NCP Healthcare Management Company reported a cybersecurity incident on July 17, 2020, affecting California residents. On April 27, 2020, an unauthorized individual gained access to an employee's email account via phishing. NCP discovered the breach on May 19, 2020, terminated access, and engaged forensic investigators. The incident involved the potential exposure of patient/provider names and addresses. No evidence of actual viewing or misuse was found. NCP offered one year of Experian IdentityWorks monitoring to affected individuals.