Information Compliance Officer
Posted 13 hours 45 minutes ago by NHS
Go back Tees Esk and Wear Valleys NHS Foundation Trust Information Compliance Officer
The closing date is 10 July 2025
The Information Compliance Team have an exciting permanent opportunity for a self motivated, confident, professional with experience in information compliance activities , information incidents and investigations. The post holder will be a key member of the Information Compliance Team working closely to embed a good information governance culture across the Trust. This is an exciting time to join the team as we look to re launch and re brand communications, training and support in relation to the Data Protection Act and Information Compliance activities across the TEWV footprint.
Main duties of the jobMain activities will include but are not limited to:
- To assist the Senior Information Compliance Officer regarding the receipt and administration of incident alerts.
- To liaise with the Patient Safety Team's Patient Safety Quality and Data Assurance Officers
- To supply guidance and advice on reported data security and protection incidents
- To secure evidence relating to information incidents when required, whilst maintaining its integrity in line with forensic readiness best practice.
- To assist with and support activities in relation to 3rd Party Suppliers, and due diligence regarding obligations set out in UK data protection legislation (UK General Data and Protection Regulation and Data Protection Act 2018).
- To work closely with colleagues within the team to ensure that the Trust works towards compliance with nationally recognised standards and expectations. For example, but not limited to, ISO 27001 and NHS Data Security and Protection Toolkit - Cyber Assurance Framework (DSPT - CAF).
We are the Mental Health & Learning Disability NHS Trust for County Durham and Darlington, Teesside, North Yorkshire, York and Selby.
From education and prevention, to crisis and specialist care our talented and compassionate teams work in partnership with our patients, communities and partners to help the people of our region feel safe, understood, believed in and cared for.
We nurture the recovery journey of anyone in need of our help. In Our Trust, everyone has a say in how they are supported and treated because we listen to every person in our care until they feel understood. Our patients, their families and carers work together with us towards better mental health.
We're committed to new thinking that improves the wellbeing of our region. We connect with our communities and partners to get mental health care right, in areas that really need it.
We won't rest until everyone in our region has the mental health care they need, to lead their best possible life.
Job responsibilitiesPlease refer to the attached job description and person specification for further detailed information to ensure that you meet the role criteria before applying.
Should you wish to have an informal discussion please contact Beverley Smith Information Compliance Manager at .
Person Specification Qualifications- Educated to degree standard or equivalent
- Incident investigation course or certificate
- Experience in Information Governance and compliance in an NHS or large organisation
- Providing advice and guidance to all levels of staff in sometimes complex situations
- Experience of service delivery within a large organisation;
- Experience of using Microsoft Office software; Word, Excel, Outlook
- Demonstrable knowledge to degree level in the following areas: UK Data Protection legislation (UK GDPR and Data Protection Act 2018)
- Information Governance topics including: Information Security, Confidentiality, Data Quality, Encryption and Data Transfer.
- Understanding of Trust Policies on Information Governance, Information Risk and Records Policies (or within agreed timescales).
- Ability to remain impartial at all times
- Report writing skills with a high level of grammar and vocabulary
- Analysis of data from a variety of sources.
- Experience of taking notes in sometimes delicate interviews
- Experience of working to strict controls needed to comply with legal constraints regarding investigations
- Experience of working in a health care setting with multi professional healthcare teams
- Basic awareness of other legislation relevant to job role including but not limited to Computer Misuse Act 1990; Privacy and electronic communications regulations 2003 (PECR); Investigatory Powers Act 2018
- Relevant NHS Codes of Practice and standards including but not limited to Information Security Management NHS Code of Practice; Confidentiality NHS Code of Practic
- Ability to remain impartial at all times
- Report writing skills with a high level of grammar and vocabulary
- Analysis of data from a variety of sources
- oAbility to travel independently in accordance with Trust policies and service need.
This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.
Tees Esk and Wear Valleys NHS Foundation Trust