This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.

Phoenix VA Health Care System

PHOENIX AZ - 644

Mentioned in a privacy incident report created by the U.S. Department of Veterans Affairs on February 20, 2015. Also cited in 102 other reports.


Report ID: PSETS0000115696, U.S. Department of Veterans Affairs

Reported Entity: PHOENIX AZ - 644

Issue:

Today, 02/20/15, the Privacy Officer (PO) reported a privacy complaint from a Veteran/Supervisor. On 02/05/15, the Supervisor received a View Alert in CPRS to co-sign his own medical record. After contacting the physician, who did not create View Alert, reported a Report of Contact (ROC) written by Supervisors own staff. Staff noted a scheduling audit in ROC in Supervisor's chart, added Supervisors co-signature. Did not self-report chart access to Supervisor. Supervisor reports prior counseling of same staff member for inappropriate access to another staff (management also) chart within the past six months. Lack of self-reporting to any manager and prior history indicates intent to Supervisor. Incident initially reported to Chief, and then later to PO. Additional notification and investigation to ensue.

Outcome:

04/30/15: The Incident Resolution Service Team has determined that Veteran B will be sent a HIPAA notification letter due to Protected Health Information (PHI) being inappropriately accessed.

Do you believe your privacy has been violated? Here’s what you can do: