New compliance threat: Data breach class action lawsuits

James Houston (jhouston@stlukeshealth.org) is Division Privacy Officer at CHI St. Luke’s Health Texas Division, Corporate Responsibility.

Being sued by patients and fined by government agencies is generally part of doing business in the healthcare arena. Large-scale data breaches are now changing that landscape. With the near ubiquitous use of electronic health records (EHR) and the ever-increasing volume and sophistication of attacks against organizations, a seemingly trivial oversight in an organization’s privacy and security compliance program can lead to unexpected and overwhelming consequences imposed by a class action lawsuit. The purpose of this article is to introduce the reader to what a class action lawsuit is and explain what claims are being exerted by plaintiffs as a result of a data breach.

This document is only available to members. Please log in or become a member.
 


Would you like to read this entire article?

If you already subscribe to this publication, just log in. If not, let us send you an email with a link that will allow you to read the entire article for free. Just complete the following form.

* required field