Full-Time
Updated on 9/4/2026
Membership-based primary care with virtual care
$262k - $278.5k/yr
No H1B Sponsorship
New York, NY, USA
Remote
Must reside in the United States.
See people who can refer or advise you
One Medical offers membership-based primary care that blends in-person visits with 24/7 virtual care, accessible through a mobile app for booking, renewing prescriptions, and messaging with clinicians. It serves individual patients and employers who provide the service as an employee benefit. Revenue comes from annual membership fees and contracts with employers. The model aims to improve patient experience and reduce healthcare costs by combining convenient, tech-enabled care with a hybrid service delivery. The company differentiates itself through its focus on a subscription-based, tech-enabled experience, rapid access (same-day appointments), and strong employer partnerships in urban markets, with a goal of expanding its footprint and market share in the primary care space.
Company Size
1,001-5,000
Company Stage
Acquired
Total Funding
$805.1M
Headquarters
San Francisco, California
Founded
2007
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Paid sabbatical for your 5th and 10th year
Paid health, vision, and dental insurance
PTO cash out program lets you get cash for up to 40 accrued PTO hours each year
Free One Medical memberships for you and three friends or family members
Pre-tax commuter benefits
Paid maternity and paternity leave at 100% of your base salary
Credit towards childcare
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson. The company, which distributes medicines and medical devices to hospitals and healthcare practices across the U.S., said it was hacked and expects int A prolific hacking group has taken credit for last week's cyberattack against U.S. pharmaceutical distribution giant McKesson, leading to the latest spill of highly sensitive health data by an American healthcare company in recent months. McKesson confirmed Friday in a statement on its website that hackers broke into several of its cloud-hosted accounts earlier in the week and exfiltrated data, and that the company expected "intermittent service degradation" related to the incident. In a separate notice to customers, the company's chief technology officer, Francisco Fraga, said the stolen data relates to its oncology & multispecialty and medical-surgical units. The Texas-based company is one of the largest American distributors of pharmaceuticals, medicines, medical supplies, and technology to hospitals and healthcare providers across the United States, and as such handles a large amount of patient data. The ShinyHunters hacking group - one of the most active data-extortion crews of the past two years - told TechCrunch that it hacked the company's cloud environment by tricking several employees into granting the hackers access to McKesson's network by using phishing and social engineering tricks, which the group is known for. The hackers said they stole a range of personal information, such as names, addresses, and Social Security numbers, as well as protected health information, including diagnoses, medications, allergies, and patient notes. The hackers say they took millions of rows of patient data from the company's cloud-hosted Snowflake and Salesforce environments, but that they are unsure of how many individuals are ultimately affected. The stolen data also included McKesson employees' information, such as home addresses. ShinyHunters shared screenshots and a sample of the stolen data with TechCrunch, and IntelPro verified a small subset of it against public records. Bleeping Computer, which first reported the link to the ShinyHunters hacking group, said the hackers demanded a $55 million ransom from the company in exchange for not publicly releasing the stolen files. In a statement, McKesson spokesperson Kristina Chang said the company "continues to operate in all lines of business," and reiterated its public statement, and noted that McKesson believes it has no ongoing unauthorized activity in its systems. The company would not answer TechCrunch's questions about the incident, such as what the hackers demanded or how many individuals had data affected by the incident. McKesson is the latest healthcare company or medical device maker to be targeted in a string of cyberattacks in recent months, as hackers aim to steal large amounts of sensitive medical and health data that they can use to extort the companies into paying a ransom to keep it from being published. Last week, medical device maker Boston Scientific was hit by a cyberattack that knocked much of the company's network offline. The cyberattack had a similar effect to an incident earlier this year at another medical device maker Stryker, in which hackers abused a company's internal tools to remotely wipe thousands of employee devices. Abbott Laboratories and Medtronic have also experienced cyberattacks, while electronic patient records provider CareCloud and health tech company TriZetto had breaches affecting over 3 million patients each. The ShinyHunters hackers have also taken credit for sizable data breaches at Amazon-owned One Medical and dental insurance company DentaQuest following cyberattacks on their systems. _Lorenzo Franceschi-Bicchierai contributed reporting._ _Updated with comment from a McKesson spokesperson._
