Kansas Department on Aging
ent_de51907f7492aa428d7108f1
Disclosures
2
HHS OCR · 1 jurisdiction
Incidents
—
no linked incident in sample
Max affected reported
11,000
as filed · HHS OCR KS
Leak-site claims
0
none in sample
Identity resolution
- Canonical name
- Kansas Department on Aging
- Normalized
- kansas department on aging— dedupe via name-norm; Microsoft / MSFT collapse to one row
- GLEIF LEI
- No match
- SEC EDGAR CIK
- None — not an SEC registrant
- Domain
- None on record
Disclosure history (2)newest first
- KSHHS OCRas victim2018-04-17
Kansas Department for Aging and Disability Services (KS) reported to HHS OCR on 2018-04-17 an Unauthorized Access/Disclosure affecting approximately 11,000 individuals. An employee sent ePHI — including names, addresses, dates of birth, Social Security numbers, and health insurance information — to wrong recipients from a Desktop Computer. The CE sanctioned the responsible employee, retrained staff on HIPAA rules, and OCR obtained assurances of corrective action implementation.
- KSHHS OCRas victim2012-01-19
On January 13, 2012, a laptop was stolen from an employee's vehicle at the Kansas Department on Aging (KDOA). The laptop contained ePHI of approximately 7,757 customers, including names, addresses, dates of birth, service types, case manager info, quality review dates, and staff names. KDOA filed a police report, notified HHS and affected individuals, and issued substitute notice. Post-breach, KDOA encrypted all laptops and flash drives and retrained staff. OCR determined KDOA does not meet the definition of a covered entity. Breached information located on Laptop.