Kansas A.G. Schmidt Settles Lawsuit With Health Insurer Premera for Nationwide Data Breach
A health insurance company will change its data security practices to settle a lawsuit over a data breach that compromised the personal information of more than 10.4 million people nationwide, including 19,247 in
The settlement resolves allegations that
From
The lawsuit resolved by yesterday's settlement alleged that Premera misled consumers nationwide about its privacy practices in the aftermath of the data breach. After the breach became public, Premera's call center agents told consumers there was "no reason to believe that any of your information was accessed or misused." They also told consumers that "there were already significant security measures in place to protect your information," even though multiple security experts and auditors had warned the company of its security vulnerabilities prior to the breach.
Under HIPAA, Premera is required to implement administrative, physical and technical safeguards that reasonably and appropriately protect sensitive personal health information. Premera repeatedly failed to meet these standards, leaving millions of people's sensitive data vulnerable to hackers for nearly a year.
Yesterday's settlement also requires Premera to:
* Ensure its data security program protects personal health information as required by law
* Regularly assess and update its security measures
* Provide data security reports, completed by a third-party security expert approved by the multistate coalition, to the
* Hire a chief information security officer, a separate position from the chief information officer. The information security officer must be experienced in data security and HIPAA compliance and will be responsible for implementing, maintaining and monitoring the company's security program.
* Hold regular meetings between the chief information security officer and Premera's executive management. The information security officer must meet with Premera's CEO every two months and inform the CEO of any unauthorized intrusion into the Premera network within 48 hours of discovery.
A copy of the consent judgment settling the case, which was filed yesterday in



Dagmar Valcarcel Nominated to Join Deutsche Bank’s Supervisory Board
Hiscox Ltd Trading Update
Advisor News
- SEC: Get-rich-quick influencer Tai Lopez was running a Ponzi scam
- Companies take greater interest in employee financial wellness
- Tax refund won’t do what fed says it will
- Amazon Go validates a warning to advisors
- Principal builds momentum for 2026 after a strong Q4
More Advisor NewsAnnuity News
- Corebridge Financial powers through executive shakeup with big sales
- Half of retirees fear running out of money, MetLife finds
- Planning for a retirement that could last to age 100
- Annuity check fraud: What advisors should tell clients
- Allianz Life Launches Fixed Index Annuity Content on Interactive Tool
More Annuity NewsHealth/Employee Benefits News
- Inside Florida's decision to cut thousands off from affordable AIDS drugs
- Support H.433 for publicly financed universal primary care
- Fewer Kentuckians covered by ACA health insurance plans as subsidies stall in U.S. Senate
- HOW TO DETERMINE WHICH PLAN TYPE IS BEST FOR YOUR BUSINESS
- Medicare and covering clinical trial prescriptions
More Health/Employee Benefits NewsLife Insurance News