Dignity Health St. Rose Dominican Hospitals-DeLIma
Disclosed May 10, 20188 years ago2,174 affectedConfirmed
The covered entity (CE) reported to OCR that it had failed to renew a business associate agreement (BAA) with a vendor, resulting in a breach of protected health information (PHI), affecting 2,174 individuals. The PHI involved in the breach included names, dates of birth, medical record numbers, admission dates and times, admission diagnoses, and insurance information. The CE took a number of steps to strengthen its monitoring of BAA’s, including hiring a contract coordinator and developing a contracts review committee. The CE renewed the BAA and reviewed the BA’s procedures for safeguarding PHI. OCR’s investigation resulted in improved practices regarding safeguarding PHI.
What is known
| People affected | 2,174 (as reported to HHS) |
|---|---|
| Disclosed | May 10, 2018 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Healthcare · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Dignity Health St. Rose Dominican Hospitals-DeLIma (Healthcare Provider, NV)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | May 10, 2018 | 2,174 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.
Everything about Dignity Health St. Rose Dominican Hospitals-DeLIma