Job summary
- Main area
- Yes
- Grade
- Band 8a
- Contract
- Fixed term: 12 months (Hybrid working - Postholder will be expected to travel to clients/office as and when required to meet the service needs of the organisation)
- Hours
- Full time
- Flexible working
- Job ref
- 287-MIAA-7-25
- Employer
- Liverpool University Hospitals NHS Foundation Trust
- Employer type
- NHS
- Site
- One of MIAA Office Locations
- Town
- Liverpool
- Salary
- £53,755 - £60,504 per annum
- Salary period
- Yearly
- Closing
- 13/04/2025 23:59
Employer heading

Principal Data Protection & Information Governance Specialist
Band 8a
Job overview
We are looking for enthusiastic DP and IG Specialist to join our successful Solutions team working across Cheshire & Merseyside and the surrounding areas. The successful candidate will be based in our Liverpool office.
As a DP and IG Specialist (Band 8A) you will be earning up to £60,504 all within a flexible working environment.
In their client-facing role they will provide support to existing NHS and Public Sector MIAA clients, individually, at place and at system level, to ensure that they meet highly complex legal and regulatory obligations in relation to Information Governance including confidentiality, information security, Data Protection, Freedom of Information and GDPR,
Additionally, the post holder will have internal DP and IG responsibilities to MIAA and its staff. We want driven people who think creatively about their work, embrace challenges and can resolve complex problems.
Main duties of the job
The post holder will be a subject matter expert and have an in-depth specialised knowledge and experience in information governance and data protection.
In their client-facing role, they will:
- support clients, individually, at place and at system level, to ensure that they meet highly complex legal and regulatory obligations in relation to Information Governance including confidentiality, information security, Data Protection, Freedom of Information and GDPR.
- Provide support to, and deputise for, the MIAA - provided Data Protection Officer to a range of clients.
- Provide interim expert IG support to clients as required
Additionally, the post holder will have internal responsibilities including:
- monitoring policies, systems and processes to ensure effective compliance with complex regulatory and legal obligations, supporting the maintenance of certification to relevant Data Protection Privacy standards, monitoring and reporting upon compliance with complex standards and certifications and coordinating the organisation's processes for Subject Access-Requests, or applications under the Freedom of Information Act.
Working for our organisation
MIAA is an NHS Shared service, hosted by Liverpool University Hospitals NHS Foundation Trust. MIAA is the predominant provider of internal audit services to over 50+ NHS and public sector organisations in the Northwest and beyond. MIAA offer clients a number of services in addition to internal audit including Solutions: Information Governance, Anti-Fraud, Technical Risk Assurance, Capital, Clinical Coding and Healthcare Quality.
MIAA’s budgeted turnover is 12 million, which is demonstrative of the organisation’s ambitious and strategic goals.
We pride ourselves in promoting equality and valuing diversity.
Our values are:-
- Trust
- Respect & Compassion
- Innovation & Excellence
Detailed job description and main responsibilities
Maintain a high level of subject matter expertise in information governance issues, through research, liaison with information governance colleagues in other NHS organisations and attendance at national information governance meetings.
Have a strong technical understanding on all relevant data protection and information governance guidance, regulation and legislation.
Establish presence on, and reputation as a subject matter expert with, relevant external bodies influencing policy.
Have excellent influence, written and oral communication, and negotiation skills; being comfortable presenting information on detailed and complex technical subjects to both individuals and groups not familiar with the subject matter.
Provide expert date protection and information governance legislation and regulation knowledge and practical expertise to define, scope and deliver MIAA audit and advisory services.
Through allocated assignments and services, support clients to meet their legal and regulatory obligations in relation to Information Governance including confidentiality, information security, Data Protection, Freedom of Information and GDPR through expert advice and guidance and demonstrable knowledge and experience.
Support clients in building robust, complex, information governance frameworks.
Work across organisational boundaries, liaising with senior managerial and clinical staff at local, place and system level.
For a full list of duties, please refer to the attached job description.
Person specification
Qualifications
Essential criteria
- Relevant masters/equivalent.
- BCS/ISEB Practitioner certificate in Data Protection
Desirable criteria
- Certified Data Protection Officer
- Relevant qualification/accreditation in the provision of training
Experience
Essential criteria
- ‘Hands on’ experience of implementing and assuring data protection and information governance processes and methodologies
- Data Protection Officer delivery experience
- Must have senior experience of working in audit and consultancy or within a senior role in digital delivery.
- Must have significant demonstrable PQE plus self certified CPD
- Must have experience of working in the NHS or other public sector organization resulting in a developed understanding of digital systems, risks, and processes. Alternative experience in an equivalent organization may be acceptable.
Desirable criteria
- Experience of operating at Board level, presenting to Audit Committee, and influencing Executive and NonExecutive Directors
- Must have significant experience of recruiting, developing, managing, and supervising staff
Knowledge
Essential criteria
- Must have a full and mature understanding of NHS and public sector structures, policy, functions, and digital systems together with the aptitude to build on that knowledge.
- Must have a full understanding of the digital agenda, corporate governance, risk management and assurance principles and practice, data protection and information governance
- Specific technical knowledge including: - The NHS Data Protection and Security - NHS, government, and local government data protection strategies, - Data Protection and GDPR legislation - Freedom of Information legislation
Applicant requirements
You must have appropriate UK professional registration.
Documents to download
Further details / informal visits contact
- Name
- Suzanne Crutchley
- Job title
- Head of Data Protection & Information Governance
- Email address
- [email protected]
- Telephone number
- 07717720255
If you have problems applying, contact
- Address
-
L9 7AL
- Telephone
- 0151 706 4666
List jobs with Liverpool University Hospitals NHS Foundation Trust in Administrative Services or all sectors