Job summary
Employer heading
Data Protection Officer
Non AfC
Job overview
Working within our IT & Compliance team, based at Fair Havens in Southend on Sea, and Little Havens in Thundersley, this role plays a key part in progressing and monitoring procedures and processes, ensuring that the Charity remains compliant with all relevant Data Protection and Information Governance regulations.
Please be aware that, unfortunately, Havens Hospices is unable to offer UK visa sponsorship at this time.
Although there are options for hybrid working, this would ideally be agreed and implemented after the successful completion of the probationary period.
Main duties of the job
Reporting to the Head of IT & Compliance, you will provide expert IG advice and guidance to the charity and its trustees. You will be responsible in ensuring that we remain compliant with all applicable legislation, including GDPR and the DPA 2018.
This role is also responsible for processing and managing information requests as per the FOI Act, and Environmental Information Regulations.
Working for our organisation
At Havens Hospices, we care for children, young people and adults with complex or incurable conditions. Our specialist Care Teams can support them and their family living throughout illness, death and bereavement in the comfort of their own home and through our hospice services, Fair Havens and Little Havens.
Working at Havens Hospices allows you to give the gift of time to patients and families, creating memories. Although you may not be giving direct care to our patients, your contribution will have an immediate effect on our care services.
In return for your expertise and passion, you will receive a competitive salary package, and most of all, by making the most of every day you work at Havens Hospices you’ll be helping us continue ‘Making every day count’ for those who need us most.
At Havens Hospices we are committed to safeguarding and promoting the welfare of our employees and patients and expect all colleagues to share this commitment.
We value diversity and welcome applications from all sections of the community.
Detailed job description and main responsibilities
- To ensure the Charity has an accurate, complete and maintained data protection registration with the Information Commissioner’s Office as a Data Protection Officer.
- To ensure the Charity complies with all relevant legislation in relation to information governance, including the General Data Protection Regulation and Data Protection Act 2018.
- To support with information requests under current Data Protection Legislation and the Freedom of Information Act/Environmental Information Regulations, ensuring that requests are dealt with in accordance with legislation and within agreed timescales
- To conduct a programme of audits and report on the auditing of compliance across the Charity,
- To provide advice and take action, where necessary in response to audit findings and recommendations in respect of Information Governance.
- To ensure Data Privacy Impact Assessments are carried out in line with Charity policy and monitor progression of all associated action plans and audits.
- To support in maintaining a comprehensive suite of policies and procedures to ensure the Charity has a comprehensive Information Governance framework
- To keep up to date on legislation relevant to information Governance and ensure that the necessary changes to Charity policies and procedures are proactively addressed.
- To ensure the Charity has a well-maintained information asset register, with assets being risk assessed and asset owners being trained appropriately for their role.
- To ensure appropriate action is taken where compliance issues are flagged.
- To ensure appropriate risk assessments are conducted in relation to personally identifiable information held by Charity suppliers and seek advice from the Charity’s IT external contractors in relation to cyber security and general IT security risks.
- To work with Managers, Heads of service and Directors to identify any new working practices required and to support the change programme to implement these.
- To support in the implementation of the overarching Charity Information Governance Strategy and Framework in support of statutory and regulatory requirements (e.g., Data Security and Protection (DSP) Toolkit and PCI DSS).
Person specification
Qualifications
Essential criteria
- Data Protection Officer related Certification (such as British Standard or ISO Standard)
- GCSE/A Level/Degree in English & Maths, or equivalent qualification
- Evidence of continuing professional development within similar or same role.
Skills & Experience
Essential criteria
- In depth knowledge of GDPR regulations
- Demonstrable experience working as a Data Protection Officer
- Ability to use Microsoft Office (including Word, PowerPoint, Outlook, Teams), databases, other relevant software and systems, and the internet to an intermediate level
- Skilled in understanding and interpreting data and data analytics, including advanced excel skills.
- Demonstrable understanding of good practice (and the practical application thereof) in risk management.
Desirable criteria
- Cyber Essentials Plus certification
- Power Automate/Power BI experience
Experience
Desirable criteria
- Full driving licence and own car to enable travel between sites
Applicant requirements
The postholder will have access to vulnerable people in the course of their normal duties and as such this post is subject to the Rehabilitation of Offenders Act 1974 (Exceptions) Order 1975 (Amendment) (England and Wales) Order 2020 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service to check for any previous criminal convictions.
Documents to download
Further details / informal visits contact
- Name
- Alan Flay
- Job title
- Head of IT & Compliance
- Email address
- [email protected]
- Telephone number
- 01702 220350
List jobs with Havens Hospices in Administrative Services or all sectors