Company Details
east-tennessee-children's-hospital
1,164
9,562
62
etch.com
0
EAS_2834752
In-progress

East Tennessee Children's Hospital Company CyberSecurity Posture
etch.comEast Tennessee Children’s Hospital’s vision is Leading the Way to Healthy Children. Children’s Hospital is a free-standing, independent, not-for-profit pediatric health care system which serves the East Tennessee region. Children’s Hospital is certified by the state of Tennessee as a Comprehensive Regional Pediatric Center.
Company Details
east-tennessee-children's-hospital
1,164
9,562
62
etch.com
0
EAS_2834752
In-progress
Between 700 and 749

ETCH Global Score (TPRM)XXXX

Description: The Maine Office of the Attorney General reported that East Tennessee Children's Hospital experienced an external system breach (hacking) from March 11 to March 14, 2022, with the breach discovered on April 19, 2022. The incident potentially affected 422,531 individuals, including 6 Maine residents, and compromised personal information such as names and Social Security numbers. Written notices were sent to affected individuals on May 19, 2022, and identity theft protection services were offered for 12 months.
Description: East Tennessee Children's Hospital issued a notice about an information technology security issue in March 2022. X-Ray and other services were affected and disrupted by the incident. The hospital along with other security experts investigated the incident and established a call center to help the affected people.


No incidents recorded for East Tennessee Children's Hospital in 2025.
No incidents recorded for East Tennessee Children's Hospital in 2025.
No incidents recorded for East Tennessee Children's Hospital in 2025.
ETCH cyber incidents detection timeline including parent company and subsidiaries

East Tennessee Children’s Hospital’s vision is Leading the Way to Healthy Children. Children’s Hospital is a free-standing, independent, not-for-profit pediatric health care system which serves the East Tennessee region. Children’s Hospital is certified by the state of Tennessee as a Comprehensive Regional Pediatric Center.

Johns Hopkins Medicine is a governing structure for the University’s School of Medicine and the health system, coordinating their research, teaching, patient care, and related enterprises. The Johns Hopkins Hospital opened in 1889, followed four years later by the university’s School of Medicine

Com cerca de 80 anos de experiência, a Hapvida é hoje a maior empresa de saúde integrada da América Latina. A companhia, que possui mais de 69 mil colaboradores, atende quase 16 milhões de beneficiários de saúde e odontologia espalhados pelas cinco regiões do Brasil. Todo o aparato foi construído a
Ardent Health is a leading provider of healthcare in communities across the country. With a focus on consumer-friendly processes and investments in innovative services and technologies, Ardent is passionate about making healthcare better and easier to access. Through its subsidiaries, Ardent owns an
SSM Health is a Catholic, not-for-profit, fully integrated health system dedicated to advancing innovative, sustainable, and compassionate care for patients and communities throughout the Midwest and beyond. The organization’s 40,000 team members and 13,900 providers are committed to fulfilling SSM

Texas Children’s Hospital is a world-class pediatric facility, nationally recognized as a top children’s hospital, and voted one of the best places to work in Houston for nine years running. We’re committed to creating a healthy community for children by providing the best pediatric care possible, t
For more than 100 years, Children’s Healthcare of Atlanta has depended on clinical and nonclinical employees to help make kids better today and healthier tomorrow. Consistently ranked as one of the leading pediatric healthcare systems in the country by U.S. News & World Report, Children’s is the onl

GeBBS Healthcare Solutions is a KLAS rated leading provider of Revenue Cycle Management (RCM) services and Risk Adjustment solutions. GeBBS’ innovative technology, combined with over 14,000-strong global workforce, helps clients improve financial performance, adhere to compliance, and enhance the pa

Cencora, a company building on the legacy of AmerisourceBergen, is a leading global pharmaceutical solutions organization centered on improving the lives of people and animals around the world. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, w

