The Health Information Act (HIA) states a privacy breach means a loss of, unauthorized access to, or unauthorized disclosure of health information.
This form is intended to guide custodians through the process of addressing a breach, including determining the extent of the breach and the potential risk of harm. If you need additional assistance, you may wish to contact a privacy consultant.
The privacy officer can fill out this form, but it must be signed off by the custodian. The form also serves as a record of the breach and action taken. It should be filed in a secure location to be referenced in the future if needed.
Patient names should not be included in the information shared with OIPC or the Minister. This documentation is for your information only, and you must fill out the appropriate reporting forms for OIPC and the Minister.