Menu
Browse

Geisinger Health System

Aliases: 2 aliases
Primary URL Location Industry
geisinger[.]org
Country United States of America
Healthcare Icon
Healthcare
Profile

Geisinger Health System is a healthcare organization that operates as an integrated health system in the United States. Its headquarters is located in the United States of America. The organization delivers a broad spectrum of medical services, including inpatient hospital care, outpatient clinics, physician practices, and related health offerings. These services are provided to patients within its service area, supporting both acute and preventive care needs. As an integrated delivery network, Geisinger emphasizes coordination between clinical and administrative functions to improve patient outcomes and operational efficiency. The organization is known for its focus on patient safety, quality improvement, and evidence‑based care practices. It also participates in community health initiatives and medical education programs as part of its mission to promote health and wellness. These attributes position Geisinger as a notable participant in the U.S. healthcare sector, particularly among integrated health networks.

In May 2022, Geisinger Health System experienced a data breach resulting from a ransomware attack on its mail service vendor, KayeSmith. The breach exposed patient information including names, addresses, medical record numbers, dates of service, and payment installment plans for 2,857 individuals. Although no misuse of the compromised data was reported, the vendor offered credit monitoring services to those affected. Geisinger collaborated with the vendor to implement additional safeguards following the incident. In June 2019, the organization discovered that an employee had accessed patient records without appropriate authorization over a period of approximately one year. This unauthorized access affected more than 700 patients and exposed information such as names, dates of birth, Social Security numbers, medical conditions, treatment details, and contact details. The investigation concluded that there was no evidence of malicious intent or data retention by the employee. The employee responsible was terminated, and Geisinger provided complimentary identity theft protection services to the impacted individuals. Both incidents were addressed through internal investigations and prompted the organization to review and strengthen its privacy and security practices. These episodes illustrate how Geisinger responds to privacy breaches by offering remedial support and seeking to prevent future occurrences.

Incidents
Linked incidents available to members
2 incidents