Head of Information Management
Head of Information Management Sussex £55,000 - £65,000 + Monthly Supplement Permanent Full Time - 37 hours a week Start - ASAP Vetting required following offer About the company Sue Hill Recruitment are delighted to be working exclusively with Sussex Police, who are looking to recruit an experienced Head of Information Management (Senior Manager and Information Governance professional), who can lead the Information Management team, and act as Data Protection Officer whilst also advising Chief Officers on a sustainable future model for resourcing Information Management. The post-holder will work closely with the Head of Corporate Development and other senior stakeholders to understand the future needs of the Force and ensure that they have the correct structures and resources in place to deliver their obligations under GDPR. JOB PURPOSE To develop and direct the delivery of the Information Management strategy, resources and functions in partnership with Surrey Police, to enable both forces to effectively manage the Force’s Information assets, supporting regional collaboration and ensuring that the statutory obligations are effectively and lawfully discharged. To perform the role of Data Protection Officer, overseeing and directing all data protection and related Information privacy activities, to ensure the proper handling of personal Information by Sussex Police, to comply with data protection legislation. Provide specialist advice, training and instruction to ensure all personnel have an appropriate level of awareness in relation to GDPR data protection legislation.Monitor compliance with the other data protection laws and policies.Raise the profile of data compliance across the Sussex Police, by setting the Data Protection Compliance Strategy and fostering a data protection culture.Oversee the Management of personal Information, including the creation, review and updating of effective policies and procedures across business units and any future transformational activities.Responsible for Information lifecycle Management, which includes data quality, Information security, Data Protection and Freedom of Information Act, Information exchange and disclosure procedures, the Force Research Bureau (PNC/PND) and the Disclosure and Barring Service.Represent Sussex Police at a National and Regional level in matters relating to Information Management. KEY ACCOUNTABILITIES Develop, negotiate and deliver an agreed strategy and implementation plan for Information Management which supports the strategic objectives of the Force. Advising Chief Officers on the Data Protection Compliance Strategy and fostering a data protection culture within the Police, including metrics for Data Protection Impact Assessments and monitoring the performance of such assessments.Monitoring compliance with the GDPR and other data protection laws, data protection policies, awareness-raising, training, and audits.Manage the highest level of demand for Data Subject Rights, and achieve compliance with the DPA obligations, including subject access, courts and other legislative requests.Development, review and audit of all Information Sharing Agreements held by the Force and provide advice and decisions of the ad-hoc sharing of police information.Support and lead the concept of 'Data Protection by Design’ by ensuring that Privacy Impact Assessments are integrated in the early stages of any project, and then throughout its lifecycle.Undertake systematic auditing and monitoring of all local and national Information and systems used to ensure compliance with GDPR data protection legislation, national standards, Codes of Practice, and policies and procedures; identifying issues & risks, and reporting to Chief Officers to ensure corrective actions are implemented. Act as the primary contact for the Information Comissioner’s Office (ICO) in respect of complaints, data breaches and annual registrations.Direct effective governance of policies and procedures, and specifically development of policy and procedures to support Information Management, consistent with DPA/FOI and MOPI principles and Information Management related projects.Achieve compliance with the Data Protection Act obligations, including subject access, courts and other legislative requests.Provide briefings, advice and guidance to Chief Officers or Heads of Departments.Manage all staff responsible for delivering IM, DPA, FOIA, Data Compliance, FRB and disclosure functions in accordance with employment policies and employment regulations.Share knowledge and best practice and identify collaborative working opportunities.Liaise with Legal Services regarding changes to data protection legislation, and the implications of these, including any required changes to policies, procedures and working practices.Manage delegated IM, FRB, DBS, Access and DCT Budgets. Why you will be hired To be considered for this role you will require: Degree or appropriate qualification/experience in Information Management, Business Management with a strong information element, or similar BCS Practitioners Certificate in Data ProtectionBCS Practitioner Certificate in Freedom of InformationExpertise in UK GDPR, DPA 2018 and other national and European data protection laws and practices, such as the Freedom of Information Act, Computer Misuse Act, Copyright, Designs and Patents Act, Human Rights Act, and the HMG Security Policy Framework.Experience in a data protection role, preferably within a public sector organisation using large- scale, complex information processing systems.Experience of implementing a compliance strategy within an organisation and conducting audits, investigations and risk management to ensure adherence.Understanding of information security management, information technologies and data security.Experience of leading a large and diverse team working under high levels of demand
read more