MD Anderson to pay $4.3 million settlement with OCR for HIPAA violations

Healthcare IT News: The University of Texas MD Anderson Cancer Center settled with the U.S. Department of Health and Human Services’ Office of Civil Rights for $4,348,000 for HIPAA violations, which was upheld by the HHS administrative law judge.

The fine is the fourth largest monetary settlement with OCR.

MD Anderson suffered three separate data breaches in 2012 and 2013 involving the theft of an unencrypted laptop and the loss of two USB thumb drives containing the unencrypted data of more than 33,500 patients.

Read article