This database was last updated in December 2015 ago and should only be used as a historical snapshot. More recent data on breaches affecting 500 or more people is available at the U.S. Department of Health and Human Services’ Breach Portal.

RIVERSIDE COUNTY REGIONAL MEDICAL CENTER

26520 CACTUS AVENUE MORENO VALLEY,CA 92555

Cited by the California Department of Public Health for a violation of California’s Health and Safety Code relating to medical privacy during an inspection that began on December 9, 2013. Also cited in 123 other reports.


Report ID: W0Z011.01, California Department of Public Health

Reported Entity: RIVERSIDE COUNTY REGIONAL MEDICAL CENTER

Issue:

Based on interview and record review, the facility failed to ensure the protected health information (PHI) of Patient A remained confidential. This failure led to the unauthorized disclosure of Patient A's PHI to Patient B.Findings:An interview was conducted with the facility's Compliance and Privacy Officer (CPO) on December 9, 2013, at 8:45 a.m. The CPO stated Patient B received two Notices of Action from the Medically Indigent Services Program (MISP). One of the Notices pertained to Patient A, the other to Patient B. A review of Patient A's MISP Notice was conducted. Patient A's Notice reflected the patient's name, address, date of birth client identification number and the results of the patient's application to the MISP program.A review of the facility's policy, "Breach of Patient Privacy: Reporting Requirements, (Effective date: 09/23/09)," was conducted. The facility's definition of a breach indicated, "The unauthorized acquisition, access, use, or disclosure of patient protected health information (PHI) that compromises the security or privacy of the PHI."

Outcome:

Deficiency cited by the California Department of Public Health: Health & Safety Code 1280

Related Reports:

Do you believe your privacy has been violated? Here’s what you can do: