NORRISTOWN — The former owner of an East Norriton Township home care agency was sent to prison for her role in a $1.7 million Medicaid fraud scheme.
Stephanie Mobley, 54, of the 700 block of Crooked Lane in the King of Prussia section of Upper Merion Township, was sentenced in Montgomery County Court to 17 months to 10 years in the State Correctional Institution at Muncy after she pleaded guilty to charges of Medicaid fraud and theft by deception false impression in connection with incidents that occurred between January 2020 and October 2023 during her association with ComfortZone Home Health Care LLC, located in the 200 block of West Germantown Pike in East Norriton.
Judge Wendy G. Rothstein also ordered Mobley to share with her co-defendants in paying $1,760,883 in restitution in connection with the case.
Mobley was one of 20 people charged, along with the agency itself, by the…
IT & DATA SECURITY (MITIGATING THE “INSIDER THREAT”)
As seen in the TD Bank case, an employee with too much “access” can sell your customer data to syndicates.
- Principle of Least Privilege (PoLP): Employees should only have access to the specific folders and databases required for their current task.
- Access Revocation: Have a “Termination Checklist” that ensures all digital access (Email, VPN, Banking) is revoked within 60 minutes of an employee resigning or being dismissed.
- System Logs & Audit Trails: Enable “Read/Write Logging” on your server. If a customer’s data is leaked, you need to know exactly which login accessed that record and at what time.
- Encryption at Rest: Ensure that sensitive files (like your customer ID numbers or payroll spreadsheets) are encrypted so that if a staff member copies them to a USB, they cannot be read.
