corporation
ent_9b21e43fbea85d25e75e5617
Disclosures
1
HHS OCR · 1 jurisdiction
Multi-filing incidents
—
no multi-filing incident in sample
Max affected reported
697,800
nationwide · HHS OCR KY
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Commonwealth Health Corporation
- Normalized
- commonwealth health— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (1)newest first
Subsidiary disclosures (3)filed by group companies
◈ These filings were made by or about subsidiaries of Commonwealth Health Corporation — not by Commonwealth Health Corporation itself. Corporate relationships are mapped from GLEIF relationship records and SEC Exhibit 21 filings.
- New Hampshire State AGvia Med Center Health2017-03-24
Med Center Health, a subsidiary of Commonwealth Health Corporation, notified the NH Attorney General of an insider breach involving a former employee who inappropriately obtained billing information (names, SSNs, health insurance, diagnosis codes) of approximately 24 NH residents between Aug 2014 and Feb 2015. Discovery was Jan 4, 2017. Notification was delayed per law enforcement request until March 2017. Remediation included staff education and credit monitoring offers.
- Montana State AGvia Med Center Health2017-03-24
Med Center Health notified patients of an insider threat incident where a former employee misappropriated billing information (SSN, health insurance, diagnosis codes) on encrypted media in 2014 and 2015. The breach was discovered in Jan 2017; notification was delayed at law enforcement's request. Remediation included staff re-education and credit monitoring offers.
- Massachusetts State AGvia Med Center Health2017-03-24
Commonwealth Health Corporation/Med Center Health reported a data breach to the Massachusetts Office of Consumer Affairs and Business Regulation. The breach was reported on 2017-03-24. 60 Massachusetts residents were affected. The report records the breach type as electronic.