Amazon One Medical expanding to downtown Silver Spring. Amazon One Medical is continuing its expansion in the DMV region and opening a downtown Silver Spring office in partnership with MedStar Health. The practice replaces GW Primary Care (formerly Cameron Medical Group), which closed its 4th-floor office at 8700 Georgia Avenue and relocated its staff to Bethesda in late June. According to its website, Amazon One Medical offers same-day and next-day primary care appointments for pediatric and adult patients, along with preventive care, physical exams, women's health and chronic-condition care, mental health services, LGBTQIA+-sensitive care, and on-site lab services. The medical group also provides around-the-clock virtual care through its mobile app, enabling members to get fast care for common concerns such as allergies, skin issues, and urinary tract infections, access medical records, renew prescriptions, and securely message their care team. Video Muted Patients do not need to be Amazon Prime members to join One Medical; however, there are two pricing tiers: $99 per year for Prime members, or $9 per month, and $199 per year for non-Prime members. Membership includes access to virtual care and the company's digital healthcare platform, while most in-person and remote visits are billed through accepted insurance plans. After acquiring the San Francisco-based primary care chain One Medical in 2023 for $3.9 billion, Amazon integrated its Amazon Clinic and Pharmacy offerings into the system and has expanded the business into a network of more than 240 clinics across 20-plus markets. In addition to its partnership with MedStar Health in the DMV region, Amazon One Medical is affiliated with several healthcare systems nationwide, including Cleveland Clinic in Ohio, Mount Sinai and Montefiore Health System in New York, and Mass General Brigham in Massachusetts. The opening timeframe for the downtown Silver Spring office is unknown, but hiring is underway for several positions, including Primary Care Physician, Phlebotomist/Front Desk, and Primary Care Nurse Practitioner or Physician Assistant. onemedical.com Subscribe for free. Stay connected to your community through its free email newsletters! Emails are delivered daily to its subscribers.
AnMed given 72 hours to respond to demands in ransomware incident. The system takedown, an apparent extortion attempt, has disrupted IT systems and care, with surgeries and other planned patient treatments delayed. Some services remain operational as cybersecurity recovery continues. By Andrea Fox, Senior Editor | July 27, 2026 | 1:05 PM Photo: fabrikasimf/Freepik AnMed, a nonprofit health system serving upstate South Carolina and northeast Georgia, says it was hit with a malware incident on Sunday that knocked out IT systems, internet access and more. Many services, including oncology and radiation, were closed on Monday, while infusions remain limited and general lab services and emergency departments have stayed open. WHY IT MATTERS The Anderson, South Carolina-based health system said that "decisions regarding procedures, patient transfers, diversions and operational processes are being made with patient safety as the guiding principle," in a statement posted to its website. The AnMed Medical Group and all imaging services were closed, and all elective procedures scheduled for Monday were canceled, according to a list of current operations at all locations. The health system's urgent care, laboratory and integrated therapy locations, as well as AnMed Kids Care, have remained open. "We are coordinating closely with emergency medical services, regional hospitals and public safety partners to ensure patients continue to receive the care they need in the most appropriate setting," AnMed said in a statement. "We are grateful to our healthcare partners across the region and to the upstate community for their collaboration, patience and support." AnMed said it will provide updates on operational plans in the coming days. Healthcare IT News reached out to a health system contact to ask about operations during the disruption and will update this story if there is a response. In a report from local NBC affiliate WYFF, one patient described their experience inside an AnMed hospital when the computer system went down - and said they were told by a frontline clinician what a blue screen on all the hospital's computers read. "AnMed has 72 hours to pay, and if not, everybody's information would be leaked," said the unnamed patient who appeared offscreen. (Notably, the Cybersecurity and Infrastructure Security Agency also requires incident reporting in 72 hours under the Cyber Incident Reporting for Critical Infrastructure Act of 2022.) THE LARGER TREND Malware threats come from many groups, and healthcare organizations are a frequent target. While the costs of recovery averaged about $7 million per breach last year, and these attacks continue to increase, organizations are getting better at recovery, according to Zachary Lewis, CIO and CISO at University of Health Sciences and Pharmacy in St. Louis, Missouri. His organization was hit by a LockBit ransomware threat actor. The vulnerability stemmed from having to adjust processes when hardware with a flawed firewall arrived during the onset of the COVID-19 pandemic, he explained in March during a keynote address at HIMSS26. When the health system turned to a co-managed firewall that could not provide multi-factor authentication on a virtual private network, that's when the cyber threat actors made their move - stealing data and destroying the health system's immutable backup. A third unexpected offsite backup got operations up and running, Lewis said as he offered his key takeaways for better planning for ransomware attacks. But when these ransomware organizations steal data, they may leak it quickly, adding to a health system's burden after an attack. The ShinyHunters data extortion group began leaking portions of the 8.8TB it claimed to have stolen from One Medical data after an attack this past month on vulnerable legacy systems. That group is known to stage leaks to entice victims to pay ransom. In another more recent example, American Hospice & Home Health Services in California had data leaked Monday to a ransomware-as-a-service group called CRPxO, SOCRadar said. The group has been extremely active since it emerged this month, so far attacking 27 businesses across sectors, including dental and orthodontic practices. ON THE RECORD "AnMed is currently experiencing a cybersecurity disruption involving malware that is impacting our network," the health system said in a statement. "We are working diligently to assess our systems, investigate the full nature and scope of the issue and securely restore our systems to full functionality as quickly as possible with the assistance of third-party cybersecurity specialists, as well as state and federal authorities. "We also extend sincere thanks to its physicians, nurses, advanced practice providers, clinical teams and all employees whose professionalism, flexibility and extraordinary efforts are helping ensure patients continue to receive safe care during this response." Andrea Fox is senior editor of Healthcare IT News. Email: [email protected] Healthcare IT News is a HIMSS Media publication.
One Medical ranks #19 in 25 Health Brand Campaigns index. One Medical ranks #19 in 25 Health Brand Campaigns That Redefined Digital Marketing, an index that identifies roughly 25 influential health-related digital marketing campaigns across hospital systems, pharma companies, mental health apps, retail health brands, and fitness and wearable brands. One Medical is recognized in the index for its Membership-Based Messaging campaign, which the index characterizes as healthcare as a service experience. It sits in the countdown alongside brands including Teladoc at #18 and Amazon Pharmacy at #20. What the 25 Health Brand Campaigns index measures. The index does not use numeric scoring or a published ranking methodology. Instead, it identifies roughly 25 influential health-related digital marketing campaigns spanning hospital systems, pharma companies, mental health apps, retail health brands, and fitness and wearable brands, describing each campaign's approach and grouping the brands into thematic clusters. Brands are presented in a countdown-style list organized by category rather than by a numeric score. Why One Medical ranks #19. One Medical earns its place in the index for its Membership-Based Messaging campaign. The index describes One Medical's approach as healthcare as a service experience, positioning the brand's marketing around the experience of receiving care rather than around clinical claims alone. That framing aligns with how One Medical presents itself publicly. The company describes itself as committed to providing primary care through exceptional quality, a world-class experience, and second-to-none technology. Its membership model is central to that message: membership costs $99 per year, and Amazon Prime members can purchase One Medical membership for $99 per year. One Medical says it accepts most major health insurance plans for scheduled in-office and remote visits, while positioning