Blue Shield discloses 18,000 doctors' Social Security numbers

A mistake left thousands of Social Security numbers in publicly available files

The Social Security numbers of roughly 18,000 California physicians and health-care providers were inadvertently made public after a slip-up at health insurance provider Blue Shield of California, the organization said Monday.

The numbers were included in monthly filings on medical providers that Blue Shield is required to make to the state's Department of Managed Health Care (DMHC). The provider rosters for February, March and April 2013 included the data and were available under the state's public records law.

"Because they did not recognize their error, Blue Shield did not mark the rosters as confidential or otherwise alert the DMHC to the inclusion of the SSNs," the Department of Managed Health Care said in a letter to affected individuals.

The rosters included the Social Security numbers of providers along with their names, business addresses, business telephone numbers, medical groups and practice areas, and were released 10 times as a result of public records requests. Combined with other information, SSNs can be used in identity theft.

The requesters were other insurance companies, their attorneys and two members of the media, said Marta Green, a spokeswoman for DMHC. The department is contacting the requesters to ask that they destroy the CDs that contain the SSNs in return for new CDs with the SSNs deleted.

Typically, such requesters are using the data to evaluate their competitors, she said. As such, there is a low possibility that the data would be used for unscrupulous reasons.

Blue Shield said on Monday that it learned of the mistake after being notified by the Department of Managed Health Care. It has worked with the agency to notify the affected providers and to offer them free credit monitoring for one year, said Sean Barry, a spokesman for the organization.

"We have taken several steps to prevent this mistake from happening again," Barry said.

DMHC said it has instigated new software routines that will attempt to detect when providers make such errors in the future.

Martyn Williams covers mobile telecoms, Silicon Valley and general technology breaking news for The IDG News Service. Follow Martyn on Twitter at @martyn_williams. Martyn's e-mail address is martyn_williams@idg.com

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags industry verticalshealth careBlue Shield of California

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Martyn Williams

IDG News Service
Show Comments

Brand Post

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Tom Pope

Dynabook Portégé X30L-G

Ultimately this laptop has achieved everything I would hope for in a laptop for work, while fitting that into a form factor and weight that is remarkable.

Tom Sellers

MSI P65

This smart laptop was enjoyable to use and great to work on – creating content was super simple.

Lolita Wang

MSI GT76

It really doesn’t get more “gaming laptop” than this.

Jack Jeffries

MSI GS75

As the Maserati or BMW of laptops, it would fit perfectly in the hands of a professional needing firepower under the hood, sophistication and class on the surface, and gaming prowess (sports mode if you will) in between.

Taylor Carr

MSI PS63

The MSI PS63 is an amazing laptop and I would definitely consider buying one in the future.

Christopher Low

Brother RJ-4230B

This small mobile printer is exactly what I need for invoicing and other jobs such as sending fellow tradesman details or step-by-step instructions that I can easily print off from my phone or the Web.

Featured Content

Product Launch Showcase

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?