Cynthia O’Murchu and Helen Warrell report: The Information Commissioner’s Office is looking into whether companies and individuals broke the law by using private investigators convicted of illegally obtaining private data. Last week the ICO was given 20 files of material by the Serious Organised Crime Agency relating to four private investigators found guilty of “blagging”…
North Dakota amends breach notification law to include medical information
V. John Ella writes: North Dakota has amended its data breach notification law to include “medical information” and “health insurance information.” See N.D. Century Code, Section 51-30-01. Amendments to the law also provide an exemption for HIPAA covered entities, business associates, or subcontractors so long as they are in compliance with breach notification requirements under title 45, Code…
Update on Department of Energy hack (updated)
More details are available about the Department of Energy hack that occurred in July. Mathew J. Schwartz reports: According to an email sent to all DOE employees on Aug. 29, information on 2,532 current employees, 3,172 former employees and seven employees on leave was stolen in the breach, which occurred in July. At the time, DOE…
GA: Nurse sentenced in ID theft for tax refund fraud case
There’s a follow-up to a breach reported previously on this blog. Melody Milton, 38, of Albany, Georgia, was sentenced on August 12, 2013, following her guilty pleas on August 23, 2012. Milton was a home health care nurse employed by Phoebe Putney Home Health Care.
Legal Issues in Keeping Patient’s Credit Card Information on File
Scott F. Roberts briefly overviews the HIPAA, PCI-DSS, and FTC risks physicians may run if they store patients’ credit card data. Read more on National Law Review.
North Dakota amends breach notification law to include medical information
V. John Ella writes: North Dakota has amended its data breach notification law to include “medical information” and “health insurance information.” See N.D. Century Code, Section 51-30-01. Amendments to the law also provide an exemption for HIPAA covered entities, business associates, or subcontractors so long as they are in compliance with breach notification requirements under title 45, Code…