Search Privacy Violations, Breaches and Complaints
This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.
VA Southeast Network (VISN 7)
Mentioned in a privacy incident report created by the U.S. Department of Veterans Affairs on February 21, 2013. Also cited in 225 other reports.
Report ID: PSETS0000085991, U.S. Department of Veterans Affairs
Reported Entity: VISN 07 Decatur, GA
Issue:
An employee/patient requested a list of individual's who has accessed her medical records. Upon review of log, requester identified 5 co-workers who had entered her electronic medical record in her department. The employees have access to CPRS in the performance of their job functions, however, they did not have authority to access these because the employee is not being seen in that clinic. Update: 02/21/13:The employee will be sent a HIPAA notification letter.
Outcome:
The employees retook Privacy & HIPAA training and submitted cert to PO. They have been re-educated to proper procedures on access to information and computer options, use and disclosure. Memo was sent to Service Chief & HR.