Mary E. Summers
E-mail: **************@*****.***
Summary of qualifications
Epic Security Coordinator
o14 years Epic security (EMP & SER) build
20+ hospital and 300+ clinics over the span of my career
Experienced Epic Security PM and Team Lead
oSpecialist in:
New implementations, reworks and upgrades and piloting of new Epic modules
Security build/maintenance in multiple environments
SER SME (Subject Matter Expert)
Identity and Access Management
Chronicles auditing, reporting and narrative response preparation for:
CMS, Secret Service, PWC (Price Waterhouse Coopers) relating to access provisioning, terminations and HIPAA compliance and or breaches in security
E-Prescribing and EPCS (Electronic E-Prescribing Controlled Substance)
Provider interface configuration and testing
Downstream ancillary interface provider issue resolution
Provider and billing interface error workque resolution
Login Labs
Command Center scheduling and coverage
Blueprint build and implementation
Unverified Provider Report build and maintenance
Duplicate Provider Report build and maintenance
Interoperability configurations required for successful provider attestation to CMS
Change Control process development and integration
Security Team build and training, pre and post certification training
Working with centralized and decentralized security teams
Epic Certifications:
-Security Coordinator
-Bridges
Epic Badges:
-Provider Administration
-Data Courier Mover
Epic Training:
-Care Everywhere
-EpicCare Link
-Cogito
-Chronicles Install Utilities
Additional Training and Experience:
-Trained by Imprivata on SSO and Two Factor Authentication implementation with Epic and LDAP systems
-ServiceNow and other issue management systems
-PeopleSoft Directory Management and LDAP (Lightweight Directory Access Protocol)
-Identity Access Management processes and procedures
-Proficient in Microsoft Office, Office 365 and Teams
-Webex and Teams meeting scheduling/hosting
Work Experience
9/23/19 – 4/20/20: Baylor, Scott & White Dallas, TX
***Furloughed 4/1 due to COVID-19 crisis, Contract Term 4/20/20
Epic Security Project/Interim Security Team Manager
Unexpectedly assumed interim Security Team Manager role, in addition to the Epic Security PM role for which I was originally contracted.
Supervised staff of 4 FTE’s and 3 consultants
Interviewed potential new hire candidates and authorized hiring
Provided guidance and training for newly hired Epic Security Manager
Functioned as Epic Security PM, providing weekly updates of security build/implementation preparation for pending go-lives, and presented Epic GLRA (go-live readiness assessment) to organizational leadership and Epic project leadership multiple intervals leading up to each go-live
Managed access and oversight of over 50,000 existing and future Epic providers and users
Documented existing workflows documented, reviewed and updated to allow for more efficient and timely work completion
Provided OJT to increase the team’s proficiency at performing provisioning, troubleshooting and resolution to Epic security and provisioning related issues.
Developed and implemented strategic plan for provisioning future implementations, including all pre-live activities, command center coverage, on-call duties, etc.
Provided subject matter expert consultation for the implementation of the organization’s provider interface; the required build in the 3rd party credentialing application (Echo); and Epic build necessary to complete the interface, testing and implementation
As SER SME, tasked with development of a plan to merge SER record creation from the Cadence to the Security Team, as well as process updates necessary to successfully integrate use and maintenance of the Epic Unverified Provider and Duplicate Provider reports to accurately create SER records in Epic
Scheduled and worked command center support, additionally providing 24/7 on-call support for the new manager and team pre, during and post go-lives
1/8/18 – 9/1/19: Atlantic Health System Morristown, NJ
Consultant – Epic SER SME
Successful performed the role of Epic Security Lead for new “big bang” installation across 5 hospitals, a rehabilitation/specialty surgical hospital and 80+ new clinics, as well as follow up implementation of Epic v.2019 upgrade across facilities
Provided additional Epic security and interface training to existing User Access Management team
Functioned in the role of Security Lead for go-live preparation, readiness and command center support
Facilitated high level meetings with CMIO, Epic IT management and MSO (Medical Staff Office) leadership
Provided guidance, education and process development for Epic security to new User Access Management Manager
Assisted with, and actively participated in facilitation of Epic Application Security Workgroup meetings
Performed the role of Security/Provider project manager, working with multiple Medical Staff Offices (MSO) at multiple locations, educating, coordinating and implementing credentialing automation into Epic EHR.
