Advance Search

Browse Jobs

Deputy Head of Information Security & DPO

Posted a month ago

  • Nottingham, Nottinghamshire
  • Any
  • External
  • Expires In 2 months
Employer
Nottingham University Hospitals NHS Trust
Employer type
NHS
Site
City & Queens Medical Centre Hospitals
Town
Nottingham
Salary
£58,972 - £68,525 per annum
Salary period
Yearly
Closing
02/06/2024 23:59
Deputy Head of Information Security & DPOBand 8bJob overviewWhat’s the offer? Are you looking for an exciting challenge and an opportunity to make a real difference? Are you passionate about leadership and nurturing people? Are you experienced in the world of data protection and security?
At University Nottingham University Hospitals NHS Trust, we have a fantastic opportunity for you to become a Deputy to our Data Protection Officer within our exciting Information Governance team. Data Protection and Security / Information Governance is a requirement of every UK organisation ensuring that you are entering a career in an area of continued demand and expertise.
You probably know the NHS is one of the largest employers in the UK and EU and it needs you. In return this role can offer you a fantastic opportunity for you to learn, grow and develop whilst using your leadership abilities. Main duties of the jobWhat’s the role? The Trust has recently undertaken a new workforce change, and adopted a new structure as set out within the job description. This role requires you to play a vital role in developing and delivering the service and achieving our new vision.
You will be the Deputy to the Data Protection Officer and work closely with people at all levels, joining at an exciting time where there is lots of change to deliver the Trusts strategy of People First. As well as our objective to Centralising, Standardising and Digitalising. You will be dynamic, enthusiastic and approachable and the ability to be able to evidence success in a senior manager position within a complex health care environment is essential. You’ll take the lead on a number of key responsibilities including the below, as part of the Trust’s new vision that is outlined within the job description: Data Protection(i.e. Data Protection Impact Assessments, Data Sharing / Processing Agreements and Information Asset Management)Data Requests(i.e. Subject Access Requests and Freedom of Information Requests and all types of disclosures)Data Breaches(i.e. Data incidents breaches of the Confidentiality, Integrity and Availability (CIA) triad of Information Assets)Data Security(i.e. NHS Data Security and Protection Toolkit / Regulatory compliance)Working for our organisationWith over 20,000 staff, we are one of the biggest employers in the city with a central role in supporting the health and wellbeing of our local population. We play a leading role in research, education and innovation.Come and join our wonderful team at NUH. We are big believers in diversity and welcome new ideas to help develop our team in order to deliver world class healthcare to the vast patient populations we serve. With endless personal development opportunities available, at NUH we will endeavour to turn your job into a career!We particularly welcome applications from people who identify as Black, Asian and Minority Ethnic, or Disabled, as we are striving to be better represented at NUH.Detailed job description and main responsibilitiesPlease refer to the job description and person specification attached to the advert for the full details of the vacancy.In addition to the brief list above you must familiarise yourself with the full job description and person specification attached to this advert prior to applying.Person specificationCommitment to Trust Values and BehavioursMust be able to demonstrate behaviours consistent with the Trust’s “We are here for you” behavioural standardsTraining & QualificationsEducated to master degree level or equivalent experienceCompleted Data Protection Officer practitioner, or equivalent, trainingEvidence of and continuing professional developmentExperience and knowledge in Data Protection & Security and in interpretation and applications of legislation in a large public acting organisationRelevant Data Protection, Cyber Security and Information Technology qualifications. i.e. (Specific expert Data Protection and / Freedom of Information legislation practitioner) (Specialist knowledge in relation to Data Protection and Security) (Data / Information Security / Cyber Security QualificationExpert knowledge of the Data Protection Act and Freedom of Information LegislationMust be willing to participate in any relevant training to develop skills required to carry out dutiesEvidence of continuing professional development in relevant area (s) (Records Management, Data Retention, Data Protection, Handling Information)Data Security / Information Security QualificationCertified Information Systems Security Professional (CISSP)Certified Cloud Security Professional (CCSP)Certified Ethical Hacker (CEH)Formal management/leadership training/qualificationExperienceSignificant operational management experience in leading a team in a highly demanding and complex organisation as a leaderExtensive experience in a similar position or in a senior information governance role within the NHSExperience of the NHS Data Security & Protection ToolkitComprehensive knowledge of information governance, data protection legislation / best practiceExperience of leading the development and/or implementation of an information governance framework within a complex, multi-site organisationStrong track record of successful delivery of performance standards in a challenging environmentExperience of working collaboratively with a range of professional groups to achieve improved outcomesAble to develop strategies to meet objectives and workload demandExtensive