Canon Business Process Services
Disclosed Apr 15, 20224 years ago1,625 affectedConfirmed
Canon Business Process Services, the business associate (BA), reported that an employee inadvertently mailed the protected health information (PHI) of 1,625 individuals to the wrong recipients. The PHI involved included names, health insurance information, claims information, and other treatment information. The BA notified HHS, affected individuals, the media, and posted substitute notice on its website. In its mitigation efforts, the BA implemented additional administrative, technical, and security safeguards to better protect its sensitive data. All staff were retrained.
What is known
| People affected | 1,625 (as reported to HHS) |
|---|---|
| Disclosed | Apr 15, 2022 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Canon Business Process Services (Business Associate, NY)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Apr 15, 2022 | 1,625 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.