Job summary
Spencer Private Hospitals (SPH) are looking for an enthusiastic individual to join our busy Information Governance Team. Based in the beautiful area of East Kent with a Head Office and three clinical sites, with the ability to work remotely, you will work collaboratively across the business to ensure our compliance obligations are persistently met.
In short, we are seeking an exceptional individual to ensure that the business continues to evidence its regulatory compliance requirements in the IG space as well as effectively co-ordinating Data Protection Impact Assessments (DPIAs) as well as Records of Processing Activity (ROPAs), Third-Party management and Audits.
Reporting to the IT/IG Operations Manager, the successful candidate will work alongside the rest of the IG Team, the IT Team and other key stakeholders across the business as well as external contracted third parties. This role will also work closely with the Senior Management Team, the Head of Digital Transformation and IG Compliance in so far as ensuring that the Digital Strategy is compliant under UK GDPR in that data privacy is embedded by design..
It is expected that this role can be carried out remotely, however to support the business needs, the successful candidate must be able to travel to all our sites in East Kent.
Interview Date: 18th November 2024
Main duties of the job
Spencer Private Hospitals (SPH) are looking for an
experienced and enthusiastic individual to join our busy Information
Governance Team. Based in the beautiful area of East Kent with a Head Office
and three clinical sites, with the ability to work remotely, you will work
collaboratively across the business to ensure our compliance obligations are
persistently met.
In
short, we are seeking an exceptional individual to ensure that the business continues
to evidence its regulatory compliance requirements in the IG space as well as
effectively co-ordinating Data Protection Impact Assessments (DPIAs) as well as
Records of Processing Activity (ROPAs), Third-Party management and Audits.
About us
Welcome to a Company that supports you and your
future career expectations. Your career past is where you have been and
Spencer Private Hospitals Ltd could be where you are heading, you just need
to believe.
We are a healthcare organisation which strives for
and is genuinely passionate about delivering the absolute best in everything
that we do and this is reflected in the way that we treat our staff. We
believe in excellent communication and engagement which is demonstrated
through our Investors in People Accreditation and positive staff surveys. As
an organisation, we recognise and uphold the fact that our staff are our
greatest asset.
We are fortunate enough to be based in East
Kent, arguably one of the most beautiful parts of the UK, which often boasts
the best weather due to our proximity to Western Europe. Kent is known as `the
Garden of England. We are a short hop across the Channel to France with the
bonus of fast rail connections to Europe, London and surrounding areas. This
and the availability of high-quality schools which support grammar school
education as well as academy and private schools ensure that this is an excellent
place to settle. We have a CQC rating of Good and are on an improvement
trajectory to Outstanding.
Job description
Job responsibilities
To provide administration and support in the Information Governance (IG)
Team to ensure the organisations compliance with policies and procedures
related to IG and to liaise with internal/external data controllers/processors regarding
the processing of personal data at or for Spencer Private Hospitals under the
direction of the IT/IG Operations Manager.
The post requires the holder to maintain a good baseline understanding
of data protection laws that affect the UK, as well as associated best practice
within the IG space with an ability to determine when confidentiality, tact and
diplomacy should be applied is essential, as will the ability to work with levels
of staff within SPH.
The post will require a degree
of flexibility and although predominantly working from home, there will be an
expectation to attend all SPH sites (both clinical and Head Office) when
required, subject to business needs following instruction from the IT/IG
Operations Manager. The ability to travel between sites for meetings, training
and other purposes is also essential
Job description
Job responsibilities
To provide administration and support in the Information Governance (IG)
Team to ensure the organisations compliance with policies and procedures
related to IG and to liaise with internal/external data controllers/processors regarding
the processing of personal data at or for Spencer Private Hospitals under the
direction of the IT/IG Operations Manager.
The post requires the holder to maintain a good baseline understanding
of data protection laws that affect the UK, as well as associated best practice
within the IG space with an ability to determine when confidentiality, tact and
diplomacy should be applied is essential, as will the ability to work with levels
of staff within SPH.
The post will require a degree
of flexibility and although predominantly working from home, there will be an
expectation to attend all SPH sites (both clinical and Head Office) when
required, subject to business needs following instruction from the IT/IG
Operations Manager. The ability to travel between sites for meetings, training
and other purposes is also essential
Person Specification
Experience
Essential
- Proven experience working in an administration environment involving personal data
- Experience in a regulated environment
- Knowledge of GDPR
- An understanding of relevant legislation governing the Information Governance space
- Experience of working within environments that process personally identifiable information (PII)
Desirable
- Previous experience working in executive support, compliance, assurance, or regulatory/enforcement role
- Previously worked in a medical/health care environment
Skills
Essential
- Good working knowledge of the Microsoft 365 suite
- Understanding of how to apply legislation in a practical scenario
Desirable
- Problem solving skills
- Ability to handle confidential information
- Proactive in handling complex situations and problems
- Ability to adapt communications skills to stakeholders
Other
Essential
- Ability to travel between sites
Qualifications
Essential
- Maths and English (GCSE or equivalent) Grade C or above
Desirable
- Information Governance or Data Protection Qualification
Personal Attributes
Essential
- Outstanding communication skills
- Strong Organisational skills
- Polite and confident telephone manner
- Organised and methodical in approach
- Able to work under pressure
- Ability to act on own initiative
- Able to meet deadlines
- Self-motivated
- Effective communicator
- Good time management ensuring all tasks are achieved
- Demonstrates the ability to prioritise workload effectively
- Flexibility in responding to data breach of serious incidents which may require a site-visit, possibly out-of-hours
Person Specification
Experience
Essential
- Proven experience working in an administration environment involving personal data
- Experience in a regulated environment
- Knowledge of GDPR
- An understanding of relevant legislation governing the Information Governance space
- Experience of working within environments that process personally identifiable information (PII)
Desirable
- Previous experience working in executive support, compliance, assurance, or regulatory/enforcement role
- Previously worked in a medical/health care environment
Skills
Essential
- Good working knowledge of the Microsoft 365 suite
- Understanding of how to apply legislation in a practical scenario
Desirable
- Problem solving skills
- Ability to handle confidential information
- Proactive in handling complex situations and problems
- Ability to adapt communications skills to stakeholders
Other
Essential
- Ability to travel between sites
Qualifications
Essential
- Maths and English (GCSE or equivalent) Grade C or above
Desirable
- Information Governance or Data Protection Qualification
Personal Attributes
Essential
- Outstanding communication skills
- Strong Organisational skills
- Polite and confident telephone manner
- Organised and methodical in approach
- Able to work under pressure
- Ability to act on own initiative
- Able to meet deadlines
- Self-motivated
- Effective communicator
- Good time management ensuring all tasks are achieved
- Demonstrates the ability to prioritise workload effectively
- Flexibility in responding to data breach of serious incidents which may require a site-visit, possibly out-of-hours
Disclosure and Barring Service Check
This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.