Cookies on BBB.org

We use cookies to give users the best content and online experience. By clicking “Accept All Cookies”, you agree to allow us to use all cookies. Visit our Privacy Policy to learn more.

Cookie Preferences

Many websites use cookies or similar tools to store information on your browser or device. We use cookies on BBB websites to remember your preferences, improve website performance and enhance user experience, and to recommend content we believe will be most relevant to you. Most cookies collect anonymous information such as how users arrive at and use the website. Some cookies are necessary to allow the website to function properly, but you may choose to not allow other types of cookies below.

Necessary Cookies

What are necessary cookies?
These cookies are necessary for the site to function and cannot be switched off in our systems. They are usually only set in response to actions made by you that amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not work. These cookies do not store any personally identifiable information.

Necessary cookies must always be enabled.

Functional Cookies

What are functional cookies?
These cookies enable the site to provide enhanced functionality and personalization. They may be set by us or by third party providers whose services we have added to our pages. If you do not allow these cookies, some or all of these services may not function properly.

Performance Cookies

What are performance cookies?
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance.

Marketing Cookies

What are marketing cookies?
These cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant content on other sites. They do not store personal information directly, but are based on uniquely identifying your browser or device. If you do not allow these cookies, you will experience less targeted advertising.
      Country
          Country
          Share
          Business Profile

          Home Health Care

          Personal Touch Home Care Inc.

          This business is NOT BBB Accredited.

          Find BBB Accredited Businesses in Home Health Care.

          About

          Important information

          • Government Actions:
            Government Action: BBB reports on known government actions involving business’ marketplace conduct:
            NY AG Secures $350,000 from Long Island Home Health Care Company for Failing to Protect Patient and Employee Data

            The following describes a government action that has been resolved by either a settlement or a decision by a court or administrative agency. If the matter is being appealed, it will be noted below.

            On 10/18/2023, New York Attorney General Letitia James secured $350,000 from a Long Island-based home health care company, Personal Touch Holding Corporation (Personal Touch), for failing to protect vulnerable New Yorkers’ personal information and health care data. Personal Touch’s poor data security made it vulnerable to a ransomware attack that compromised the personal and medical information of approximately 316,845 New Yorkers. Personal Touch’s data security failures violated both state law and the federal Health Insurance Portability and Accountability Act (HIPAA), which required Personal Touch to adhere to specific data protection practices. As a result of today’s agreement, Personal Touch has agreed to pay $350,000 in penalties to New York, update and improve their cybersecurity infrastructure, and offer free credit monitoring and identity theft services to affected individuals. In addition, Attorney General James secured $100,000 from an insurance software vendor for compromising Personal Touch employees’ data.

            Personal Touch is the parent company of subsidiaries that operate Medicare-certified home health, home care, and hospice at home services throughout the country, including in New York City, Westchester, and Long Island. In January 2021, a Personal Touch employee opened a malware-infected file attached to a phishing email that allowed a hacker to gain access to Personal Touch’s network and collect patient and employee records from an unencrypted server. These records dated back decades and included confidential personal and health information, including names, addresses, Social Security numbers, medical treatments, and financial information of thousands of people.

            The Office of the Attorney General's (OAG) investigation determined that Personal Touch failed to maintain reasonable data security safeguards to protect patient and employee data. Personal Touch’s information security and risk management program was informal and immature. There was inadequate security training of its staff, poor access controls, a lack of a continuous monitoring system, and a failure to encrypt personal and medical data.During the OAG’s investigation, Personal Touch was notified of a third-party breach that affected its employees’ personal information, including Social Security numbers. Personal Touch had provided this data to its insurance broker, who provided the data to an enrollment software vendor, Falcon Technologies, Inc. (Falcon), which placed the data on an unsecured site. Personal Touch did not have any agreements in place with its insurance broker concerning data security standards that applied to personal information not covered by HIPAA. The OAG secured a separate agreement with Falcon for failing to secure this information. Under the terms of Falcon’s agreement with the OAG, Falcon must pay $100,000 in penalties to New York and ensure the use of encryption and proper access controls in handling private information. 

            As a result of today’s agreement, Personal Touch will pay $350,000 in penalties and offer affected consumers free identity theft protection and recovery services. In addition, Personal Touch will be required to enhance its information security program and implement safeguards to better protect its employees’ and patients’ personal and health information, including:

            -Maintaining a comprehensive information security program that includes regular risk assessments, regular testing and monitoring of existing safeguards, and regular updates to the information security program;
            -Maintaining reasonable access control and authentication procedures;
            -Encrypting personal and health information;
            -Implementing a continuous logging and monitoring system, anti-malware protections, an intrusion detection and prevention solution, and an email filtering and phishing solution; 
            -Developing a vulnerability management program that includes regular vulnerability scanning and penetration testing;
            -Updating its data collection, retention, and disposal practices to ensure that personal and health information is maintained only to the minimum extent necessary to accomplish legitimate business purposes;
            -Conducting annual employee security training; and
            -Establishing reasonable vendor management procedures. 

          Business Details

          BBB File Opened:
          9/17/2002
          Business Started:
          1/1/1974
          Business Incorporated:
          5/29/1979
          Type of Entity:
          Corporation
          Alternate Names:
          Personal Touch Home Care of Long Island, Inc.
          Business Management:
          Dr. Felix Glaubach, President/CEO
          Mr. Ronald J. Spielberger, Chief Compliance Officer and General Counsel

          Additional Contact Information

          Principal Contacts
          Dr. Felix Glaubach, President/CEO
          Customer Contacts
          Mr. Ronald J. Spielberger, Chief Compliance Officer and General Counsel
          Additional Phone Numbers
          Other Phone: (212) 468-2500
          Other Phone: (516) 227-3400
          Other Phone: (516) 234-1121

          Additional Information

          Business Categories
          Home Health Care

          More Resources

          BBB Business Profiles may not be reproduced for sales or promotional purposes.

          BBB Business Profiles are provided solely to assist you in exercising your own best judgment. BBB asks third parties who publish complaints, reviews and/or responses on this website to affirm that the information provided is accurate. However, BBB does not verify the accuracy of information provided by third parties, and does not guarantee the accuracy of any information in Business Profiles.

          When considering complaint information, please take into account the company's size and volume of transactions, and understand that the nature of complaints and a firm's responses to them are often more important than the number of complaints.

          BBB Business Profiles generally cover a three-year reporting period. BBB Business Profiles are subject to change at any time. If you choose to do business with this business, please let the business know that you contacted BBB for a BBB Business Profile.

          As a matter of policy, BBB does not endorse any product, service or business. Businesses are under no obligation to seek BBB accreditation, and some businesses are not accredited because they have not sought BBB accreditation. BBB charges a fee for BBB Accreditation. This fee supports BBB's efforts to fulfill its mission of advancing marketplace trust.