What is a Breach?
According to the Department of Defense, a breach of personal information occurs when the information is lost, disclosed to, accessed by, or potentially exposed to unauthorized individuals, or compromised in a way where the subjects of the information are negatively affected.
Breach Reporting
The Defense Health Agency Privacy and Civil Liberties Office coordinates breach reporting within the Military Health System. Email us if you have questions about breaches or breach reporting within the MHS.
Guidance tools for breach reporting:
You also may be interested in...
Policy
Apr 9, 2008
.PDF |
147.25 KB
This Memorandum establishes policy for documents transmitted and/or received by facsimile that contain Personally Identifiable Information and/or Protected Health Information (PII/PHI).
- Identification #: N/A
- Type: Guidelines
Policy
Mar 6, 2008
.PDF |
98.94 KB
This Memorandum implements the recent Department of Defense (DoD) requirement on the use of digital signature for e-mail, and is in addition to my memorandum of June 13, 2007, “Use of Digital Signature on TRICARE Management Activity (TMA) Official Electronic Mail (e-mail).”
- Identification #: N/A
- Type: Guidelines
Policy
Jul 3, 2007
.PDF |
215.07 KB
This Memorandum provides recommendations on means to protect sensitive unclassified information on portable computing devices used within DoD and advises that the suggestions are expected to become policy in the near future.
- Identification #: N/A
- Type: Memorandums
Policy
May 22, 2007
This Memorandum outlines the framework within which Federal agencies must develop a breach notification policy while ensuring proper safeguards are in place to protect the information.
- Identification #: OMB Memorandum 07-16
- Type: Memorandums
Policy
Sep 20, 2006
This Memorandum provides recommendations for planning and responding to data breaches which could result in identity theft.
- Identification #: OMB Memorandum
- Type: Memorandums
Policy
Jun 23, 2006
This Memorandum addresses the efforts to properly safeguard information assets while using information technology by incorporating a checklist from the National Institute of Standards and Technology (NIST) for protection of remote information.
- Identification #: OMB Memorandum 06-16
- Type: Memorandums
Policy
May 22, 2006
This Memorandum reemphasizes responsibilities under law and policy to appropriately safeguard sensitive personally identifiable information (PII) and train employees on responsibilities in this area.
- Identification #: OMB Memorandum 06-15
- Type: Memorandums
You are leaving Health.mil
The appearance of hyperlinks does not constitute endorsement by the Department of Defense of non-U.S. Government sites or the information, products, or services contained therein. Although the Defense Health Agency may or may not use these sites as additional distribution channels for Department of Defense information, it does not exercise editorial control over all of the information that you may find at these locations. Such links are provided consistent with the stated purpose of this website.
You are leaving Health.mil
View the external links disclaimer.
Last Updated: July 21, 2023