Industry - Data Breach
Executive Summary
Rhode Island reached a $5 million settlement with Deloitte following a data breach affecting the state's RIBridges system, which serves HealthSource RI customers. The payment will help cover state expenses related to the breach, while Deloitte separately covers costs for a call center, credit monitoring, and identity protection for impacted individuals. Approximately 2,000 HealthSource RI customers have been enrolled directly since the breach as the system undergoes a phased relaunch.
What Happened
In early 2025, Rhode Island reached a $5 million settlement with Deloitte following a data breach affecting the state's RIBridges system, which supports HealthSource RI customers. Deloitte agreed to pay the settlement to cover state expenses related to the breach, while separately funding a call center, credit monitoring, and identity protection services for impacted individuals. The RIBridges system underwent a phased relaunch, with approximately 2,000 HealthSource RI customers enrolled directly in January and February 2025.
Who Is Affected
Customers of HealthSource RI who used the RIBridges system were impacted by this breach. Those affected are being provided credit monitoring and identity protection services funded by Deloitte. The exact total number of impacted individuals is not specified in the available sources.
Why It Matters
This settlement represents a significant financial accountability measure where a major consulting firm is paying both state expenses and direct victim support costs following a data breach. The incident disrupted a critical state health insurance enrollment system, requiring a complete phased relaunch and direct manual enrollment of customers. This case demonstrates the growing expectation that vendors will bear financial responsibility for breaches affecting government systems and citizen data.
What You Should Do
If you are a HealthSource RI customer who used the RIBridges system, enroll in the free credit monitoring and identity protection services being provided by Deloitte. Monitor your financial accounts and credit reports for any signs of unauthorized activity or identity theft. Contact the dedicated data breach call center established by Deloitte for assistance and to verify your eligibility for protective services.
Summary generated from verified sources and reviewed before publication. How we summarize.
Sources