1) Provide a brief overview of the breach or event. And describe the cause (or suspected cause) of the breach or event.
Due to improper disposal of technology at Shoprite supermarkets primarily serving the Millville, New Jersey, and Kingston, New York markets, Shoprite and Wakefern, the parent company, are required to pay New Jersey $235,000 because of their lack of data security when disposing of devices that held sensitive information (Coble, 2020).
These computers held pharmacy user data, such as names, prescriptions purchased, drivers license numbers and birthdates among many other data points potentially breached (Coble, 2020).
While HIPAA does not have specific policies on how to dispose of an old device, it does require that devices are cleared of data before disposal (US Department of Health and Human Service, 2009).