Provided reporting from Epic for internal and external audits pertaining to Epic security and access provisioning
Developed organizationally specific documentation for Epic security and provider administration
Completed Termination/Transfer/New User etc. requests for the Epic application
Actively participated in the build and testing of security access with all Epic application teams, ancillary interface updates and any and all testing related to Epic security and provider centric information
Experienced with Epic Bridges build and development of organizational process documentation to include testing scenarios for Surescripts/Epic e-prescribing and e-prescribing controlled substance implementation, as well as Imprivata SSO and two -factor authentication
Provided on-site and 24 hour on-call support for the Security team during the entirety of my tenure with the organization
Provided documentation of access provisioning processes in response to CMS’s Initial EHR Meaningful Use Risk Assessments
Provided build guidance and training to Care Everywhere/Anywhere analysts
Performed major clean-up project of Epic provider records to allow AHS to attest for Interoperability Measures accurately
7/2016 – 12/31/17: FirstHealth of the Carolinas Pinehurst, NC
Epic New Implementation Security Project Manager – Security Coordinator Consultant Analyst
Successfully performed as Epic Security Project Manager for new Epic v. 2015 “big bang” implementation on VMWare platform
Performed legacy user role analysis and comparison to Epic security roles/template build to design a user and access matrix for go-live
Facilitated high level meetings with CMIO, Epic IT management, VP’s of the organization, Legal and Compliance, to determine best approach for the Epic Security implementation as well as ongoing Security project management
Built out in excess of 7,500 internal Epic user access and provider records, as well as several thousand additional external users and providers in preparation for go-live
Developed and documented customized Epic access maintenance/management processes
Provided Epic environment management, data courier and change control training to the new Epic Environment/Data Courier Manager
Developed and documented an integrated hospital/Epic change control process
Provided Epic security and provider training to Epic application security leads
Provided build guidance and training to Care Link and Care Everywhere/Anywhere analysts
Assisted with the build, and documented specific processes, for Surescripts/Epic integration implementation, and Imprivata Two-Factor authentication
Provided Bridges (interface) trouble-shooting and issue resolution to multiple application teams
Facilitated weekly, bi-weekly Security team meetings with module security application leads and Epic Security counterparts
Performed the role of Security/Provider project manager, working with multiple Medical Staff Offices (MSO) at multiple locations, educating, coordinating and implementing credentialing automation into Epic EHR.
Assisted with the build and testing of the provider interface from existing MSOW application into Epic, as well as Surescripts interfaced integration and implementation for e-prescribing
Provided on-site and 24 hour on-call support for the Security team during the entirety of my tenure with the organization
Provided documentation of access provisioning processes in response to CMS’s Initial EHR Meaningful Use Risk Assessments for Stage 2.5 Meaningful Use Risk Assessment
Performed Epic reporting from Chronicles and Reporting Workbench, for auditing purposes, producing information and audit justification statements as required for internal/external corporate auditors, as it pertained to Epic access build and security provisioning
Managed on call schedule, and work load to maximize efficiency and decrease access request turnaround times
Aided technical teams as well as application teams as needed for direction in how Epic is designed and functions
Created and maintained processes and procedure documentation
Created restricted access templates for TDR access
Completed Termination/Transfer/New User etc. requests for the Epic application
2/2007 - 7/2016: University of Florida (Shands Hospital and Clinics) Gainesville, FL
Epic Security and Identity Access Management Analyst
Senior Epic Security Coordinator and Identify Access Management analyst
Security Coordinator for new inpatient and clinical Epic implementation of version 2009 and subsequent upgrades for Epic versions 2010, 2012, 2014 and 2015 Epic for 5 UF/Shands owned hospitals, two regional UF/Shands owned hospitals and all UF Physicians clinics
Performed legacy user role analysis and comparison to Epic security roles/template build to design a user and access matrix for go-live
Facilitated high level meetings with CMIO, Epic IT management, VP’s of the organization, Legal and Compliance, to determine best approach for the Epic Security implementation as well as ongoing Security project management
Facilitated weekly, bi-weekly Security team meetings with module security application leads and Epic Security counterparts
Performed the role of Security PM, representing the Epic Security team in all pre/post live security and access related meetings
Built and maintained 172 Epic, UF customized, import templates for the creation and maintenance of provider records for all user and provider types, for ease and better productivity in daily activities
oThese templates are in use by Epic today and are the platform for the new Blueprint build in Epic v. 2019
Built over 15,000 internal Epic user access and provider records, and over 100,000 additional external user and provider records
Developed and documented customized Epic access maintenance/management processes for the organizations multiple hospitals and clinics
As Senior Security Coordinator, participated in the development and on-going enhancement to integrated hospital/Epic Change Control processes
SER SME for all UF/Shands hospitals and UFP clinics
Provided training to 16 Security Coordinators, across multiple hospitals, worked integrally with all Epic application analysts to facilitate appropriate Epic user access and security templates
Performed as Security/Provider project manager, working with multiple Medical Staff Offices (MSO) at multiple locations, educating, coordinating and implementing credentialing automation into Epic EHR.
oIncluding MSOW to Epic provider interface integration and implementation and MSOW to Epic to Surescripts interfaced integration and implementation
Participated in Epic Care Everywhere pilot module development to including build and implementation.
oTraining also provided to Care Everywhere analysts
Epic Bridges (interfaces) trained to perform HL-7 message error resolution for Surescripts and all other provider centric interfaces
Provided on-site and on-call support for the Security team
Assisted the Identity and Access Manager in completing CMS Stage 2 Meaningful Use Risk Assessment
Performed Epic reporting for auditing purposes, producing information and audit justification statements as required for internal/external corporate auditors, UF and Shands Legal and Compliance audits, CMS and Secret Service audits, as it pertained to Epic access and provisioning
Managed on call schedules, PTO requests, and work load disbursement to maximize efficiency and decrease access request turnaround times
Aided technical teams as well as application teams as needed for direction in how Epic is designed and functions
Created and maintained processes and procedure documentation
Created restricted roles for TDR access
Provided on-site and on-call support for the Security team
Completed Termination/Transfer/New User etc. requests for the Epic application