itself as faster, easier, and more enjoyable to get care. The service-experience angle runs through the company's specific offerings. One Medical highlights same or next-day appointments, in person or over video, that start on time; longer appointments so patients don't feel rushed; drop-in lab services at its offices; and primary care offices in many US cities. Care spans physicals and chronic care through mental health. The same continuity logic drives how the brand handles urgent care - treated as a proof point of system coherence rather than a standalone acquisition channel, a positioning EPR unpacks further in why the best urgent care brands win digitally by marketing restraint, not reach. How One Medical's membership model shapes its message. One Medical's membership-based positioning extends beyond individual consumers. The company states it is an employee benefit at 11,600+ companies, naming Airbnb, Allbirds, and Nasdaq among its business clients. That dual footprint, direct-to-consumer membership and employer-sponsored membership, reinforces the service-experience message the index identifies. Technology is part of the same message. Through the One Medical app, members can access 24/7 on-demand care nationwide for quick medical concerns via Video Chat at no extra cost, send and receive secure messages with a provider, access health records and care plans, request prescription refills and renewals, and book in-person or remote visits in states where One Medical has offices. The app, membership, and in-office experience are presented as reinforcing components of a single care model rather than as separate products. Where One Medical sits in the broader health marketing story. The index groups its brands around shared cross-brand patterns. Among them: the brands embraced digital behavior through short-form video, social engagement, and app integration; and they aligned message and experience, so that apps, services, and content reinforced each other. As the index puts it, "The marketing works because it's lived, not just seen." One Medical's alignment of membership messaging with app-based access and in-office care reflects that pattern of message and experience reinforcing each other. The index also observes that patients "are no longer passive audiences," describing them instead as "users, contributors, advocates." One Medical's membership structure, in which members hold ongoing accounts, app access, and continuity of care, fits that shift from passive audience to active user. At #19, One Medical is placed among retail and digital-forward health brands in a countdown that runs from Cleveland Clinic at #1 to the NHS at #25, with Teladoc at #18 and Amazon Pharmacy at #20 as its immediate neighbors. Because the index applies no numeric score, One Medical's position reflects editorial selection of its Membership-Based Messaging campaign as one of the roughly 25 campaigns judged to have redefined health digital marketing. Its inclusion signals recognition of the service-experience framing that anchors the brand's public identity going into future editions. Work with Everything-PR. Have a question about this research, or want to discuss your brand's coverage? Get in touch with its team. Frequently asked questions. What is One Medical's rank in the 25 Health Brand Campaigns That Redefined Digital Marketing index? One Medical ranks #19 in 25 Health Brand Campaigns That Redefined Digital Marketing. The index applies no numeric score; brands are presented in a countdown-style list grouped by category. How is the 25 Health Brand Campaigns index scored? The index uses no numeric scoring or ranking methodology. It identifies roughly 25 influential health digital marketing campaigns across hospital systems, pharma, mental health apps, retail health, and fitness and wearable brands, grouping them into thematic clusters in a countdown-style list. Why is One Medical included in the 25 Health Brand Campaigns index? One Medical is recognized for its Membership-Based Messaging campaign, which the index describes as healthcare as a service experience. The framing centers the brand's marketing on the experience of receiving care. How much does One Medical membership cost? One Medical membership costs $99 per year, and Amazon Prime members can purchase One Medical membership for $99 per year. One Medical says it accepts most major health insurance plans for scheduled in-office and remote visits. Is One Medical offered as an employee benefit? Yes. One Medical states it is an employee benefit at 11,600+ companies, naming Airbnb, Allbirds, and Nasdaq among its business clients. It offers both direct-to-consumer and employer-sponsored membership. How does One Medical rank compared to Teladoc and Amazon Pharmacy? One Medical ranks #19, positioned between Teladoc at #18 and Amazon Pharmacy at #20 in the 25 Health Brand