Heartland Pathology Associates, P.A., the covered entity (CE), discovered that its past concern link (BA), Medical Business Service, Inc., suffered a hack when an employee downloaded protected health information (PHI) to a portable computer get and provided the get to a third party. The jade affected 1,175 individuals and included patients' names, addresses, telephone numbers, social security numbers, dates of birth, insurance carriers, indemnity policy numbers, physicians' name, diagnosis information, medical record numbers, account numbers, admission and discharge dates, and gender. The CE delayed providing drudge notification due to a law enforcement investigation. Once presumption approval, the CE timely sent jade notification to HHS, affected individuals, and the media and posted substitute notification online. The CE contracted with Florida hospital Heartland Medical middle (Hospital) for annual HIPAA preparation and for utilize of a computer maintained and monitored by the Hospitals information technology department. The CE received assurances that PHI maintained by its ba was destroyed. OCR obtained assurances that the ce has implemented the corrective actions listed above. placement of hacked information: Other Portable Electronic Device Business relate present: no