next level in your career. Key Responsibilities: Strategy and Compliance: Design and implement a comprehensive security strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information security risk management program, including the identification, assessment … software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing … NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU dataprotection laws (eg GDPR, DataProtectionAct 2018), NIS Directive, and their practical application within a health tech context. Stakeholder management: Excellent communication, influencing, and More ❯
BA1, Bath, Bath and North East Somerset, Somerset, United Kingdom
YT Technologies
next level in your career. Key Responsibilities: Strategy and Compliance: Design and implement a comprehensive security strategy and roadmap, ensuring our security posture meets the requirements of the NHS Data Security and Protection Toolkit (DSPT), Cyber Essentials Plus, ISO 27001:2022, and other relevant frameworks. Risk Management: Lead the information security risk management program, including the identification, assessment … software development or health technology environment UK health sector experience: In-depth knowledge and practical experience with UK healthcare security standards and regulations, including demonstrable expertise with the NHS Data Security and Protection Toolkit (DSPT), Digital Technology Assessment Criteria (DTAC) and NCSC CAF. ISO 27001:2022 implementation & maintenance: Hands-on experience with the successful implementation, certification, and ongoing … NCSC, ICO, NHS England). Policy & governance: Extensive experience in developing, implementing, and enforcing comprehensive information security policies, standards, and procedures. Regulatory compliance: Solid understanding of UK and EU dataprotection laws (eg GDPR, DataProtectionAct 2018), NIS Directive, and their practical application within a health tech context. Stakeholder management: Excellent communication, influencing, and More ❯
COUNTY HOUSE, G12 ST. MARYS STREET, WORCESTER, England
THE DEVELOPMENT MANAGER LTD
with policies to ensure compliance. Support and contribute to the overall ethos of TDM. Keep up to date with developments in ICT and update practices where necessary. Ensure all data is handled, stored and disposed of in accordance with the DataProtectionAct 2018 and the UK GDPR. Any other duties as directed by your line … manager and/or a director. Ensure compliance with all TDM policies, procedures and legal responsibilities, including safeguarding, ISO9001, Confidentiality, DataProtection and Cyber Essentials. Training Potential to progress into a full-time position and continue onto a Level 6 Degree Apprenticeship. Apprenticeship Standard Information communications technician (level 3) Training Provider THE DEVELOPMENT MANAGER LTD Working Week Monday More ❯
bath, south west england, united kingdom Hybrid / WFH Options
Synoptix Limited
will need to be eligible to obtain UK Security Clearance. By applying to this position, you are confirming that you consent to the retention of your personal data. Your data is held securely on our own premises and under the terms of the DataProtectionAct (2018). It will be treated as confidential, and will … not be transferred to any third party, or to any other jurisdiction without your consent. We will not hold any data for any longer than is necessary for us to fulfil our obligations and will remove any data at your written request. JBRP1_UKTJ More ❯