The MD Anderson Cancer Center in Houston, Texas, will have to pay $4.3 million for three data breaches, according to an article on the Campus Safety website.
It is the fourth largest fine ever awarded to the HHS Office for Civil Rights for a HIPAA violation.
A federal judge imposed the fine following an investigation into three breaches linked to unencrypted devices.
The case stems from three incidents in 2012 and 2013 when an employee’s laptop was stolen at a residence and two unencrypted thumb drives went missing, leading to the possible compromise of 35,000 health records.
Sustainability as a Baseline in Healthcare Facilities
Penobscot Valley Hospital Reports Data Security Incident
Ballad Health Acquires Land for Future Unicoi County Hospital
Why Healthcare Facilities Management Is Critical to Patient Safety
Brookdale Senior Living Announces Acquisition of the Brookdale Galleria Community