- State
- OH
- Covered entity type
- Healthcare Provider
- Individuals affected
- 574
- Business associate present
- No
- Type of breach
- Theft
- Location of breached information
- Electronic Medical Record, Email, Laptop, Paper/Films
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
On October 22, 2016, the covered entity (CE), Henry County Health Department learned that a nurse’s laptop computer and some paper records were stolen from her car inside her locked garage. Approximately 575 individuals were affected by the breach of demographic and clinical information. The CE provided breach notification to HHS, affected individuals, and the media. Following the breach, the CE reprimanded the employee involved in the breach with a record of written warning. Additionally, the CE issued a policy related to safeguarding laptops taken off premises, encrypted all laptops, workstations, and servers and updated its Privacy and Security Policies. OCR obtained documented assurances that the CE implemented the corrective action steps noted above.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.