US United States Department of Veterans Affairs Sep 2011 Misuse (Q9905)

From Open Risk Manual
A data breach risk event
Language Label Description Also known as
English
US United States Department of Veterans Affairs Sep 2011 Misuse
A data breach risk event

    Statements

    0 references
    September 2011
    0 references
    The Information Security Officers (ISO) were looking through the Sensitive Patient Access Report and came across an employee accessing a Veteran/employeeschart. The ISO gave the report to the Privacy Officer (PO). The PO will follow up with the employee who accessed the medical record to get a written response and authority for accessing the record. Employee admitted he looked at the record without a need to know. (English)