Privacy Director
Plain City, Madison County, Ohio, 43064, USA
Listed on 2026-01-12
-
Healthcare
-
Management
Privacy Director
Join to apply for the Privacy Director role at Bon Secours
.
With a legacy that spans over 150 years, Bon Secours is a network dedicated to providing excellent care through exceptional people. At every level, everyone on our teams has embraced the call to provide compassionate care. Here, you can work with others who share common values and use your skills to help extend care to all of our communities.
Work from Home / RemoteRegional remote location in the United States (Eastern/Central Time Zone preferred). We operate in the Eastern Time Zone.
Reports to:
System Director, Compliance – Privacy.
# of Direct Reports: 2.
Primary Function / General PurposeAs directed by the System Director, Compliance, this position oversees all ongoing activities across defined service areas within the group related to the development, implementation, maintenance of, and adherence to the organization’s policies and procedures covering the privacy of, disclosure of, and access to, patient PHI in compliance with federal and state laws and the healthcare organization’s information privacy practices.
Essential Job Functions- Assists in building a strategic and comprehensive privacy program that defines, develops, maintains and implements policies and procedures that enable consistent, effective privacy practices.
- Collaborates with IT Security Directors and Information Services Directors, or their designee, to ensure alignment between security and privacy programs including policies, practices and investigations.
- Collaborates with IT, Security, Legal, and Business partners for privacy impact assessments and incident response.
- Guides business in assessing and mitigating privacy risks by providing recommendations and controls for AI, machine learning, and digital health technologies.
- Develops and enhances formal processes for privacy risk assessments with vendors, contractors, and business associates, including data management and data destruction.
- Public-facing responsibilities such as supporting responses to consumer, government and media inquiries about privacy incidents or policies.
- Regularly benchmarks privacy program maturity against industry standards.
- Conducts ongoing compliance monitoring activities in coordination with the organization’s other compliance and operational assessment functions.
- Reviews role-based access controls; conducts and oversees audits of access to PHI; recommends appropriate action necessary as a result of audit activities.
- Takes a lead role to ensure the organization has and maintains appropriate privacy and confidentiality consents, authorization forms and information notices and materials reflecting current organization and legal practices and requirements.
- Conducts Risk Assessments to identify, evaluate and mitigate potential threats to PHI.
- Oversees, develops and delivers advanced privacy training modules, including scenario-based learning and regular refreshers.
- Participates in the development, implementation and ongoing compliance monitoring of business associate agreements to ensure all privacy concerns, requirements and responsibilities are addressed.
- Establishes, with management and operations, a mechanism to track access to PHI within the purview of the organization and as required by law and to allow qualified individuals to review or receive a report on such activity.
- Contributes to the establishment and administration of a process for receiving, documenting, tracking, investigating and taking action on all types of complaints concerning the organization’s privacy policies and procedures in coordination and collaboration with other Directors, managers of other functional areas and, when appropriate, risk managers and legal counsel.
- Provides leadership, support and supervision to Privacy program staff in performing day-to-day privacy-related functions.
- Certified in Healthcare Privacy Compliance – Health Care Compliance Association (required)
- Certified in Healthcare Compliance – Health Care Compliance Association (required)
- Certified Information Privacy Manager – International Association of Privacy Professionals (required)
- Bachelor’s in Healthcare,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).