Director - System Privacy Officer
UnityPoint Health · West Des Moines, IA · 1 mo ago
FinanceFull-time
Responsibilities
- Provides leadership in achieving organizational and departmental goals through planning, organizing, implementing and monitoring progress in areas of responsibility
- Guides the organization on matters related to protected health information management
- Supervises team by motivating, mentoring, coaching and providing guidance
- Facilitates the ongoing learning, well-being, professional satisfaction and development of staff through training, work assignments, increased responsibility, and mentoring
- Keeps apprised of leading privacy practices for implementation within UPH
- Presents data, strategies, and progress towards goals in various governance management forums
- Develops and ensures up-to-date privacy training materials for the workforce and appropriate third parties to foster information privacy awareness and compliance
- Develops, implements, and periodically reviews UPH privacy policies, procedures, to incorporate changes in applicable laws, standards and regulatory guidance
- Works with legal counsel to serve as the subject matter expert on all privacy related regulations and state law to support systemwide initiatives where such regulations/laws may be implicated
- Directs and oversees the implementation, development, and evaluation of the UPH Privacy Program ("Program") across UPH and affiliated entities
- Oversees the development, and implementation of the systemwide access auditing and monitoring program to ensure compliance with privacy and security regulations
- Ensures appropriate investigation, follow-up action, documentation and tracking are conducted for privacy complaints to ensure compliance with regulations
- Collaborates with Corporate Information Security Officer to maintain and enhance the privacy and security programs for UPH
- Collaborates with marketing/communications and information technology teams to ensure marketing materials, websites, patient portals, etc. comply with privacy regulations
- Oversees and monitors all business associate agreements including maintenance of the database of business associate agreements to ensure all privacy concerns, requirements and responsibilities are addressed
Qualifications
- Required: Bachelor’s degree in healthcare or related field
- Preferred: Master's degree in healthcare or related field
- Required: 8 years of experience in healthcare privacy with an emphasis on the implementation of health information privacy programs with a minimum of 5 years serving as a Privacy Officer
- Required: Experience in conducting efficient and regular training, investigations, risk assessments and auditing and monitoring activities
- Required: Demonstrated ability to manage a privacy program in an integrated healthcare delivery system
- Required: Progressive leadership experience
- Licenses/Certifications: Certified in Healthcare Privacy Compliance (CHPC), Information Privacy Professional (CIPP), Certified HIPAA Professional (CHP) or similar certification.