experience of managing and developing a team, including delegation and overseeing dutiesPreviously responsible for a budget, involved in budget setting and working knowledge of financial processesConsiderable in depth knowledge and experience of working within the Health and Social Care sector in relation to NHS Information Governance definitions and requirements; Caldicott Guardian role, Senior Information Risk Owner role, Confidentiality, Integrity and Availability and Data Security & Protection Toolkit requirements etc.Highly developed knowledge and understanding if Data / Cyber / Information Security requirements within an NHS environmentExpert knowledge of Data Protection Act (DPA) 2018 (UK GDPR) /, Freedom of Information Act (FOIA) 2000, Access to Health Records Act (ATHR) 1990, Network & Information Systems (MIS) Regulations 2018, Computer Misuse Act 1990 and any other relevant legislationExpert level of experience managing Data Protection enquiries and issuesKnowledge of Data / Security / Cyber Security FrameworksKnowledge and experience of supporting and completing all types of Contracts, Service Level Agreements (SLAs) and relevant Information Sharing / Data Processing Agreements alongside procurement due diligence requirements. Such as the Digital Technology Assessment Criteria (DATC)Knowledge, experience and practical application of data privacy impact assessments as set out within legislation aboveKnowledge, experience and practical applications of Data Breaches / Incidents in line with the Confidentiality, Integrity and Availability (CIA) Triad. As well as reporting to relevant commissioning bodies as set out within legislationKnowledge, experience and practical applications of Auditing techniques desktop and onsite where required in relation to post.Highly developed knowledge of working with patient based clinical information systemsSpecialist knowledge of NHS and statutory polices and regulations including UK GDPR, Data Protection Bill, Caldicott PrincipalsKnowledge and understanding of the importance of confidentiality, Data Protection / Information Governance and security policiesKnowledge of Acute Hospital Services and the way in which data is used Experience of working in a support roleExperience of working in the National Health ServiceExperience of working in an Data Protection / Information Governance departmentSenior level role within an NHS service / department / divisionExperience of working with National organisations such as the Local Authorities, Department of Health (DoH)Experience Integrated Care Boards (ICB), NHS England and National Cyber Security Centre (NCSC)Experience of managing a demanding and expanding service creatively and efficient in an agile mannerAwareness of corporate and records management requirementsReporting to the Information Commissioner’s Office (ICO) / Ombudsman.Communication and relationship skillsExcellent verbal and written communication skills and the ability to communicate specialist / complex issues effectively at all levelsAbility to analyse complex information requiring interpretation in order to meet the service requirement e.g., Staff data on training, skills and competencies.Effective interpersonal and communications skills with the ability to produce clear concise communicationsAbility to provide contentious information to staff groups and to communicate business sensitive information to internal staffAble to develop, establish and maintain positive relationships with others both internal and external to the organisationAbility to work with and influence senior colleagues including negotiation and persuasion skillsAbility to foster and maintain positive working and service relationshipsAbility to compile and initiate audits and present findingsExpert level of experience managing Data Protection enquiries and issuesExperience of writing policies and proceduresExcellent presentation and training skillsExperience of delivering presentations to large and diverse groupsSelf- motivated and able to encourage others at all levels including senior managementAnalytical and Judgement skillsCompetent IT skills in order to collect and interpret data, present reports and compile simple presentationsAbility to work without direct supervision, prioritising work and acting on own initiative where appropriate; pre-empting problems and working to solve them in an appropriate mannerAbility to operate to a variety of levels within the organisation and also external agenciesFlexible approach to meet the conflicting demands of the jobEffective time management skills in order to meet deadlinesAbility to communicate at all levels, both written and verbally, with internal and external customersAbility to prioritise own workload autonomouslyAccuracy and attention to detailAbility to maintain confidentialityAbility to demonstrate tact and diplomacyAbility to work under pressure and to tight deadlines with changing prioritiesAbility to conduct audits and exercise judgementAbility to use professional judgement and advise others on best practice, national guidelines and legislationAbility to recognise own and others development needs and find appropriate solutionsSensitive to the needs of others and has an awareness and responsiveness to other people’s feelings and needsValues differences; regards people as individuals and appreciates the value of diversity in the workplacePlanning and organisation skillsLeadership / Supervisory / Line Management skillsAbility to work without direct supervision, prioritising work and acting on own initiative where appropriate; pre-empting problems and working to solve them in an appropriate mannerAbility to manage workloads of others and distribution throughout the service / team in a coaching style of leadership, leading by exampleAbility to operate to a variety of levels