Information Governance Officer

Liverpool University Hospitals NHS Foundation Trust
Liverpool, UK
3 days ago
Apply on feeds.trac.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
£39,959.0 - £48,117.0
Working hours
Shift work

Tech stack

Microsoft Access Microsoft Word Microsoft Excel Cyber Security Data Security Digital Technology Microsoft Office Microsoft Software Microsoft PowerPoint PRINCE2 Data Streaming Office365

Job description

We are looking for and experienced and enthusiastic Information Governance Officer to join our successful Information Governance Team working with clients across the Northwest and beyond.

In your role you will provide support to existing NHS and Public Sector MIAA clients, individually, at place and at system level, to ensure that they meet highly complex legal and regulatory obligations in relation to Information Governance including confidentiality, information security, Data Protection, Freedom of Information and GDPR.

Working with clients, the successful applicant will:-

  • support clients to ensure that they meet highly complex legal and regulatory obligations in relation to Information Governance including confidentiality, information security, Data Protection, Freedom of Information and GDPR.
  • act as a trusted advisor and subject matter expert on data protection and information governance to cross community programmes
  • support clients to develop a robust information governance framework
  • design and monitor technical policies, systems, and processes to ensure effective compliance with relevant regulatory and legal obligations.
  • deliver and maintain certification to relevant Data Protection and Privacy standards and ensure compliance with highly complex, technical standards and certifications., The Information Governance Officer will provide efficient and effective support to the clients and will assist in all aspects to maintain and achieve IG frameworks which support clients to meet their statutory, regulatory and performance obligations in relation to the Data Protection Act 2018 and the General Data Protection Regulations, confidentiality, information sharing, incident, and risk management.

To assist colleagues and clients, and to work towards agreed objectives to establish a proactive and integrated approach to IG through developing and maintaining robust and effective policies, systems and processes that ensure the IG function is supported throughout clients.

To be first point of contact to investigate and make recommendations on highly sensitive or contentious information supplied from patients, their relatives, staff colleagues and ex-ternal organisations which may result (often covertly) in identification of performance is-sues, leading to complex analysis resulting in formal Trust action being recommended.

To support clients by assisting in the co-ordination of the Data Security Protection Toolkit (DSPT) and to independently develop and implement improvement plans in areas where required to ensure continued compliance and improvements are achieved, often acting without reference to manager, To interpret routine and complex facts associated with the Data Protection Act 2018, the General Data Protection Regulations, Caldicott Guidance, Codes of Confidentiality, and any other relevant guidance and legislation as part of the IG agenda.

To proactively support and promote the IG culture at client organisations.

To assist the senior colleagues and often lead in the development of policies, procedures, and guidance in all areas of IG and to propose amendments to improve organisational practice, policy, or plans.

To assist the team to produce and gather evidence for the timely completion of the client DSPT submissions.

To undertake and analyse the information governance risks and provide guidance and support to clients to manage information governance related risks in a way that ensures data protection compliance.

Lead and support the Information Asset Owners/Administrators within the clients to complete necessary reviews, encouraging them to complete risk assessment to ensure any identified risks are escalated as appropriate.

Support the population of client DSPT (and other IG work) action plans and follow up on out-standing actions via email, telephone and on occasion face to face with the toolkit’s assertion owners.

Supervise colleagues to provide administrative support for the training and maintenance of client information asset register.

Supervise colleagues to provide administrative support for the training and maintenance of client data flow mapping activity to ensure all the flows are recorded accurately within clients, and between partner organisations.

Supervise colleagues for any other related IG tasks to encourage an increase in knowledge to support the wider client staff.

Provide support and assistance to the Data Protection Officer for the completion of Data Protection Impact Assessments, which may, in turn, lead to the completion of the Digital Technology Assessment Criteria with involvement of the Clinical Safety Officer.

To develop bespoke training for areas of information sharing, data flows, and any other related IG subject.

Requirements

  • Relevant degree or equivalent in information governance or cyber/information security related subjects

Desirable criteria

  • Relevant BCS qualification in data protection or cyber/information security and consideration of other courses such as PRINCE Project Management, ITIL, BCS FOI, EIR or other legislative qualification
  • Audit qualification or relevant experience, * Experience in us of Microsoft products such as Access, Word, Excel, PowerPoint and O365
  • Demonstrable experience working with a healthcare governance or assurance role
  • Experience of staff supervision
  • Experience of providing training sessions
  • Ability to produce high quality written material
  • Demonstrable advanced knowledge of data protection, GDPR, Caldicott, information security definitions and guidelines with examples of interpretations of legislation in an operational situation
  • Awareness of confidentiality issues in NHS including legislative codes and guidance documentations as detailed

Desirable criteria

  • Previous office experience
  • Understanding risks and vulnerabilities. Understanding of best practices for securing digital systems/tools
  • Demonstrable experience in knowledge and understanding of the workings of the NHS

Benefits & conditions

Staff benefit from flexible/hybrid working, a generous pension scheme, protected learning time and opportunities for development and career progression.

