next level in your career. Key Responsibilities: Strategy and Compliance: Design and implement a comprehensive security strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information security risk management program, including the identification, assessment … software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing … NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU dataprotection laws (eg GDPR, DataProtection Act 2018), NIS Directive, and their practical application within a health tech context. Stakeholder management: Excellent communication, influencing, and negotiation More ❯
BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
next level in your career. Key Responsibilities: Strategy and Compliance: Design and implement a comprehensive security strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information security risk management program, including the identification, assessment … software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing … NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU dataprotection laws (eg GDPR, DataProtection Act 2018), NIS Directive, and their practical application within a health tech context. Stakeholder management: Excellent communication, influencing, and negotiation More ❯
Bath, England, United Kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
security incidents, including reporting to relevant authorities. Awareness & Training : Drive a strong security culture through staff training and awareness initiatives. Regulatory Compliance : Support ongoing compliance with UK and EU dataprotection laws and regulations. Leadership : Provide strategic leadership and mentorship within the governance, risk, and compliance team. Essential Skills: Security Leadership : Senior-level experience in information security, ideally … leading incident response, including regulatory reporting and crisis management. Policy & Governance : Skilled in developing and enforcing comprehensive security policies and governance structures. Regulatory Compliance : Strong grasp of GDPR, the DataProtection Act, and NIS Directive within a health tech context. How to Apply: If this sounds like an environment in which you would excel, please send your CV More ❯
taunton, south west england, united kingdom Hybrid / WFH Options
Computer Network Defence Ltd (CND)
security incidents, including reporting to relevant authorities. Awareness & Training : Drive a strong security culture through staff training and awareness initiatives. Regulatory Compliance : Support ongoing compliance with UK and EU dataprotection laws and regulations. Leadership : Provide strategic leadership and mentorship within the governance, risk, and compliance team. Essential Skills: Security Leadership : Senior-level experience in information security, ideally … leading incident response, including regulatory reporting and crisis management. Policy & Governance : Skilled in developing and enforcing comprehensive security policies and governance structures. Regulatory Compliance : Strong grasp of GDPR, the DataProtection Act, and NIS Directive within a health tech context. How to Apply: If this sounds like an environment in which you would excel, please send your CV More ❯
will need to be eligible to obtain UK Security Clearance. By applying for this position, you are confirming that you consent to the retention of your personal data. Your data is held securely on our own premises and under the terms of the DataProtection Act (2018). It will be treated as confidential, and will not … be transferred to any third party, or to any other jurisdiction without your consent. We will not hold any data for any longer than is necessary for us to fulfil our obligations and will remove any data at your written request. JBRP1_UKTJ More ❯
that a high quality IT support service is provided to all users of trust systems, in accordance with defined policies, procedures and service level agreements. This includes IT Security, DataProtection and Information Government requirements. The post holder will be required on occasions to deputise for the IT Support Manager On occasions there will be a requirement to More ❯