High-performing Privacy/Security Officer with integrity and leadership skills. Applies knowledge and abilities to positively impact HIPAA and Cybersecurity compliance matters. Flexible in different situations and dynamic conditions. Works great under extreme stress and deadlines.
Overview
22
22
years of professional experience
1
1
Certification
Work History
HIPAA Privacy and Security Officer
Defense Health Agency, Brooke Army Medical Center
JBSA Ft. Sam Houston, TX
07.2016 - Current
Developed and implemented HIPAA policies and procedures, for 10k+ employees, at the largest Military Treatment Facility, in the DoD.
Assisted in developing strategies to ensure that the organization is fully compliant with current HIPAA, GDPR, NIST, CPRA, HITRUST, and ISO 27001 standards.
Utilized risk management techniques and business knowledge to improve compliance programs and safeguard Personally Identifiable Information (PII) and Protected Health Information (PHI/ePHI).
Provided regular training on HIPAA regulations to staff members.
Analyzed data to proposed changes in organizational structures or processes for potential impacts on existing HIPAA compliance efforts, to senior leadership.
Established internal controls and processes to support compliance through project management and engagement of key stakeholders.
Provided counsel to BAMC CIO, ISSM, and senior hospital leadership, for HIPAA-related issues.
Worked directly with BAMC Cybersecurity ISSM/team to coordinate data security measures, utilizing Risk Management Framework (RMF).
Maintained records of all HIPAA violations and reported them as required by law.
Investigated and reported all data breaches IAW all state, federal and DoD policies and procedures.
Drafted reports summarizing the results of investigations into potential non-compliance.
Ensured that appropriate measures were taken when disposing of confidential information or materials containing protected health information.
Planned and executed compliance audits to check company policies, procedures and controls.
Developed a system for tracking audits, patient privacy complaints, investigating them, and responding accordingly.
Coordinated responses to any suspected violations of HIPAA regulations by external entities such as vendors or business partners.
Performed regular Privacy Risk Assessments (PIA) in order to identify systems and areas where additional safeguards may be necessary.
Voting member of our Technical Assessment and Review Team (TART) for all IT-related HIPAA compliance.
Worked closely with IT personnel to ensure that all electronic systems are secure according to established guidelines.
Ensured that systems utilizing data cloud storage adhere to FedRAMP standards.
Clinical Systems Trainer
U.S. Army, Brooke Army Medical Center
JBSA Ft. Sam Houston, TX
01.2011 - 07.2016
Responsible for the delivery, of Electronic Healthcare Record (EHR) training, to 10k+ employees, at the largest Military Treatment Facility in the DoD, and overseas.
Created instructional materials such as manuals, presentations and handouts to meet clinical system training requirements.
Maintained accurate records of all training activities and results.
Used role-playing, lectures, and simulations to present information in variety of instructional techniques and formats.
Identified areas where additional training was needed and designed relevant courses accordingly.
Developed strategies to ensure that end-users are able to effectively use the system's features.
Assessed training needs through surveys, interviews with employees or focus groups.
Scheduled classes based on availability of classrooms, equipment or instructors.
Combat Medic (68W)
U.S. Army
Fort Carson, CO
09.2002 - 02.2009
Assisted and collaborated with medical doctors and nurses to treat patients.
Administered emergency treatment to battlefield wounds and infections.
Performed emergency life support and treated sick and injured persons at remote locations.
Monitored vital signs such as pulse rate, blood pressure level, temperature of injured personnel during transport to ensure they remain stable until they reach the hospital.
Reported and documented medical treatment administered on-site and during transport to healthcare facility.
Attended training sessions, maintained required certifications and kept current in lifesaving techniques and technologies.
Provided treatment in combat zones and health facilities.
Supervised junior medics assigned to my unit during field operations ensuring proper implementation of safety rules and regulations.
Education
Bachelor of Science - Computer Information Systems