Tuesday, October 27, 2009

Email leaks 350 Baptist East employee Social Security numbers

http://www.whas11.com/news/local/stories/whas11-local-091026-baptist-ssn.256cd85b3.html

A few days ago it happened in Bullitt County schools and now it’s Baptist Hospital East.

350 names of hospital employees appear on this list that was circulated in an e-mail and so do their social security numbers.   When WHAS11 called people on the list, every one of them was stunned it was out there.

Baptist won't say how many people received this list at the hospital but they say it was supposed to be a reminder to managers about which nurses needed to renew their medical licenses.

MIAOULIS NOTE:  This is just another reminder that we should NOT use the full SSN when a pratial SSN will work.  The excuse of needing SSN for identification also leads to the potential for identity theft.  Organizations should review all computer systems that maintain the full SSN and limit who has access to the full SSN.  Limiting individuals to only the last 5 digits and to only birth month and year, would reduce the risks in this area.

No comments: