ARTICLE
11 February 2015

Data Breach: Time For Plan Sponsors And Fiduciaries To Review Provider And Business Associate Agreements

A health insurance company announced today that it has been the victim of a sophisticated cyber-attack and data breach of information of current and former covered persons.
United States Employment and HR
To print this article, all you need is to be registered or login on Mondaq.com.

A health insurance company announced today that it has been the victim of a sophisticated cyber-attack and data breach of information of current and former covered persons. Names, addresses, Social Security numbers and other personal data were accessed.

This breach is a reminder for employer health plan sponsors and fiduciaries – regardless of what company provides insurance, claims management or recordkeeping services – to know their duties under the Health Insurance Portability and Accountability Act (HIPAA) and the Health Information Technology for Economic and Clinical Health Act (HITECH). They should review their health insurance contracts, HIPAA privacy and security policies, business associate agreements and administrative services agreements to understand the required reporting obligations, indemnity provisions and other issues that come into play if a data breach occurs.

The content of this article is intended to provide a general guide to the subject matter. Specialist advice should be sought about your specific circumstances.

See More Popular Content From

Mondaq uses cookies on this website. By using our website you agree to our use of cookies as set out in our Privacy Policy.

Learn More