Siemens Healthineers is a leading medtech company with over 125 years of experience. We pioneer breakthroughs in healthcare. For everyone. Everywhere. Sustainably. Our portfolio, spanning in vitro and in vivo diagnostics to image-guided therapy and cancer care, is crucial for clinical decision-makin
.png)
Child and adolescent behavioral health services are facing unprecedented demand, fueled by rising rates of anxiety, depression and...
Knoxville's tech scene in 2025 is thriving with top companies like Accenture, IdleAir, and GRIDSMART leading innovation in AI, healthcare, and connectivity.
Countless Tennesseans will make resolutions on how they plan to improve their lives in the new year. It might seem like a small thing,...
East Tennessee Children's Hospital (ETCH) agreed to a $1.55 million class action lawsuit settlement to resolve claims related to a data breach.
Medical Healthcare Solutions agreed to a class action lawsuit settlement to resolve claims that it failed to prevent a 2021 data breach that compromised...
A children's hospital in Chicago is still trying to restore its computer systems nearly a week after a cybersecurity incident prompted it to...
Marietta Health agreed to pay $1.75 million to resolve claims that it failed to protect patients from a 2021 data breach.
(NEXSTAR) — Hospitals throughout the country have been reporting an uptick in children being hospitalized for respiratory syncytial virus,...
A lawsuit filed against East Tennessee Children's Hospital has been dropped. The suit was originally filed on June 1 following a...

Explore insights on cybersecurity incidents, risk posture, and Rankiteo's assessments.
The official website of East Tennessee Children's Hospital is https://www.etch.com/.
According to Rankiteo, East Tennessee Children's Hospital’s AI-generated cybersecurity score is 721, reflecting their Moderate security posture.
According to Rankiteo, East Tennessee Children's Hospital currently holds 0 security badges, indicating that no recognized compliance certifications are currently verified for the organization.
According to Rankiteo, East Tennessee Children's Hospital is not certified under SOC 2 Type 1.
According to Rankiteo, East Tennessee Children's Hospital does not hold a SOC 2 Type 2 certification.
According to Rankiteo, East Tennessee Children's Hospital is not listed as GDPR compliant.
According to Rankiteo, East Tennessee Children's Hospital does not currently maintain PCI DSS compliance.
According to Rankiteo, East Tennessee Children's Hospital is not compliant with HIPAA regulations.
According to Rankiteo,East Tennessee Children's Hospital is not certified under ISO 27001, indicating the absence of a formally recognized information security management framework.
East Tennessee Children's Hospital operates primarily in the Hospitals and Health Care industry.
East Tennessee Children's Hospital employs approximately 1,164 people worldwide.
East Tennessee Children's Hospital presently has no subsidiaries across any sectors.
East Tennessee Children's Hospital’s official LinkedIn profile has approximately 9,562 followers.
East Tennessee Children's Hospital is classified under the NAICS code 62, which corresponds to Health Care and Social Assistance.
No, East Tennessee Children's Hospital does not have a profile on Crunchbase.
Yes, East Tennessee Children's Hospital maintains an official LinkedIn profile, which is actively utilized for branding and talent engagement, which can be accessed here: https://www.linkedin.com/company/east-tennessee-children's-hospital.
As of November 29, 2025, Rankiteo reports that East Tennessee Children's Hospital has experienced 2 cybersecurity incidents.
East Tennessee Children's Hospital has an estimated 30,068 peer or competitor companies worldwide.
Incident Types: The types of cybersecurity incidents that have occurred include Breach and Cyber Attack.
Detection and Response: The company detects and responds to cybersecurity incidents through an third party assistance with security experts, and communication strategy with established a call center, and communication strategy with written notices sent to affected individuals..
Title: East Tennessee Children's Hospital Cyber Incident
Description: East Tennessee Children's Hospital issued a notice about an information technology security issue in March 2022. X-Ray and other services were affected and disrupted by the incident. The hospital along with other security experts investigated the incident and established a call center to help the affected people.
Date Detected: March 2022
Type: Information Technology Security Issue
Title: East Tennessee Children's Hospital Data Breach
Description: The Maine Office of the Attorney General reported that East Tennessee Children's Hospital experienced an external system breach (hacking) from March 11 to March 14, 2022, with the breach discovered on April 19, 2022. The incident potentially affected 422,531 individuals, including 6 Maine residents, and compromised personal information such as names and Social Security numbers. Written notices were sent to affected individuals on May 19, 2022, and identity theft protection services were offered for 12 months.
Date Detected: 2022-04-19
Date Publicly Disclosed: 2022-05-19
Type: Data Breach
Attack Vector: Hacking
Common Attack Types: The most common types of attacks the company has faced is Breach.

