Detailed job description and main responsibilities
- act as the expert source of advice and expertise in DSP for the Group;
- support the development for clinical administration functions within the organisation – identifying information governance risks and issues and providing recommendations for change
- increase the profile of Data Security and Protection within the organisation and actively support a “culture change” so that staff are aware of their responsibilities and duties towards confidentiality, integrity and availability of information;
- ensure processes are in place for monitoring the secure disposal of IT and hardware assets;
- initiate and plan a programme of work that ensures the Group complies with the requirements of the Data Security & Protection Toolkit;
- completion of the annual Data Security & Protection Toolkit submission and the collation of supporting evidence which is analysed and updated to ensure compliance;
- lead a range of audits which will check compliance with the DSP toolkit, research and development and incident management activities, developing improved systems and processes for data quality, data security and protection, data integrity and availability.
- work in partnership with the Groups Cyber Security Lead to ensure that all Cyber related toolkit assertions are met within the NHSD deadline and any gaps in assurance are identified with a plan in place for compliance
- implement and maintain compliance with relevant legislation, particularly the common law duty of confidentiality, the Data Protection Act 2018, the General Data Protection Regulation, the Computer Misuse Act 1990, the Human Rights Act 1998;
- investigate and resolve information security issues and processes for systems which are process personal and/or trust sensitive data
#J-18808-Ljbffr…
