Cancer Care Group, P.C.
ent_dc84ff017a8bf511f2e12f35
Disclosures
2
HHS OCR enforcement · HHS OCR · 2 jurisdictions
Multi-filing incidents
1
incidents joining 2+ filings here
Max affected reported
55,000
nationwide · HHS OCR IN
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Cancer Care Group, P.C.
- Normalized
- cancer care— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- FEDERALHHS OCR enforcementas victim2015-08-31
Cancer Care Group, P.C. settled potential HIPAA Privacy and Security Rules violations with HHS OCR for $750,000, agreeing to adopt a corrective action plan addressing deficiencies in its compliance program, specifically regarding risk analysis and device/media controls.
- INDIANAHHS OCRas victim2012-08-28
Cancer Care Group, P.C. (Indiana radiation oncology practice) reported to HHS OCR on 2012-08-28 a Theft affecting ~55,000 current and former patients. A laptop bag containing an employee's computer and unencrypted backup media was stolen from the employee's car in July 2012. Exposed data included names, addresses, dates of birth, Social Security numbers, insurance information, and clinical information. OCR found no enterprise-wide risk analysis had been performed and no device/media control policy existed. Cancer Care settled with HHS for $750,000 and adopted a Corrective Action Plan. Breached information located on Other Portable Electronic Device.