EEOC Warns Against Keeping Personal and Occupational Health Information in Single Electronic File
1 min read
Aug 1, 2011
Maintaining an employee’s personal health information and occupational health information in a single electronic medical record could violate the requirements of Title I of the Americans with Disabilities Act (ADA) and Title II of the Genetic Information Nondiscrimination Act (GINA), according to an informal discussion letter recently released by the Equal Employment Opportunity Commission (EEOC). An employer’s right to access occupational health information from individuals providing health services unrelated to employment is strictly limited under both the ADA and GINA. Although neither the ADA nor GINA specifically addresses whether encryption, password authentication, or other security safeguards are necessary for electronic records maintained by employers, the EEOC stated that it does not interpret either statute’s confidentiality provisions to apply only to paper records. Therefore, maintaining personal health information and occupational health information in a single electronic medical record, particularly one that allows someone with access to the electronic medical record, presents a real possibility that the ADA and GINA, or both, will be violated.
Topics
Featured Insights

Press Release
Oct 22, 2025
Hinshaw & Culbertson LLP Launches New Website and Refreshed Brand

Press Release
Sep 26, 2025
Hinshaw Recognized as a “Leader in Litigation” in the BTI Consulting Litigation Outlook 2026 Survey

Privacy, Cyber & AI Decoded Alert
Sep 23, 2025
Fall 2025 Regulatory Roundup: Top U.S. Privacy and AI Developments for Businesses to Track

Press Release
Sep 15, 2025
Hinshaw Achieves 2024–2025 Mansfield Rule Certification Plus Status

In The News
Sep 5, 2025
Jessica Riley Reflects in a Law360 Story on Lessons She Learned as a Junior Lawyer

Press Release
Aug 25, 2025
Trial Spotlight: Hinshaw Prevails in ERISA Fiduciary Fraud Case





