US University of Pittsburgh Medical Center Jan 2006 Physical Action (Q16740)

From Open Risk Manual
A data breach risk event
Language Label Description Also known as
English
US University of Pittsburgh Medical Center Jan 2006 Physical Action
A data breach risk event

    Statements

    January 2006
    0 references
    A recent break-in at a UPMC physician office underscored the need to store computer files properly. Several personal computers were taken. One of them contained information on approximately 700 patients. UPMC immediately reported the break-in to the local authorities and performed an internal investigation. All patients whose information was stolen were notified of the theft, and UPMC offered to reimburse those patients for the cost of credit monitoring services for one year. All staff and physicians are reminded to store computer files properly. Do not store confidential patient information on a local drive on your computer (your hard drive, usually called C:). Instead, store information on your network shared drive or departmental shared folder. Adhering to this UPMC policy by storing a (English)