At a Glance
- Tasks: Lead the Information Governance agenda and ensure compliance with data protection laws.
- Company: Join Psychiatry UK, the top provider of online mental health services in the UK.
- Benefits: Enjoy a competitive salary, remote work flexibility, and a work-from-home allowance.
- Why this job: Be part of a forward-thinking team making a real impact in mental health care.
- Qualifications: Degree-level education and relevant data protection certifications required.
- Other info: This role offers opportunities for growth and development in a dynamic digital environment.
The predicted salary is between 68000 - 102000 £ per year.
DPO and Head of Information Governance
Remote UK
Salary: £85,000 per annum plus £1000 per annum work from home allowance (pro-rata)
Reporting to: Chief Finance Officer
Expected Hours: 40 hours per week
Location: Home-based/various meeting locations as required
The Company
Psychiatry UK is the leading provider of online mental health services in the United Kingdom. A career here offers the opportunity to develop your knowledge, skills and life experiences while enjoying the opportunity to work in a full or part-time role from your home office. Working in a leading online mental health service means working amongst innovative, forward-thinking and committed professionals in a multi-disciplinary team.
Job Summary
The Data Protection Officer (DPO) and Head of Information Governance will oversee and lead the Information Governance (IG) and Cyber Security Agenda, ensuring compliance with UK GDPR, the ICO Accountability Tracker, and the NHS Data Security and Protection Toolkit (DSPT). The role is responsible for developing and implementing data protection policies, training, and governance frameworks while advising senior leadership on regulatory obligations and best practices.
Key focus over the next 24 months:
- Implementing /embedding an agile IG framework for an agile, digital, growth business – building a culture and capability for ‘first line’ confidence and accountability
- Leading the identification and remediation of high rated data privacy and compliance risks across all areas of PUK’s operation – with focus on the evolution of our digital / data platform and including the development of automated controls
- Support the digital transformation in the business, including the safe / compliant use of data for analytics
Responsibilities and Duties
- Lead Information Governance (IG): Oversee the IG agenda, ensuring compliance with legislation, regulatory standards, and data protection laws.
- Support Digital Transformation: Ensure compliance in projects involving digital systems, automation, and AI.
- Monitor Legislative Changes: Stay updated on data protection laws and implement necessary changes.
- Develop and Maintain IG Framework: Establish policies, procedures, and governance structures to support compliance.
- Mandatory Submissions & Reporting: Lead the Data Security and Protection Toolkit submission and provide board updates.
- Training & Awareness: Collaborate with Learning & Development to implement IG training for staff.
- Data Protection Compliance: Support Data Protection Impact Assessments (DPIAs), data-sharing agreements, and privacy notices.
- Manage Data Access & FOI Requests: Oversee the Health Records Team to ensure compliance with Rights of Access and respond to Freedom of Information (FOI) requests.
- Regulatory Liaison & Complaints Handling: Act as the registered DPO with the ICO, handle complaints, and review/report data incidents within 72 hours if required.
- Risk & Records Management: Support information risk management, maintain a central asset register, and oversee records management from creation to disposal.
- Governance & Oversight: Chair the IG & Data Protection Steering Group, develop Key Performance Indicators (KPIs), and embed data compliance across processes.
- Line Manage a team of specialist staff working across all areas within the IG Framework.
Person Specification
Essential Qualifications and Skills:
- Educated to Degree Level in a relevant discipline.
- Suitable Data Protection qualifications/certifications.
- Extensive knowledge of Data Protection legislation (Data Protection Act 2018/UK GDPR/PECR/Computer Misuse Act etc).
- Managerial/leadership skills evidenced through training or through relevant experience.
- Advanced knowledge of frameworks such as Cyber Essentials Plus, DSPT, ISO:27001 etc.
- High level of interpersonal skills and ability to work with Executive Level staff.
- Advanced oral and written skills for communicating on complex information governance and data protection matters.
- Report writing skills.
- Problem solving skills and ability to respond to sudden unexpected demands.
- Excellent time management skills with the ability to prioritise based on need.
- Ability to work to tight deadlines.
Desirable Qualifications and Skills:
- Experience of working in a healthcare setting in a Lead Information Governance role.
