IG Privacy and Risk Manager | South London and Maudsley NHS Foundation Trust

Company: South London and Maudsley NHS Foundation Trust
Apply for the IG Privacy and Risk Manager | South London and Maudsley NHS Foundation Trust
Location: Greater London
Job Description:

Overview

The key objective of this role is to provide data security assurance by undertaking Data Protection Impact Assessment and assurance for existing and upcoming service, application, system developments across the Trust and in key partnerships. The post holder will be responsible for the Trust’s compliance with privacy and data protection principles and champion patient and public privacy across the organisation with an enabling and supportive approach.

The post holder will be an enthusiastic data privacy and risk practitioner, self-motivated, innovative professional with good understanding of patient confidentiality, privacy, data security, social media and digital health applications in health and social care services with a satisfactory track record of monitoring compliance with the Data Protection and health and social care information governance standards.

Career Progression

We are committed to get the very best out of our staff and support staff in their career aspirations. We have career pathways available, where you will be able to develop your skills and build on your experience to progress into other roles across different specialties. In addition, we offer ongoing training and development in conjunction with the BCS membership.

Responsibilities

  • Lead a privacy by design approach by assessing and managing privacy design, impact and outcome of existing and upcoming service, application, system developments across the Trust and in key partnerships.
  • Develop, implement and monitor data processing agreements, data sharing agreements; data transfer agreements and non-disclosure agreements.
  • Manage the Information Security Committee to include management of action plan.
  • Co-ordinate, negotiate and influence design of existing and upcoming service, applications, system developments across the Trust and in key partnerships to enhance privacy.
  • Develop, design, co-ordinate dissemination of privacy notices that are clear, concise and in line with Data Protection principles.
  • Manage Data Protection impact assessments ensuring delivery of the agreed actions through liaison with the stakeholders in order to provide the Trust via the Head of Information Governance and the CDIO adequate privacy assurance.
  • Undertaking assurance and compliance work to support GDE projects.
  • Support the Head of IG in collaborative work with the SLP and the STPs.
  • Ensure monitoring and review of IG Policies.
  • Manage Incident process, including monitoring Datix, giving advice and escalating serious incidents to the IG Operations Lead.
  • Support the Head of Information Governance and the IG Operations Lead in the development, delivery and management of the Trust’s IG function with a vision to empower service users, support clinicians, enable research, improve productivity and support organisational performance.
  • Support the Head of Information Governance, the Caldicott Guardian and the Chief Digital Information Officer/SIRO for the successful delivery of the Information Governance Action Plan.
  • Provide a deputy function to cover the responsibilities of the Information Governance Privacy and Risk and IG Operations Leads and when required.

Flexible Working

As one of the few Trusts in London we are proud to offer flexible working as part of our new ways of working, and we are happy to talk flexible working at the interview stage. In this role you will be able to work Monday to Friday in the time frames from 8am to 6pm, giving you the very best of good work life balance.

About the team

We are looking to recruit a dynamic, efficient and reliable person to our Information Governance team into the role of Privacy and Risk Manager – Band 7 to implement and actively monitor the Trust’s compliance with privacy and data protection principles and champion patient and public privacy across the organisation with an enabling and supportive approach.

Information governance (IG) provides a framework to bring together all the legal rules, guidance and best practice that apply to the handling and security of information.

IG is about setting a high standard for the handling of information through a robust IT security assurance and complying with the law and national standards.

We ensure a high standard of information handling across the Trust, covering information security, data protection, freedom of information and privacy.

About the location

Our Trust headquarters is located at Denmark Hill less than 5 minutes from the train station (zone 2). We also provide services and operate across other locations, such as London boroughs of Croydon, Lambeth, Lewisham and Southwark; and substance misuse services for residents of Bexley, Lambeth, Greenwich and Wandsworth.

The Trust encourages and welcomes applications from people with lived experience of mental health challenges. We see this as valuable and recognise the positive impact this experience can have on the work we do.

This advert closes on Wednesday 1 Apr 2026

#J-18808-Ljbffr…

Posted: March 28th, 2026