DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Ca: Rouge Valley Hospital employee involved in privacy breach charged by Securities Commission

Posted on November 24, 2014 by Dissent

OK, this is a bit different.

There’s an update to a breach at Rouge Valley Hospital that was previously noted on this blog and that has already resulted in a lawsuit.

The Canadian Press reports:

A former clerk at the Rouge Valley hospital group in southern Ontario has been charged following an investigation into the alleged misuse of confidential information from maternity patients.

The Ontario Securities Commission says that between Jan. 1, 2010 and March 31, 2014 Shaida Bandali of Pickering engaged in trading in securities without being registered to do so.

It’s alleged she breached the confidentiality policies of her employer by accessing, copying or distributing personal data of maternity patients to one or more Registered Education Savings Plan representatives.

Read more on CTV Toronto.

The Ontario Securities Commission issued the following press release:

The Ontario Securities Commission (OSC) announced today that Ms. Shaida Bandali of Pickering, Ontario has been charged with alleged breaches of the Securities Act (Ontario) following an investigation by the OSC’s Joint Serious Offences Team (JSOT) related to the misuse of confidential information at Rouge Valley Hospital.

Bandali is a former clerk at the hospital and has been charged with unregistered trading, contrary to s. 25(1) of the Securities Act.

It is alleged that between January 1, 2010 and March 31, 2014, Bandali engaged in the business of trading in securities without being registered to do so in relation to the following particulars:

Repeatedly breaching the confidentiality policies of her employer, the Rouge Valley Hospital, by accessing, copying, or distributing confidential personal data of maternity patients to one or more Registered Education Savings Plan (RESP) dealer representatives;

Creating investor lists from unauthorized access to confidential maternity patient information;

Selling investor lists drawn from unauthorized access to confidential maternity patient information to one or more RESP dealer representatives in the business of soliciting clients; and

Receiving monies for confidential maternity patient information from RESP dealer representatives without disclosing her conduct to her employer and to maternity patients.

The first court appearance for Bandali in this matter is scheduled to take place December 12, 2014 at 11:00 a.m. in Courtroom #111 at the Old City Hall – Ontario Court of Justice, 60 Queen Street West, Toronto, Ontario.

The JSOT investigation into this matter is ongoing and continues on a priority basis.

JSOT was established by the OSC as an enforcement partnership between the OSC, the Royal Canadian Mounted Police Financial Crime program and the Ontario Provincial Police Anti-Rackets Branch.  The primary objective of JSOT is to protect investors and further enhance confidence in the Canadian capital markets through effective enforcement. This is accomplished through collaborative investigations of serious violations of the law using the provisions of the Securities Act or the Criminal Code of Canada.

The mandate of the OSC is to provide protection to investors from unfair, improper or fraudulent practices and to foster fair and efficient capital markets and confidence in the capital markets. Investors are urged to check the registration of any persons or company offering an investment opportunity and to review the OSC investor materials available at http://www.osc.gov.on.ca

They don’t seem to say what penalties or consequences she could face if convicted, but their press release headline suggests the charges she faces are “quasi-criminal.”

You can access the Securities Act here if you want to read up more on the regulations and the penalties available.

Category: Uncategorized

Post navigation

← Sony Pictures hacked, entire computer system unusable – Sony denies hack (updated & corrected)
Article: Methylation array data can simultaneously identify individuals and convey protected health information: an unrecognized ethical concern →

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Masimo Manufacturing Facilities Hit by Cyberattack
  • Education giant Pearson hit by cyberattack exposing customer data
  • Star Health hacker claims sending bullets, threats to top executives: Reports
  • Nova Scotia Power hit by cyberattack, critical infrastructure targeted, no outages reported
  • Georgia hospital defeats data-tracking lawsuit
  • 60K BTC Wallets Tied to LockBit Ransomware Gang Leaked
  • UK: Legal Aid Agency hit by cyber security incident
  • Public notice for individuals affected by an information security breach in the Social Services, Health Care and Rescue Services Division of Helsinki
  • PowerSchool paid a hacker’s extortion demand, but now school district clients are being extorted anyway (3)
  • Defending Against UNC3944: Cybercrime Hardening Guidance from the Frontlines

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • The App Store Freedom Act Compromises User Privacy To Punish Big Tech
  • Florida bill requiring encryption backdoors for social media accounts has failed
  • Apple Siri Eavesdropping Payout Deadline Confirmed—How To Make A Claim
  • Privacy matters to Canadians – Privacy Commissioner of Canada marks Privacy Awareness Week with release of latest survey results
  • Missouri Clinic Must Give State AG Minor Trans Care Information
  • Georgia hospital defeats data-tracking lawsuit
  • No Postal Service Data Sharing to Deport Immigrants

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.