- State
- IN
- Covered entity type
- Healthcare Provider
- Individuals affected
- 566
- Business associate present
- No
- Type of breach
- Theft
- Location of breached information
- Laptop
- First seen by InfoSec Signals
- 9/23/2026
- Last seen in OCR export
- 9/23/2026
OCR description
Access Counselling LLC, the covered entity (the CE), reported that a laptop computer used by its sole employee was stolen from his vehicle, along with books and seven case files. The breach affected the protected health information (PHI) of approximately 566 individuals and included names, addresses, dates of birth, social security numbers, medications, and treatment information. The CE conducted an investigation of the breach, prepared an incident report, and notified the affected individuals, the media, and HHS. During the OCR investigation, the CE encrypted the laptop, updated its policy and procedure regarding passwords, and obtained training for the sole employee on its policies and procedures regarding HIPAA and safeguarding PHI. OCR obtained the CE’s updated risk analysis and management plan and obtained assurances that the CE implemented the corrective actions noted above.
Change history
- 9/23/2026Added to OCR's archive list
Source: HHS OCR Breach Portal, U.S. Department of Health and Human Services, Office for Civil Rights about this source
Records are reproduced as published; entity names and figures are OCR's.