IG Privacy and Risk Manager

South London & Maudsley NHS Foundation Trust (Health Careers)
London, GB
On-site

Job Description

The key objective of this role is to provide data security assurance by undertaking Data Protection Impact Assessment and assurance for existing and upcoming service, application, system developments across the Trust and in key partnerships. The post holder will be responsible for the Trust's compliance with privacy and data protection principles and champion patient and public privacy across the organisation with an enabling and supportive approach.

The post holder will be an enthusiastic data privacy and risk practitioner, self-motivated, innovative professional with good understanding of patient confidentiality, privacy, data security, social media and digital health applications in health and social care services with a satisfactory track record of monitoring compliance with the Data Protection and health and social care information governance standards.

Career Progression

We are committed to get the very best out of our staff and support staff in their career aspirations. We have career pathways available, where you will be able to develop your skills and build on your experience to progress into other roles across different specialties. In addition, we offer ongoing training and development in conjunction with the BCS membership.

Main duties of the job

  • Lead a privacy by design approach by assessing and managing privacy design, impact and outcome of existing and upcoming service, application, system developments across the Trust and in key partnerships.
  • Develop, implement and monitor data processing agreements, data sharing agreements data transfer agreements and non-disclosure agreements.
  • Manage the Information Security Committee to include management of action plan
  • Co-ordinate, negotiate and influence design of existing and upcoming service, applications, system developments across the Trust and in key partnerships to enhance privacy
  • Develop, design, co-ordinate dissemination of privacy notices that are clear, concise and in line with Data Protection Principles
  • Manage Data Protection impact assessments ensuring delivery of the agreed actions through liaison with the stakeholders in order to provide the Trust via the Head of Information Governance and the CDIO adequate privacy assurance.
  • Undertaking assurance and compliance work to support GDE projects.
  • Support the Head of IG in collaborative work with the SLP and the STPs
  • Ensure monitoring and review of IG Policies

Flexible working

As one of the few Trusts in London we are proud to offer flexible working as part of our new ways of working, and we are happy to talk flexible working at the interview stage. In this role you will be able to work Monday to Friday in the time frames from 8am to 6pm, giving you the very best of good work life balance.

About us

About the team:

We are looking to recruit a dynamic, efficient and reliable person to our Information Governance team into the role of Privacy and Risk Manager - Band 7 to implement and actively monitor the Trust's compliance with privacy and data protection principles and champion patient and public privacy across the organisation with an enabling and supportive approach.

Information governance (IG) provides a framework to bring together all the legal rules, guidance and best practice that apply to the handling and security of information.

IG is about setting a high standard for the handling of information through a robust IT security assurance and complyingwith the law and national standards.

We ensure a high standard of information handling across the Trust, covering information security,data protection,freedom of information and privacy.

About the location:

Our Trust headquarters is located at Denmark Hill less than 5 minutes from the train station (zone 2). We also provide services and operate across other locations, such as London boroughs of Croydon, Lambeth, Lewisham and Southwark and substance misuse services for residents of Bexley, Lambeth, Greenwich and Wandsworth.

Job description

Job responsibilities

  • Lead a privacy by design approach by assessing and managing privacy design, impact and outcome of existing and upcoming service, application, system developments across the Trust and in key partnerships.
  • Develop, implement and monitor data processing agreements, data sharing agreements data transfer agreements and non-disclosure agreements.
  • Manage the Information Security Committee to include management of action plan
  • Co-ordinate, negotiate and influence design of existing and upcoming service, applications, system developments across the Trust and in key partnerships to enhance privacy
  • Develop, design, co-ordinate dissemination of privacy notices that are clear, concise and in line with Data Protection Principles
  • Manage Data Protection impact assessments ensuring delivery of the agreed actions through liaison with the stakeholders in order to provide the Trust via the Head of Information Governance and the CDIO adequate privacy assurance.
  • Under

Skills & Requirements

Technical Skills

Data Protection Impact AssessmentPrivacy DesignData Processing AgreementsInformation SecuritySocial MediaDigital Health ApplicationsData Protection PrinciplesPrivacy NoticesInformation GovernanceMonitoring ComplianceCollaborationNegotiationHealthcareInformation GovernanceData Security

Employment Type

FULL TIME

Level

senior

Posted

3/18/2026

Apply Now

You will be redirected to South London & Maudsley NHS Foundation Trust (Health Careers)'s application portal.