Westend Dental agrees to pay Indiana $350K and to implement a corrective action plan to settle charges of multiple HIPAA violations.
This is one of THE WORST incident responses I have ever read and I've read a lot of bad ones over the years. But it's not just an incident response disaster. They were routinely violating HIPAA privacy and security rules.
Kudos to the state of Indiana for going after the dental practice and investigating to find out all the problems.
Don't ask me what HHS OCR did, because I don't think they were ever even told about this 2020 ransomware attack.
Read more here, where you will also find the court filings I've uploaded so you can read how bad this one was:
#ransomware #compliance #HIPAA #healthsec #encryption #backup #PrivacyRule #SecurityRule #ransparency #disclosure #notification
Hospital Sisters Health System's #CFO exits as it continues to handle 'cybersecurity incident'
So much lack of #ransparency ....
@brett @allan @campuscodi @briankrebs
#databreach #probablyransomware #incidentresponse #HealthSec #cybersecurity