Notice of Data Security Incident
Summit Medical Group, PLLC is committed to the security
and privacy of the information we maintain. We previously addressed an incident
involving our email system, and we are completing our notification of certain
patients whose information may have been involved.
On February 28, 2025, we completed our response to, and
data analysis for, the incident. After we initially identified unusual activity
on our email system, we immediately took steps to ensure the security of the
system and launched an investigation with third-party forensics experts. On
November 22, 2024, the investigation determined that certain emails or
attachments may have been viewed or copied by an unauthorized party between
September 19, 2024, and November 21, 2024. We then conducted an analysis of those
emails and attachments, which determined that they contained information
belonging to some patients.
The information that may have been involved varies per
patient but may include some or all of the following: names, contact
information, demographic information, medical record numbers, provider names,
dates of services, facilities of service, treatment information, prescription
information and/or health insurance information. For a small subset of patients,
Social Security numbers may have also been involved.
We encourage patients whose information may have been
involved to review the statements they receive from their providers and health
insurers. If the statements identify services that were not received, the
patient should contact the provider or insurer that issued the statement
immediately. Patients whose Social Security numbers may have been involved are
encouraged to enroll in the complimentary credit monitoring services it is
offering.
We
take this incident very seriously and sincerely regret any concern it may cause.
We notified law enforcement about the incident and provided additional training
to the employees whose email accounts were involved. In addition, to help
prevent something like this from happening again, we strengthened the security
of our email system and continue enhancing our protocols to safeguard the
information in our care.
We have also established a dedicated, toll-free call center to answer questions about this incident, which can be reached at 888-458-9813, Monday through Friday, from 9:00 a.m. to 9:00 p.m. Eastern Time, excluding major U.S. holidays.