- Experience operating in a rapidly scaling digital (health) environment with use of sensitive/special category data.
- Experience of managing and communicating with regulators including ICO.
- Strong technical background with experience of Cyber security management.
Other information
This job description is intended as an outline indicator of general areas of activity and will be amended in the light of the changing needs of PUK. You may be required to work at other locations as determined by the duties of your post. You may be required to undertake any other duties at the request of the Line Manager, which are commensurate with the role, including project work, internal job rotation and absence cover. This job description describes responsibilities, as they are currently required. It is anticipated duties will change over time and the job description may need to be reviewed in the future.
Behaviour
- Support the values, aims and vision of PUK and its clients.
- Act with honesty and integrity at all times.
- Be positive ambassadors for PUK.
- Demonstrate high standards of personal conduct.
- Value and respect colleagues, other members of staff and patients.
- Work with others to develop and improve PUK services.
- Take personal responsibility for their words and deeds and for the quality of the service they deliver.
Confidentiality
The post holder must ensure that personal information is accurate, up to date, always kept secure and confidential in compliance with relevant legislation and the common law duty of confidentiality. The post holder must follow record-keeping guidelines to ensure compliance with the Freedom of Information Act.
Valuing Diversity & Human Rights
No person should receive less favourable treatment on the grounds of sex, sexual orientation, marital/partnership status, race, religion, age, creed, colour, ethnic origin, disability, part time working status and real or suspected HIV/AIDS status and must not be placed at a disadvantage by conditions or requirements which cannot be shown to be justifiable.
Data Protection
If you have contact with computerised data systems you are required to obtain, process, and/or use information held on a computer in a fair and lawful way, to hold data only for the specific registered purpose and not to use or disclose it in any way incompatible with such purpose. To disclose data only to authorised persons or organisations as instructed.
Locations UK – remote
Remote status: Fully Remote
#J-18808-Ljbffr
DPO and Head of Information Governance employer: Psychiatry UK
Contact Detail:
Psychiatry UK Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land DPO and Head of Information Governance
✨Tip Number 1
Familiarize yourself with the latest UK GDPR regulations and the ICO Accountability Tracker. Being well-versed in these areas will not only help you during the interview but also demonstrate your commitment to compliance and governance.
✨Tip Number 2
Showcase your experience in leading information governance initiatives, especially in a digital transformation context. Highlight any specific projects where you've successfully implemented data protection policies or frameworks.
✨Tip Number 3
Prepare to discuss your managerial skills and how you've effectively led teams in previous roles. Be ready to provide examples of how you've fostered a culture of accountability and compliance within your team.
✨Tip Number 4
Network with professionals in the field of data protection and information governance. Engaging with others in the industry can provide valuable insights and may even lead to referrals or recommendations for the position.
We think you need these skills to ace DPO and Head of Information Governance
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in data protection and information governance. Emphasize any managerial roles and your familiarity with UK GDPR and other relevant legislation.
Craft a Strong Cover Letter: In your cover letter, express your passion for mental health services and how your skills align with the responsibilities of the DPO role. Mention specific examples of how you've successfully implemented data protection policies in the past.
Showcase Your Qualifications: Clearly list your qualifications and certifications related to data protection. If you have experience in healthcare settings or with regulatory bodies like the ICO, make sure to highlight that.
Demonstrate Leadership Skills: Provide examples of your leadership experience, especially in managing teams or projects related to information governance. This will show your capability to lead the IG agenda effectively.
How to prepare for a job interview at Psychiatry UK
✨Show Your Expertise in Data Protection
Make sure to highlight your extensive knowledge of data protection legislation, especially UK GDPR and the Data Protection Act 2018. Be prepared to discuss how you've implemented compliance measures in previous roles.
✨Demonstrate Leadership Skills
Since this role involves managing a team, share examples of your leadership experience. Discuss how you've successfully led projects or initiatives related to information governance and how you foster a culture of accountability.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving skills and ability to handle unexpected demands. Prepare scenarios where you had to manage data privacy risks or respond to regulatory changes effectively.
✨Communicate Clearly and Confidently
Given the need for advanced oral and written communication skills, practice articulating complex information governance topics clearly. Be ready to explain your thought process and decisions in a way that is easy to understand.