Philip R. Davis

Attorney | Indianapolis

Phone: (317) 977-1412
| Fax: (317) 633-4878

Envelope Icon Email Philip vCard Icon Download vCard

About Philip

Phil Davis is a health care technology attorney who advises health care organizations on the complex legal, regulatory and operational challenges that drive today's technology and cybersecurity decisions.

Drawing on more than a decade of experience as a health care information security leader, including serving as Chief Information Security Officer for a large nonprofit health system, Phil provides practical, operational guidance that helps clients manage risk, respond to evolving threats and support strategic technology initiatives.

Phil's practice includes:

  • Advising on HIPAA and HITECH compliance, privacy program development and regulatory requirements;
  • Counseling clients on cybersecurity incidents, data breaches, government investigations and incident response;
  • Advising on artificial intelligence governance, including the legal, privacy and security considerations of deploying AI tools in health care settings;
  • Negotiating and drafting technology, software and vendor agreements, including complex IT procurement contracts; and
  • Conducting HIPAA risk analyses, evaluating technology, website and marketing practices and advising on broader information security and privacy compliance matters.

Phil is known for his practical, business-minded approach and his ability to translate complex technical and regulatory issues into actionable guidance. He holds CISSP, CIPP/US and CHC certifications and is a frequent speaker on health care privacy, cybersecurity, artificial intelligence and information security topics.

EDUCATION

  • Purdue University, B.A. - 2008
  • Indiana University, M.S. - 2022
  • University of Southern Indiana, M.B.A. - 2025

  • Cooley Law School, J.D. - 2012

ADMITTED TO BAR

  • Indiana - 2012
  • U.S. District Court, Northern District of Indiana - 2012
  • U.S. District Court, Southern District of Indiana - 2012

memberships

  • Indiana Executive Council on Cybersecurity
  • American Health Law Association
  • Health Care Compliance Association
  • International Association of Privacy Professionals
  • International Information System Security Certification Consortium (ISC2)

Relevant Experience

  • Health System Associate General Counsel
  • VP, Chief Information Security Officer
  • Healthcare IT Security Director

Certifications

  • Certified Information Systems Security Professional (CISSP) Certification from ISC(2)
  • Certified Information Privacy Professional – US (CIPP/US) from IAPP
  • Certified in Healthcare Compliance (CHC) from HCCA

Presentations

The Fundamentals of HIPAA Compliance
The Fundamentals of HIPAA Compliance - Webinar [04/12/2024] SEE MORE