Home » CHIME AEHIS Healthcare CISO Boot Camp Faculty 2022

Faculty
Erik Decker, MS, CISSP, CISO Intermountain Healthcare
About Erik
Erik Decker is the Chief Information Security Officer for Intermountain Healthcare, a multi-state integrated delivery network based in Salt Lake City, Utah. Erik has 22 years of experience within Information Technology, with 15 years focused on Information Security.
He serves as the Chairman for the Healthcare Sector Coordinating Council’s Joint Cybersecurity Working Group, which is a critical infrastructure public-private partnership organization covering more than 300 organizations and over 600 members. He also co-leads the Department of Health and Human Services (HHS) 405(d) task group focused on implementing the Cybersecurity Act of 2015, 405D legislation within the Healthcare sector. The publication was released in December 2018, titled “Health Industry Cybersecurity Practices: Managing Threats and Protecting Patients” (HICP).
Erik has been awarded the ISE® North America Executive: Academic/Public Sector, and the Chicago CISO of the Year. In 2018 he served as an expert witness to the House Committee on Energy and Commerce, Subcommittee on Health.
Erik has a Master’s of Science in Information Technology from Loyola University in Chicago and Bachelors degree of the University of Illinois in Champaign/Urbana in Cell and Structural Biology.
Keith Duemling, MPS, CHISL, CISM, CISSP, Director of Cybersecurity Technology, Cleveland Clinic
About Keith
Keith Duemling has served as Director of Cybersecurity Technology Protection for the Cleveland Clinic since early 2018. He oversees all cybersecurity protection platforms for all Cleveland Clinic facilities throughout North America and Europe. Before joining the Cleveland Clinic, he served in multiple information security roles within the healthcare space, including; engineering, architecture, identity management, incident management, and risk management, over an 18-year timeframe. In addition, he has managed multiple disciplines within Information Technology such as; network management, endpoint management and has been responsible for a 24×7 service desk.
He is a graduate of Penn State University with a bachelor’s degree in Security and Risk Analysis and a master’s degree in Cybersecurity and Information Assurance. In addition, he expects to complete a healthcare-focused Master of Business Administration degree from Penn State University in late-2022.
He is also a graduate of the Carnegie Mellon University CISO-Executive Education and Certification Program. Keith also maintains multiple technical and leadership certifications from various organizations such as; CHIME, HIMSS, ISACA, and ISC2.
He served within the United States Army Quartermaster Corps, a subordinate command of the United States Army’s Combined Arms Support Command. He received an honorable discharge from the United States Army and multiple commendations for service.
He lives outside Cleveland, Ohio, with his wife and three children.
David Finn, MA, VP of AEHIS, AEHIT, AEHIA, and Associate Program Director, CHIME
About David
David Finn’s 30+ years in risk management and control objectives of technology (including audit, security, and privacy) equip him with a deep knowledge of healthcare from both the provider and vendor perspectives. He has demonstrated leadership skills in planning, management, and control of enterprise-wide, mission-critical information technology and business processes as a member of executive leadership teams at various organizations. He has a special knack for creatively engaging all types of audiences and conveying messages that even change-resistant users listen to and remember. He is focused on creating and maintaining trust in and value from information and information systems.
Finn holds a BA degree from the University of North Dakota and a MA from Angelo State University. He currently serves on the CHIME Board of Trustees. During 2014, he worked closely with CHIME management to create and initiate the Association for Executives in Healthcare Information Security (AEHIS). In March 2016, Finn was named to the Health Care Industry Cybersecurity Task Force. This HHS task force was a requirement of Cybersecurity Information Sharing Act of 2015 (CISA). In 2017, Finn joined the 405(d) Working Group under the auspices of the Office of the CIO at HHS.
He currently serves as VP at CHIME, responsible for providing programs, services and educational opportunities focused on the professional growth and development of leaders within the healthcare security, technology, and application focus areas, including their respective corporate foundations. Previously he served as EVP at CynergisTek, a top-ranked security provider in healthcare; HIT Officer, Symantec; Vice President and CIO/Privacy and Information Security Officer, Texas Children’s Hospital, and Integrated Delivery System;Executive Vice President, Healthlink (formerly IMG). His Board experience, in addition to both CHIME and HIMSS, also includes ISACA Professional Influence and Advocacy Committee member; Healthcare for the Homeless – – Houston; and the Patient Care Intervention Center.
Anahi Santiago, MBA, CISM, CISO, ChristianaCare
About Anahi
Anahi Santiago, MBA, CISM, is the CISO at ChristianaCare Health System, the largest healthcare provider in the state of Delaware. Prior to CCHS, she spent over 10 years as the information security and privacy officer at Einstein Healthcare Network. In her role as CISO she has overall responsibility for the organization’s cybersecurity and assurance program. Santiago leads a team of information security professionals in supporting CCHS’s strategic initiatives by collaborating with clinical and business leaders, managing cybersecurity risks, implementing policies and controls, generating overall awareness and fostering a culture of security and safety.
