ABB Inc. Active Employee Group Benefit Plan
Disclosed Jan 18, 20197 years ago6,877 affectedConfirmed
The covered entity (CE), ABB Inc. Active Employee Group Benefit Plan, contracts with BlueAdvantage Administrators of Arkansas, a business associate (BA), to be a third party administrator for the CE’s medical plan for its U.S. employees. Due to a mailing error, the BA impermissibly disclosed the protected health information (PHI) of 6,877 plan members, including member names, ID numbers, and addresses. The CE provided breach notification to HHS and the media, and the BA provided individual notification. In order to prevent a similar mistake from happening in the future, the BA reviewed and made changes to its procedures and retrained staff. The BA also cancelled the member cards and ID numbers affected by the mailing, and issued new cards and ID numbers. OCR determined that the CE had a business associate agreement in place with the BA and obtained assurances that the CE implemented the corrective actions listed above.
What is known
| People affected | 6,877 (as reported to HHS) |
|---|---|
| Disclosed | Jan 18, 2019 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Insurance · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): ABB Inc. Active Employee Group Benefit Plan (Health Plan, NC)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Jan 18, 2019 | 6,877 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.
Everything about ABB Inc. Active Employee Group Benefit Plan