Skip to content

Jackson Health System

Disclosed Jul 8, 201115 years ago1,562 affectedConfirmed

Official notice

The CE’s employee removed protected health information of 1,562 patients from the CE’s premises over a period of 18 months in order to commit identity theft. The types of PHI involved in the breach included names, addresses, dates of birth, and social Security numbers. The CE notified affected individuals, HHS, and the media about the breach. It offered a year of credit monitoring to those affected. Following the breach, the CE terminated the employee and initiated an auditing program to automatically detect excessive accesses to PHI on its electronic health record system. OCR’s investigation confirmed that the appropriate notifications were made and that corrective actions steps were taken.

What is known

People affected1,562 (as reported to HHS)
DisclosedJul 8, 2011
AttackInsider
Data exposedNames, Health
SectorHealthcare · US
StatusConfirmed

Sources

Source
HHS OCR breach report (archive, resolved): Jackson Health System (Healthcare Provider, FL)ocrportal.hhs.gov · Official notice

Notices filed

WhereFiledPeople
HHS archivetotalJul 8, 20111,562

Other breaches at Jackson Health System

BreachAffected
Disclosed Feb 13, 2013Feb 13, 201313 years agoLost or stolen device1,471
History of this record
  • 2026-09-25 · added · backfill source

First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.

Everything about Jackson Health System

New breaches by email

Wednesdays, only in weeks with newly disclosed breaches, the largest first.

Double opt-in. Unsubscribe any time.