She is an active contributor and member of several local, state and federal cybersecurity organizations including the Healthcare Sector Coordinating Council’s Cybersecurity Working Group, Delaware Healthcare Cybersecurity Alliance and Philadelphia’s Women and Cybersecurity group.
Tim Stettheimer, PhD, MS, VP of Education, CHIME, and Provost, CHIME University
About Tim
Timothy Stettheimer, PhD, is Vice President of Education for the College of Healthcare Information Management Executives (CHIME), a 2,400-plus member professional organization. In this role, Dr. Stettheimer leads all education strategy for members and affiliate associations, as well as international efforts. Education initiatives include CHIME’s Fall and Spring Forums, CIO Bootcamps, Leadership Academies as well as other summits, workshops and symposia.
Dr. Stettheimer has previously served as a healthcare CIO for two decades and has worked with healthcare information technology and healthcare leaders for twenty-five years. He most recently served as the Regional Chief Information Officer (RCIO) for the South and Central Region of Ascension Information Services (AIS), which is made up of seven geographic markets as well as all senior living locations and all medical groups. As RCIO, Dr. Stettheimer was the regional leader responsible for AIS service delivery and technology visioning. He also guided governance models, served on Ascension-level committees, and supported diverse AIS functions such as goal sponsorship, compensation committee efforts, IT general control oversight, infrastructure governance, and AIS Model Community Survey action planning.
Prior to his Ascension role, Dr. Stettheimer served as the Senior Vice President and Chief Information Officer for St. Vincent’s Health System, Birmingham. In this role, he was responsible for managing the Health Ministry’s technology strategy, portfolio, and operations, while serving as the Health Ministry’s technology service delivery senior escalation point. He has also served in leadership roles at Adventist Health System and Children’s Medical Center of Dallas.
Dr. Stettheimer earned a doctorate in information services focused in medical informatics, information theory and design, and information policy and management from the University of North Texas in Denton. He holds a master’s degree in applied cognition and neuroscience from the University of Texas in Dallas and a bachelor’s degree in psychology from Hardin-Simmons University in Abilene, Texas. Dr. Stettheimer is a fellow with both the American College of Healthcare Executives (FACHE) and the College of Healthcare Information Management Executives (FCHIME). He is a member of the American Medical Informatics Association (AMIA), holds the Certified Healthcare CIO (CHCIO) credential, is a certified professional in healthcare information management systems (CPHIMS), and is a member of the Healthcare Information Management Systems Society (HIMSS). He served as a fellow through a National Institute of Health grant during his doctoral studies. Dr. Stettheimer has held faculty positions with the University of North Texas and the University of Alabama at Birmingham and serves on a number of non-profit boards.
Dr. Stettheimer has earned the Certified Healthcare CIO distinction from the College of Healthcare Information Management Executives (CHIME). He also served as the CHIME 2010 Board Chair, the 2011 CHIME Foundation Board Chair and the 2013-1014 CHIME Education Foundation Board Chair. Dr. Stettheimer and his wife Carol live in Birmingham, AL and are the parents of four children.
Teresa Tonthat, CISO, Texas Children’s Hospital
About Teresa
Teresa Tonthat serves as the chief information security officer for Texas Children’s, the largest children’s hospital in the United States recognized for pediatrics, obstetrics, gynecology and research. She has more than 18 years of experience in information security, information technology audit, compliance and cyber risk. She is responsible for establishing long-term security strategy, assessing cyber risk, emerging threats and developing value-added security capabilities for the organization.
Tonthat joined Texas Children’s in January 2018. During her tenure, she has provided leadership over the delivery of multiple security capabilities in an effort to continuously strengthen the organization’s security posture. Prior to joining Texas Children’s, she was responsible for information security at Halliburton. Under her leadership, a multinational global security team was focused on mitigating cyber risk within the digital oilfield operations in over 80 countries.
Dee Young, MA, CISM, CISO, UNC Health Care
About Dee
Dee Young is currently the Chief Information Security Officer for UNC Health system. UNC Health is a growing healthcare system and currently comprises UNC Hospitals and its provider network, the clinical programs of the UNC School of Medicine, and fourteen hospitals and eighteen hospital campuses statewide and over 900+ clinics.
In this role, Dee leads the UNC Health Information Security teams responsible for cybersecurity, security compliance, and cyber risk management efforts that secure and protect information important to UNC Health staff, patients and partners while ensuring the overall cyber resiliency of the system.
Young’s twenty plus years in leadership positions within security and technology across healthcare, academia, and industry. Dee has held numerous technical certifications and currently is a Certified Information Security Management Professional (CISM). She also has a MA in Organizational Management.
Dee is also an active member and mentor within many professional organizations. She was named as a CHIME Healthcare Hero for her involvement and work to help cybersecurity efforts in the development of tabletop exercises to help smaller healthcare organizations respond efforts of the rapid deployment of the remote workforce for COVID pandemic response. She is also on the AEHIS Board of Trustees.
She has been a frequent speaker for cybersecurity topics including topics like cyber incident response, mentoring, and medical device/IoT security.
She is an active hiker, backpacker and loves scuba diving. She spends free time with her family exploring North Carolina.