Security and compliance

10 HIPAA compliance program experts

These ten professionals have held HIPAA privacy, security or compliance roles in which they ran HIPAA programs for health organizations. A reader can learn from them how HIPAA policies, workforce training, risk assessments and privacy incident handling work in practice and where programs tend to fall short.

10 professionals10 companiesData retrieved September 28, 2026

Professionals to explore

01—10
  1. Cassandra W.

    LinkedIn

    Experience: Director Risk Management Compliance, HIPAA Privacy Officer · Memorial Health Ohio

    Director Risk Management Compliance, HIPAA Privacy Officer at Memorial Health Ohio since December 2016. She previously served there as Risk Management Coordinator HIPAA Privacy Officer (2016) and Risk Management Coordinator (2011–2016), and her headline lists healthcare compliance, risk management, HIPAA and patient safety.

  2. Karen Faulk RHIA CHPS

    LinkedIn

    Experience: HIPAA Privacy Officer and Health Informatics Analyst · Wood County Hospital

    HIPAA Privacy Officer and Health Informatics Analyst at Wood County Hospital since March 2025, after serving there as HIPAA Compliance Coordinator and Health Informatics Analyst (2014–2025). Her profile lists skills in HIPAA, healthcare information technology, ICD-10 and medical coding, and she has been adjunct faculty at Terra State Community College since 2012.

  3. Kendra Latham RHIA

    LinkedIn

    Experience: HIM Director HIPAA Privacy Officer · Williamson Health

    HIM Director HIPAA Privacy Officer at Williamson Health since August 2024. She was Market HIM Director & HIPAA Privacy Officer at Lifepoint Health® Highpoint Health with Ascension Saint Thomas (2014–2024) and HIM HIPAA Dir & Regional HIIM System Coordinator at CHS (formally HMA) (2011–2014); her profile lists skills in medical compliance, HIPAA, CDI and revenue cycle.

  4. Lesley Anne M. Durant, JD

    LinkedIn

    Experience: Associate Compliance Officer HIPAA Privacy Officer · Promise Healthcare, Inc.

    Associate Compliance Officer HIPAA Privacy Officer at Promise Healthcare, Inc. in 2016, then Vice President - Chief Compliance & Privacy Officer at DHR Health (2016–2020). She has been Chief Privacy Officer at Privia Health since 2022 and Senior Corporate Counsel - Regulatory at United Surgical Partners International since 2020, and her profile cites planning, developing and implementing compliance programs and policies for health care providers.

  5. Maria Ontiveros

    LinkedIn

    Experience: HIPAA Privacy Officer · Confluence Health

    HIPAA Privacy Officer at Confluence Health since September 2022, after serving there as Human Resources Senior Benefits Specialist (2019–2022). Her profile describes her privacy officer work as covering policy development, training and education, privacy risk assessment and management, incident management and breach response, complaints handling and liaison with regulatory bodies.

  6. Nancy Dallas

    LinkedIn

    Experience: HIPAA Privacy Official Freedom of Information & Privacy Act Officer · Blanchfield Army Community Hospital

    Former HIPAA Privacy Official Freedom of Information & Privacy Act Officer at Blanchfield Army Community Hospital (2007–2022). She was also HIPAA Compliance Specialist at General Dynamics Information Technology (2003–2007), HIPAA Coordinator at Gateway Medical Center (2001–2002) and HIPAA Privacy Consultant at New Governance, Inc. in 2023, and her profile cites HIPAA privacy and security compliance work in military and civilian healthcare.

  7. Shandra Gibson

    LinkedIn

    Experience: Regulatory Compliance Manager II - HIPAA Privacy · MedImpact Healthcare Systems, Inc.

    Former Regulatory Compliance Manager II - HIPAA Privacy at MedImpact Healthcare Systems, Inc. (2018–2026). Since June 2026 she has been Program Manager, Compliance and Information Privacy Officer - Office of Legal Affairs at Eisenhower Health. Her profile describes helping healthcare organizations turn regulatory requirements into effective, defensible compliance and privacy programs through assessment, accountability and education.

  8. Sherry Perkins, CHP, CSCS, CHPC

    LinkedIn

    Experience: Director-HIPAA Compliance · Alliance Health

    Director-HIPAA Compliance at Alliance Health since July 2012, a role she describes as Director of HIPAA Compliance for a managed care organization within its Office of Compliance and Risk Management. Her profile cites experience with HIPAA privacy and security in the behavioral healthcare field, and she was Medical Records Manager at Wake County Government-Human Services (1993–2006).

  9. Steven Gee Jr.

    LinkedIn

    Experience: Chief Information Security Officer · Western Missouri Medical Center

    Chief Information Security Officer at Western Missouri Medical Center since February 2021. His profile describes him as a healthcare Chief Information Security Officer and HIPAA-designated security officer, with a headline that also lists cyber risk, incident command and board governance. His listing also shows Cloud Architect at T-Mobile (2018–2021) and Principal Product Manager at NETSCOUT (2015–2017).

  10. Teresa Garber, CHC, CHPC

    LinkedIn

    Experience: HIPAA Privacy Officer · Augusta Health

    HIPAA Privacy Officer at Augusta Health since November 2023, after serving there as Compliance-PHI Coordinator (2018–2023). She also held the title Clinical Systems Analyst, NCP-EHR, NCP-DM, NCP-PM at Augusta Health (2015–2023), and her profile lists skills in HIPAA, Medicaid, healthcare information technology and computerized physician order entry.

Choose the right perspective

Match the person's role to your gap, since privacy officers tend to know policies, patient rights and breach response while security officers and CISOs speak to technical safeguards and risk analysis. Also consider whether the setting they worked in, such as a hospital, health plan or other health organization, looks like yours.

Questions to take into the conversation

  1. 01How did you split HIPAA privacy and security responsibilities, and who owned the annual risk analysis?
  2. 02What does your process look like from a suspected privacy incident to a breach determination and notification?
  3. 03How do you train staff so HIPAA policies change behavior rather than being signed off once a year?

About this directory

This is a professional research starting point based on business profile data retrieved on . Titles and companies reflect that source snapshot and may describe past or present roles. Check the linked profiles for current details. Inclusion does not imply Instant Expert membership or availability.

Request a correction or removal

Other perspectives in Security and compliance