Back to the register

Providence

ArchivedSubmitted 01/16/2026
State
WA
Covered entity type
Healthcare Provider
Individuals affected
22,701
Business associate present
Yes
Type of breach
Hacking/IT Incident
Location of breached information
Network Server
First seen by InfoSec Signals
9/23/2026
Last seen in OCR export
9/23/2026

OCR description

The covered entity (CE), Providence, reported that its business associate (BA) experienced a cybersecurity incident that compromised the protected health information (PHI) of 22,701 individuals. The PHI involved included clinical and demographic and treatment information. The CE notified HHS, the media, and provided substitute notice; and the BA notified individuals on the CE’s behalf. In response to the breach, affected individuals were provided with complimentary credit monitoring services.

Change history

  • 9/23/2026Added to OCR's archive list

Source: U.S. Department of Health and Human Services, Office for Civil Rights, Breach Portal. Records are reproduced as published; entity names and figures are OCR's.