within the organisation and also external agenciesSelf-motivated and ability to motivate othersAbility to recognise own and others development needs and find appropriate solutionsAble to work as part of a team, co-operating to work together and in conjunction with others and willing to help and assist wherever possible and appropriateAble to work under pressure, dealing with peaks and troughs in workloadPositive attitude to dealing with change; flexible and adaptable, willing to change and accept change and to explore new ways of doing things and approachesHighly motivated, reliable and resourceful with a proactive approach to problem solving and ability to work autonomouslyHas a strong degree of personal integrity; able to adhere to standards of conduct based on a sense of right and wrong and be dependable and reliableAbility to operate to a variety of levels within the organisation and also external agenciesAble to work on own initiative and as part of a teamAbility to multi-task, deal with conflicting deadlines and prioritise workload appropriatelyExcellent administration skills including the ability to take minutesExcellent planning and organisational skillsPhysical skillsStandard office environment requirementsOther requirements specific to the roleStrong visible leadership and coaching style provided onsite and onlineAbility and willingness to adopt an agile approach to workWillingness and ability to travel between sites and to external meetings___________________________________________________________________________________Come and join our wonderful team at NUH. We are big believers in diversity and welcome new ideas to help develop our team in order to deliver world class healthcare to the vast patient populations we serve. With endless personal development opportunities available, at the NUH we will endeavour to turn your job into a career!We particularly welcome applications from people who identify as Black, Asian and Minority Ethnic, or Disabled, as we are striving to be better represented at NUH.Closing Dates: Please submit your application form as soon as possible to avoid disappointment; we reserve the right to close vacancies prior to the published closing date if we receive a sufficient number of completed application forms.Communication: All communication related to your application will be via the email address you have provided. Please ensure you check your email account including your junk email regularly.NUH are now able to offer application completion support and interview preparation support. Please follow the link to book onto our sessions: Support for NUH Job Applications If you are aged 16 or 17 and applying for a role that is more than 20 hours a week, please be aware that you will be asked to commence an Apprenticeship within the Trust alongside your role, as long as there is a suitable apprenticeship standard available. This is in line with the current guidance in England that whilst young people under the age of 18 can leave school (on the last Friday in June) they must then do one of the following:Stay in full-time education, for example at a collegeStart an ApprenticeshipSpend 20 hours of more a week working or volunteering, while in part-time education or trainingSalary: The quoted salary will be on a pro rata basis for part time workers.Disability Confidence: All applicants who have declared a disability and who meet the essential criteria for the post will be shortlisted.At Risk of redundancy: NHS employees within the East Midlands who are ‘at risk’ of redundancy will be given a preferential interview where they meet the essential criteria of the person specification. ID and Right to work checks : NUH authenticate ID and right to work documentation including passports and driving licenses through a system called Trust ID. NUH will scan your ID and right to work documentation in to the Trust ID system at your face to face ID appointment. The system will run a check against the key security features within your documentation. The system will provide us with an outcome of your check which will be stored securely on your personal file along with all other pre-employment check documentation. Consent:Transfer of information: If I have previous NHS service - I consent to the transfer of my Electronic Staff Record (ESR) data between this and other NHS Trusts. I also consent to the Occupational Health Departmentconfidentially accessing my occupational health records from my current or previous employer in order to check the status of my vaccinations, immunisations s and screening tests as relevant to the post. I understand this is an automated process and the information will only be used for these purposes prior to me taking up the position at NUH.Disclosure and Barring Service: Your post maybe subject to a DBS check which incur a cost dependent on the level of check required (£42.90 for enhanced and £22.90 for standard). I agree to reimburse Nottingham University Hospitals NHS Trust the cost of a Disclosure and Barring Service (DBS) check if it is required (by deduction from first month’s pay). Should I decide to withdraw from my job offer, I agree to reimburse Nottingham University Hospitals NHS Trust the cost of the DBS check undertaken by cheque or other agreed method.Employer certification / accreditation badgesThe postholder will have access to vulnerable people in the course of their normal duties and as such this post is subject to the Rehabilitation of Offenders Act 1974 (Exceptions) Order 1975 (Amendment) (England and Wales) Order 2020 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service to check for any previous criminal convictions.
Name
Marc Wilson
Job title
Head of Information Security & DPO
Email address
#####
Additional information
Please email to arrange a chat or visit.
#J-18808-Ljbffr
Apply