We promote a respectful, supportive and flexible working environment and operate zero tolerance to bullying, harassment and discrimination.

We particularly welcome applications from Black, Asian and minority ethnic communities, LGBTQ+ individuals, disabled people, carers, returners and other under-represented groups.

Applicants with a disability who meet the essential criteria will be offered an interview, and reasonable adjustments will be made throughout recruitment and employment., Note: Under current Home Office Immigration Rules we are currently unable to offer right to work visa sponsorship for Band 2 and 3 roles with a salary of less than £25,000 pa as they do not meet the UK Visas & Immigration criteria.

Only those applicants who demonstrate clearly how they meet our person specification will be shortlisted for interview.

We reserve the right to close any vacancies from further applications when we have received a minimum number of applications from which to make a shortlist. Please ensure you apply without delay if you wish to be considered for this role.

Candidates applying for the role of Healthcare Assistant on the staff bank should note that due to the nature of the role, workers must be aged 18 or above when commencing in post. Applicants are therefore welcome from those aged over 18 or within 3 months’ of their 18^th birthday.

The Trust is committed to promoting a healthy work-life balance and achieve fair, equitable and consistent practice. We welcome flexible working requests and will consider a variety of flexible working arrangements from day one of your employment. Not all roles are suitable for every flexible working opportunity all of the time. Flexible working options may include reduced hours, compressed hours, fixed shifts, time back in lieu and home working.

The Trust is committed to promoting equality and diversity; we value the contribution of individual talent, skills, knowledge and experience and aim for a workforce demography representative of the local community. We encourage applicants from the following groups that are currently under-represented in our workforce black, Asian and minority ethnic, lesbian, gay, bisexual and Transgender (LGBTQ+), disabled, male and age 16-24.

Trust policy requires that the cost of submitting & processing the successful applicant/s DBS application be recovered via salary deduction following start in post. The amount of £26.50 (standard disclosure) or £54.50 (enhanced disclosure) will be deducted from salary, in manageable monthly instalments for up to 3 months following commencement of employment. Bank posts require upfront payment.

From April 2017, Skilled visa applicants and their adult dependant(s) will be required to provide a criminal record certificate from each country they have lived in consecutively for 12 months or more in the past ten years.

Applicants requiring sponsorship may wish to determine the likelihood of obtaining sponsorship for this position by assessing themselves against the criteria on the gov.uk website - https://www.gov.uk/check-uk-visa.

This organisation has a zero-tolerance approach to the abuse of children, young people and vulnerable adults. All staff must ensure they adhere to the organisations safeguarding children and adults’ policy and comply with the Local Safeguarding Children and Adult Board procedures.

Staff should be mindful of their responsibility to safeguard children and adults in any activity performed on behalf of the organisation in line with the requirements of statutory guidance and legislation.

All employees (and volunteers)are expected maintain their safeguarding knowledge and skills by completing mandatory safeguarding training which includes understanding and recognising the signs of abuse and neglect and taking appropriate action.

As an organisation, we have adopted the Merseyside Domestic abuse workplace scheme which supports our staff who are experiencing Domestic Abuse /any forms of sexual violence.

If you have any personal requirements that will enable you to participate in our recruitment process please contact a member of the Recruitment Services by phone on 0151 706 4666 at the earliest opportunity to ensure that measures can be put in place to enable your application for this post.

Please note: new entrants to the NHS will commence on the first pay point of the relevant band.

About the company

MIAA is an NHS Shared service, hosted by Liverpool University Hospitals NHS Foundation Trust. MIAA is the predominant provider of internal audit services to over 60+ NHS and public sector organisations in the Northwest and beyond. MIAA offer clients a number of services in addition to internal audit including Solutions: Information Governance, Anti-Fraud, Technical Risk Assurance, Clinical Coding and Healthcare Quality.

MIAA’s budgeted turnover is 16 million, which is demonstrative of the organisation’s ambitious and strategic goals.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on feeds.trac.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

3:02 min

Navigating DORA compliance and executive liability in security

Michele Zuccala Michele Zuccala +4 · World Congress 2026 Europe

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 · LIVE

2:03 min

Platform compliance and security certifications for sensitive data

Chad Carlson · World Congress 2021

1:13 min

Handling data location compliance and privacy regulation requirements

Sani Yusuf · LIVE

35 sec

Summarizing data integration challenges in security operations

Jennifer Reif · LIVE

Videos

See all

Related articles

See all