Lost, unencrypted USB thumb drive impacts more than 50k Medicaid providers

Share this article:

A government contractor in charge of building North Carolina's Medicaid billing system lost a USB thumb drive containing the personal information of thousands of Medicaid providers nationwide.

How many victims? 1,182 North Carolina providers were affected, but the personal information of more than 50,000 providers nationwide was compromised.

What type of personal information? Provider data included full names, Social Security numbers, addresses, and dates of birth. No patient information was included.

What happened? A USB thumb drive containing the sensitive data belonging to the North Carolina Department of Health and Human Services was lost by an employee of Falls Church, Va.-based CSC (Computer Sciences Corporation) while it was being delivered between facilities.

What was the response? CSC was told by the state department to perform an outside review of its security. The company said that affected providers would be notified this week.

Details: According to a CSC spokesperson, the employee who misplaced the thumb drive worked on the new Medicaid billing system and is currently on administrative leave. An investigation is currently taking place into the matter. CSC has set up a dedicated hotline where providers can reach out with any inquiries.

Quote: “I have instructed CSC that North Carolina expects an independent third-party assessment to assure CSC's adherence to required security standards,” Aldona Wos, DHHS secretary, said in a statement.

Source: www.wral.com, WRAL TV, Medicaid contractor loses provider's personal information,” March 8, 2013.

Share this article:
You must be a registered member of SC Magazine to post a comment.

Sign up to our newsletters

POLL

More in The Data Breach Blog

Backup hard drive stolen from law firm contained personal info

Social security numbers were among the information on a backup hard drive that was stolen from an employee of Imhoff and Associates, PC.

POS malware infections at two OTTO pizzeria locations in Maine

About 900 customers at two OTTO pizzeria locations in Portland, Maine, had payment card data compromised after POS malware was discovered on terminals.

Los Angeles-based health system breached; more than 500 patients affected

Personal information on more than 500 Cedars-Sinai Health System patients was compromised after a laptop was stolen from an employee's home.