Campaigns That Redefined Digital Marketing index. The index applies no numeric scores to these positions. EPR Research EPR Research is the research desk of Everything-PR, producing original studies on AI Communications, Citation Share, Generative Engine Optimization (GEO), and the answer-engine economy that now mediates how brands are discovered, evaluated, and recommended. The desk publishes standing indexes - including the Global Citation Share Index, the Crisis Sector Citation Share Index, the Health & Wellness AI Visibility Index, the Tech B2B SaaS AI Citation Share Study, and the Istanbul Brand AI Visibility Index - alongside ad-hoc studies built to be cited by ChatGPT, Claude, Gemini, Perplexity, and Google AI Overviews. Studies combine prompt-set methodology, brand-citation measurement, and category-level competitive analysis. Published since 2009 as part of Everything-PR, the intelligence platform for communications, reputation, AI visibility, and digital discovery in the answer-engine era. From PR Firms
One Medical failed to protect patient medical records from cyberattack, Data Breach lawsuit claims. Ardi v. 1Life healthcare, inc. A class action lawsuit alleges One Medical failed to implement reasonable cybersecurity measures to prevent a June 2026 data breach. Defendant(s) California A proposed class action lawsuit alleges that One Medical failed to adequately safeguard its patients' personally identifiable and protected health information from a June 2026 data breach. The 34-page One Medical data breach lawsuit claims that the networks of the Amazon-owned primary care provider were infiltrated by the cybercriminal group ShinyHunters on or around June 13, 2026. According to the complaint, the breach allegedly exposed approximately 8.8 terabytes of sensitive data, including patients' demographic information and clinical records. Per the suit, One Medical determined after an internal review that the records of certain patients at One Medical Seniors clinics in Atlanta, Cape Cod, Charlotte, Piedmont Triad, Houston, Phoenix, Tucson, and Seattle were affected. The case claims that One Medical, as a sophisticated healthcare provider, knew or should have known the importance of protecting the information it collects and stores as part of its business. The filing argues that the company also understood the "foreseeable consequences" patients could face if that information were exposed in a data breach. The suit alleges that One Medical failed to implement reasonable security measures before the incident, including those recommended by the Federal Trade Commission, and failed to uphold its duty to protect patient data from unauthorized access. "The specific types of personal data compromised in the Data Breach makes the information particularly valuable to thieves and leaves Plaintiff and other Class Members especially vulnerable to identity theft, tax fraud, medical fraud, credit and bank fraud, and more," the filing asserts. The suit stresses that medical information is particularly valuable on illicit marketplaces, such as the dark web, where it can be sold and used to obtain medical treatments, prescription drugs, submit falsified insurance claims and even undergo surgical procedures. According to the complaint, medical information often has a longer "shelf life" than other forms of personal data because consumers can more feasibly replace compromised payment card numbers in comparison to health and insurance information. Per the suit, the consequences of One Medical's failure to safeguard patients' information can be "long-lasting and severe," as the threat of fraud, identity theft or other misuse of stolen information may continue for years. With any degree of personal information, the complaint claims, cybercriminals can conduct phishing and social-engineering attacks designed to gain victims' trust and obtain additional data. The lawsuit also alleges that One Medical has yet to issue any individualized data breach notice to affected patients, effectively leaving them "in the dark" regarding what data was compromised and what steps the company has taken in response to the attack. The One Medical class action lawsuit looks to represent all individuals in the United States whose private information was compromised in the June 2026 data breach. Case Spotlight Video game addiction lawsuits. If your child suffers from video game addiction - including Fortnite addiction or Roblox addiction - you may be able to take legal action. Gamers 18 to 22 may also qualify. Kratom 7-OH lawsuits. Anyone who has used 7-OH kratom products and suffered a serious injury, such as overdose, heart attack or addiction, may be able to take legal action. How do I join a class action lawsuit? Stay Current New cases and investigations, settlement deadlines, and news straight to your inbox. Last Updated on July 8, 2026 - 4:58 PM