$2.14 million HIPAA settlement underscores importance of managing security risk – October 17, 2016

St. Joseph Health (SJH) has agreed to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy and Security Rules following the report that files containing protected health information (PHI) were publicly accessible through internet search engines from 2011 until 2012.  SJH will pay a settlement amount of $2,140,500 and adopt a comprehensive corrective action plan.

Content created by Office for Civil Rights (OCR)
Content last reviewed on October 14, 2016