Logo of Huzzle

Information Governance Specialist & Compliance Officer

  • Job
    Full-time
    Senior Level
  • Government & Politics
    Healthcare
  • Manchester

AI generated summary

  • You must ensure compliance with IG frameworks, manage FOI requests, train staff, lead audits, maintain data registers, and collaborate on supplier risks while ensuring privacy and data protection.
  • You will advise on IG compliance, manage FOI requests, lead training, ensure data protection audits, maintain processing activities, and collaborate with stakeholders on information governance matters.

Requirements

  • Support specialist confidentiality and privacy by design advice on the implementation of the IG legal framework, IG national policy requirements, new Statutory Guidance, organisational standards, policies and controls across internal and external facing operational services.
  • Draft and publish IG advice in response to IG queries received, emerging trends and new national guidelines from across the organisation.
  • Support strategic advice to the Freedom of Information (FOI) lead and key stakeholders on complex requests, internal reviews and ICO investigations.
  • Provide line management responsibilities for the Freedom of Information lead ensuring that all aspects of performance, attendance, training and appraisal are addressed in accordance with Trust Policy.
  • Expected to Deputise for the IG Lead as necessary, on matters within scope of expertise.
  • Plan and progress work to ensure that IG policies and procedures are embedded in the programmes, divisions across the organisation.
  • Reporting assurances/gaps on outcomes of best practice and standards set out in policy and procedures to Divisional leads and Caldicott panel.
  • Plan and deliver training to Trust staff at all levels, through a variety of formats designed to meet the specific needs of the organisation with reference to GDPR and FOI.
  • Provide leadership in managing the statutory information requests function of the IG Team, including FOI, information rights requests.
  • Provide assurance on Information Governance and Statutory Guidance compliance through a schedule of assurance reviews and activity, including in respect of high-risk processing, internal data protection audits, and audits of data use and sharing, both internal and external to the Trust.
  • Assist assurance for Digital Services Leads and Information Asset Owners in their compliance against standards, through peer reviews, engagement with audits, advice and guidance of compliance management.
  • Drive compliance with the Confidentiality elements of the Data Security & Protection Toolkit (DSPT or equivalent) requirements and support work to co-ordinate and assure the Trust annual DSPT or equivalent submission.
  • Work Collaboratively with Divisions to evidence their compliance with principles of the DSPT and the Digital teams on wider components.
  • Lead on maintenance of the Trust Register of Processing Activities (RoPa) including reviews of Data Flows, within Divisions, from Systems and provision of data sets supporting audit/research/analysis.
  • Being the lead for establishing correct legal basis for any processing of data, inclusive of use of consent and national data opt out.
  • Collaborate with key Stake Holders (internal and external to the Trust) on Supply Chain Risks.
  • Considering current supplier due diligence requirements, on boarding the Information Asset Owners (IAOs) with key programmes of assurance and maintaining accuracy of the Information Asset Register.

Responsibilities

  • Support specialist confidentiality and privacy by design advice on the implementation of the IG legal framework, IG national policy requirements, new Statutory Guidance, organisational standards, policies and controls across internal and external facing operational services.
  • Draft and publish IG advice in response to IG queries received, emerging trends and new national guidelines from across the organisation.
  • Support strategic advice to the Freedom of Information (FOI) lead and key stakeholders on complex requests, internal reviews and ICO investigations.
  • Provide line management responsibilities for the Freedom of Information lead ensuring that all aspects of performance, attendance, training and appraisal are addressed in accordance with Trust Policy.
  • Expected to Deputise for the IG Lead as necessary, on matters within scope of expertise.
  • Plan and progress work to ensure that IG policies and procedures are embedded in the programmes, divisions across the organisation.
  • Reporting assurances/gaps on outcomes of best practice and standards set out in policy and procedures to Divisional leads and Caldicott panel.
  • Plan and deliver training to Trust staff at all levels, through a variety of formats designed to meet the specific needs of the organisation with reference to GDPR and FOI.
  • Provide leadership in managing the statutory information requests function of the IG Team, including FOI, information rights requests.
  • Provide assurance on Information Governance and Statutory Guidance compliance through a schedule of assurance reviews and activity, including in respect of high-risk processing, internal data protection audits, and audits of data use and sharing, both internal and external to the Trust.
  • Assist assurance for Digital Services Leads and Information Asset Owners in their compliance against standards, through peer reviews, engagement with audits, advice and guidance of compliance management.
  • Drive compliance with the Confidentiality elements of the Data Security & Protection Toolkit (DSPT or equivalent) requirements and support work to co-ordinate and assure the Trust annual DSPT or equivalent submission.
  • Work Collaboratively with Divisions to evidence their compliance with principles of the DSPT and the Digital teams on wider components.
  • Lead on maintenance of the Trust Register of Processing Activities (RoPa) including reviews of Data Flows, within Divisions, from Systems and provision of data sets supporting audit/research/analysis.
  • Being the lead for establishing correct legal basis for any processing of data, inclusive of use of consent and national data opt out.
  • Collaborate with key Stake Holders (internal and external to the Trust) on Supply Chain Risks.
  • Considering current supplier due diligence requirements, on boarding the Information Asset Owners (IAOs) with key programmes of assurance and maintaining accuracy of the Information Asset Register.

FAQs

What are the main responsibilities of the Information Governance Specialist & Compliance Officer?

The main responsibilities include providing confidentiality and privacy advice, drafting IG guidance, supporting FOI lead and stakeholders, managing statutory information requests, and ensuring compliance with IG policies and procedures.

Is a background in data protection required for this role?

Yes, a background in data protection, information governance, and relevant legal frameworks is essential for effectively fulfilling the responsibilities of this role.

What kind of training is provided in this position?

The role involves planning and delivering training to Trust staff at all levels, focusing on GDPR and FOI adherence through various formats tailored to the organization's needs.

Will I be responsible for managing a team in this role?

Yes, you will have line management responsibilities for the Freedom of Information lead, addressing performance, attendance, training, and appraisals in accordance with Trust Policy.

How does this role contribute to compliance with national guidelines?

This role provides leadership in ensuring compliance with statutory guidance through assurance reviews, audits, and by embedding IG policies across the organization.

What is the significance of the Trust Register of Processing Activities (RoPa) in this role?

The RoPa is crucial for maintaining accurate records of data flows and processing activities, which supports audit, research, and compliance with legal obligations.

How do I stay updated on emerging trends and policy changes?

Staying updated is facilitated through the drafting of IG advice in response to queries and keeping abreast of new national guidelines and statutory requirements.

Will I need to collaborate with external stakeholders in this position?

Yes, collaboration with both internal and external stakeholders is essential, especially regarding supply chain risks and ensuring compliance with information governance standards.

What tools or frameworks are used for compliance management in this role?

The role involves using the Data Security and Protection Toolkit (DSPT) or equivalent frameworks to drive compliance and support the Trust's annual submission.

What kind of issues might I deal with as a deputy for the IG Lead?

As deputy, you may handle inquiries related to information governance, complex FOI requests, ICO investigations, and provide strategic advice on compliance matters.

The Christie NHS Foundation Trust is one of Europe’s leading cancer centres, treating more than 44,000 patients a year.

Science & Healthcare
Industry
1001-5000
Employees
1932
Founded Year

Mission & Purpose

The Christie NHS Foundation Trust, based in Manchester, specializes in cancer care and provides a range of services including treatment, research, and support for cancer patients. Their mission is to deliver world-class, patient-centered care and to lead in cancer research and innovation. The Trust aims to improve cancer outcomes and quality of life through cutting-edge treatments, comprehensive care, and a commitment to advancing cancer research.