MSK Group, P.C., an orthopedic healthcare provider, discovered a security event on May 7, 2018, involving unauthorized access to its computer networks and data encryption. Potentially affected data includes PHI, names, addresses, dates of birth, medical record numbers, SSNs, and driver's license numbers. The organization hired consultants, reported the incident to the FBI, and offered one year of identity theft protection to affected individuals.