Systems Affected: X-Ray servicesother services
Operational Impact: Disruption of services

Data Compromised: Names, Social security numbers
Identity Theft Risk: High
Commonly Compromised Data Types: The types of data most commonly compromised in incidents are Names, Social Security Numbers and .

Entity Name: East Tennessee Children's Hospital
Entity Type: Hospital
Industry: Healthcare
Location: East Tennessee

Entity Name: East Tennessee Children's Hospital
Entity Type: Healthcare
Industry: Healthcare
Location: Tennessee
Customers Affected: 422531

Third Party Assistance: Security experts
Communication Strategy: Established a call center

Communication Strategy: Written notices sent to affected individuals
Third-Party Assistance: The company involves third-party assistance in incident response through Security experts.

Type of Data Compromised: Names, Social security numbers
Number of Records Exposed: 422531
Sensitivity of Data: High

Source: Maine Office of the Attorney General
Additional Resources: Stakeholders can find additional resources on cybersecurity best practices at and Source: Maine Office of the Attorney General.
Communication of Investigation Status: The company communicates the status of incident investigations to stakeholders through Established a call center and Written notices sent to affected individuals.

Customer Advisories: Identity theft protection services offered for 12 months
Advisories Provided: The company provides the following advisories to stakeholders and customers following an incident: was Identity theft protection services offered for 12 months.
Post-Incident Analysis Process: The company's process for conducting post-incident analysis is described as Security experts.
Most Recent Incident Detected: The most recent incident detected was on March 2022.
Most Recent Incident Publicly Disclosed: The most recent incident publicly disclosed was on 2022-05-19.
Most Significant Data Compromised: The most significant data compromised in an incident were Names, Social Security numbers and .
Most Significant System Affected: The most significant system affected in an incident was X-Ray servicesother services.
Third-Party Assistance in Most Recent Incident: The third-party assistance involved in the most recent incident was Security experts.
Most Sensitive Data Compromised: The most sensitive data compromised in a breach were Names and Social Security numbers.
Number of Records Exposed in Most Significant Breach: The number of records exposed in the most significant breach was 953.0.
Most Recent Source: The most recent source of information about an incident is Maine Office of the Attorney General.
Most Recent Customer Advisory: The most recent customer advisory issued was an Identity theft protection services offered for 12 months.
.png)
Exposure of credentials in unintended requests in Devolutions Server, Remote Desktop Manager on Windows.This issue affects Devolutions Server: through 2025.3.8.0; Remote Desktop Manager: through 2025.3.23.0.
Out-of-bounds memory operations in org.lz4:lz4-java 1.8.0 and earlier allow remote attackers to cause denial of service and read adjacent memory via untrusted compressed input.
Reveals plaintext credentials in the MONITOR command vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from 1.0.0 through 2.13.0. Users are recommended to upgrade to version 2.14.0, which fixes the issue.
Improper Privilege Management vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: from v2.9.0 through v2.13.0. Users are recommended to upgrade to version 2.14.0, which fixes the issue.
File upload vulnerability in HCL Technologies Ltd. Unica 12.0.0.

Get company history
Every week, Rankiteo analyzes billions of signals to give organizations a sharper, faster view of emerging risks. With deeper, more actionable intelligence at their fingertips, security teams can outpace threat actors, respond instantly to Zero-Day attacks, and dramatically shrink their risk exposure window.
Identify exposed access points, detect misconfigured SSL certificates, and uncover vulnerabilities across the network infrastructure.
Gain visibility into the software components used within an organization to detect vulnerabilities, manage risk, and ensure supply chain security.
Monitor and manage all IT assets and their configurations to ensure accurate, real-time visibility across the company's technology environment.
Leverage real-time insights on active threats, malware campaigns, and emerging vulnerabilities to proactively defend against evolving cyberattacks.