Health Net and Centene Penalized $11 Million for Cybersecurity Breaches

Published:

spot_img

Health Net Federal Services Settles Cybersecurity Compliance Allegations for Over $11 Million

Health Net Federal Services to Pay Over $11 Million for Cybersecurity Violations

In a significant settlement, Health Net Federal Services, LLC (HNFS) and its parent company, Centene Corporation, have agreed to pay $11.25 million to resolve allegations of falsely certifying compliance with cybersecurity requirements under a contract with the U.S. Department of Defense (DoD). This case underscores the increasing scrutiny on cybersecurity practices among government contractors, particularly those handling sensitive information.

Based in Rancho Cordova, California, HNFS was responsible for administering the Defense Health Agency’s (DHA) TRICARE health benefits program, which provides essential medical services to U.S. servicemembers and their families. The U.S. Department of Justice (DOJ) accused HNFS of failing to meet required cybersecurity standards between 2015 and 2018, including neglecting to scan for known vulnerabilities and address security flaws in a timely manner.

Acting Assistant Attorney General Brett A. Shumate emphasized the critical nature of cybersecurity compliance, stating, “Companies that hold sensitive government information must meet their contractual obligations to protect it.” The DOJ’s findings revealed multiple failures, including inadequate access controls, poor patch management, and the use of outdated technology, all of which heightened the risk of unauthorized access to sensitive data.

The settlement serves as a stark reminder to federal contractors about the importance of adhering to cybersecurity regulations. As cyber threats evolve, government agencies are ramping up enforcement measures to ensure that companies entrusted with sensitive data prioritize robust security practices.

With this settlement, HNFS and Centene Corporation are not only addressing past compliance failures but also reinforcing the message that cybersecurity is a non-negotiable aspect of government contracting. As regulatory oversight intensifies, companies must strengthen their cybersecurity frameworks to safeguard sensitive information against emerging threats.

spot_img

Related articles

Recent articles

Navigating the Dark Web Safely and Legally

Navigating the Dark Web Safely: A Practical Guide The dark web often conjures images of shady dealings and illegal activities, but many people use it...

Top 10 Highlights You Missed This Week: UAE Student Regulations, Dubai Road Projects, Wynn Al Marjan Resort Insights, and Real Estate Trends

Weekly Highlights: Major Developments in the UAE This week brings a range of significant updates across various sectors in the UAE. From education reforms to...

Epworth HealthCare Publishes Statement: No System Breach After Global Ransomware Claims

Epworth HealthCare Addresses Ransomware Claims: No Data Breach Detected Epworth HealthCare, a prominent private hospital group based in Victoria, Australia, has responded to serious allegations...

Belkin Launches Exciting New Gaming Accessories and Powerful Charging Solutions

Belkin Enters the Gaming Arena: A New Chapter in Accessory Innovation A Legacy of Innovation Belkin, a name synonymous with consumer electronics excellence for over 40...