Jenna D. Brinkley
Privacy Officer, Hospital systems
Memphis, TN · (229) 555 0120 · name@example.com · linkedin.com/in/jennadbrinkley
Key Qualifications
EXPERIENCE
Eight years in health information privacy, five as the designated privacy officer
INDUSTRIES
Hospital systems, physician practices, home health
SPECIALTIES
Breach risk assessment, access auditing, patient rights requests, business associate oversight
SYSTEMS
Epic, OneTrust, Protenus, Power BI
CREDENTIALS
Certified Information Privacy Professional, United States
EDUCATION
Master of Science in health informatics, University of Memphis
Results at a Glance
16 days
By moving intake
640
Access alerts
300
Patient requests
210
Business associate agreements
Executive Summary
Privacy officer for a regional health system, responsible for the privacy program under the Health Insurance Portability and Accountability Act. Investigates access incidents, decides on breach notification, and keeps 4,000 staff trained on what they may look at and what they may not.
Signature Achievements
- Cut the average privacy incident investigation from 16 days to 5 by moving intake into a single queue.
- Reviewed 640 access alerts in a year and substantiated 9 cases of inappropriate record viewing.
- Answered 300 patient requests for records and amendments within the 30 day window with no complaints escalated.
- Brought 210 business associate agreements up to current terms after finding 40 with no breach notification clause.
- Reduced repeat privacy findings at 3 clinics to zero after targeted retraining of 180 staff.
- Led a mailing error response affecting 2,400 patients with notification issued in 9 days.
Professional Experience
Privacy Officer
Bluff City Regional Health, Memphis, TN 2021 to present
Designated privacy officer for a 3 hospital system with 4,000 employees.
- Runs breach risk assessments and prepares patient, regulator and media notification when required.
- Owns the access monitoring program and reviews alerts with information security weekly.
- Manages business associate agreements and vendor privacy reviews before contracting.
- Reports incident volume, cause and remediation to the compliance committee each quarter.
Privacy Analyst
Wolf River Medical Group, Germantown, TN 2018 to 2021
Analyst supporting a 120 provider group across 16 clinic sites.
- Processed patient rights requests including records, restrictions and accounting of disclosures.
- Investigated snooping reports and drafted findings for the compliance officer.
- Delivered new hire privacy training to 400 employees a year.
Licensure and Certification
Certified Information Privacy Professional, United States, International Association of Privacy Professionals, 2020
Certified in Healthcare Privacy Compliance, Health Care Compliance Association, 2022
Education
Master of Science in health informatics, University of Memphis, 2018
Bachelor of Science in health administration, Tennessee State University, 2015
Core Skills
Breach risk assessment · Access auditing · Patient rights requests · Business associate oversight · Incident investigation · Policy writing · Epic · OneTrust · Staff training · Committee reporting