On January 13, 2012, a laptop was stolen from an employee's vehicle at the Kansas Department on Aging (KDOA). The laptop contained ePHI of approximately 7,757 customers, including names, addresses, dates of birth, service types, case manager info, quality review dates, and staff names. KDOA filed a police report, notified HHS and affected individuals, and issued substitute notice. Post-breach, KDOA encrypted all laptops and flash drives and retrained staff. OCR determined KDOA does not meet the definition of a covered entity. Breached information located on Laptop.
Affected (this filing): 7,757