Back to the register

St. Charles Health System

ArchivedSubmitted 03/16/2017
State
OR
Covered entity type
Healthcare Provider
Individuals affected
2,459
Business associate present
No
Type of breach
Unauthorized Access/Disclosure
Location of breached information
Electronic Medical Record
First seen by InfoSec Signals
9/23/2026
Last seen in OCR export
9/23/2026

OCR description

St. Charles Health System (SCHS), the covered entity (CE), reported that an employee accessed medical records without authorization. The breach affected approximately 2,459 individuals. The protected health information (PHI) involved included names, addresses, dates of birth, drivers’ license information, financial information, claims information, clinical information, and other treatment information. SCHS implemented physical, administrative, and security safeguards and re-trained its employees. The CE provided affected individuals with free credit monitoring and sanctioned workforce members involved. As a result of OCR’s investigation, SCHS confirmed that it initiated the process to upgrade its software that will allow SCHS to conduct medical record audits.

Change history

  • 9/23/2026Added to OCR's archive list

Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source

Records are reproduced as published; entity names and figures are OCR's.

Your cookie choices
We use essential cookies to run this site, and, only with your consent, an advertising cookie from Google to measure whether our ads lead to sign-ups and subscriptions. See our for details.