Job summary
****Please note that we are unable to offer visa sponsorship for this role, and all applicants must have eligibility to work in the UK.****
We are seeking a Senior Information Governance Officer to lead, embed and assure robust information governance across the organisation. This is a senior specialist role within our Digital and Governance function, offering a high level of autonomy and the opportunity to shape how information governance is delivered at PCL.
The role is hybrid, with most work carried out from home. However, you will be expected to attend the office and other locations as required for meetings, governance forums and stakeholder engagement.
You will act as a key professional authority on information governance matters, working closely with senior stakeholders including the Executive Team, Governance Committee, Caldicott Guardian, SIRO and Information Asset Owners. You will also deputise for the Head of Information Governance & Technology when required.
****Please note that we are unable to offer visa sponsorship for this role, and all applicants must have eligibility to work in the UK.****
Main duties of the job
Lead the development and ongoing improvement of PCLs Information Governance framework and strategy
Provide senior-level advice, assurance and challenge on IG matters across the organisation
Oversee core IG activity including DPIAs, DSPT completion, SARs, FOI requests, data sharing agreements and incident management
Lead on information risk management, working with the SIRO and IAOs to ensure risks are identified, recorded and mitigated
Produce clear, high-quality reports and assurance papers for senior governance forums
Ensure compliance with UK GDPR, the Data Protection Act 2018, NHS IG requirements and relevant codes of practice
Embed data protection and information governance into digital projects and service developments
Design and deliver IG training, awareness and guidance for staff across the organisation
Provide professional leadership, mentoring and support to colleagues with IG responsibilities
About you
You will be an experienced Information Governance professional who is confident operating at senior level in a regulated environment, comfortable working autonomously while maintaining strong relationships across the organisation.
Key dates
- Closing date:Friday 16th January 2026
- Interviews:Week commencing 2nd February 2026
- Interview format:Face-to-face interview and presentation
- Proposed start date:1st April 2026
About us
About Patient Care Locally (PCL)
PCL is a not-for-profit Community Interest Company dedicated to enhancing healthcare delivery across Leicester, Leicestershire, and Rutland. Working in close collaboration with the NHS, we focus on delivering the right care at the right time in the right place - closer to home for patients.
As a CQC registered organisation rapidly expanding beyond our original region, we maintain the highest standards of quality while alleviating pressure on hospital services. Our innovative approach has earned recognition as finalists at both the HSJ Awards and Strategic PA Awards in 2024.
Our Values-Driven Culture:
- Patient-centred:Everything we do puts patients first
- Team-focused:We respect, trust, and empower each other while valuing every contribution
- Our Company:We're a trusted, caring company that's innovative, agile, and adaptive - always delivering
Working at PCL:You'll join a fast-paced, dedicated team committed to continuous improvement and making a real difference to over 1.2 million patients. We offer hybrid working arrangements, comprehensive training, and opportunities for cross-functional learning and development. Our collaborative environment encourages skill-sharing and supports professional growth while maintaining high-quality patient care standards.
Job description
Job responsibilities
Patient Care
Locally (PCL) is a forward-thinking and progressive healthcare organisation
committed to delivering high-quality, patient-centred care. As the organisation
continues to mature its digital, governance, risk, and compliance (GRC)
capabilities, we are seeking to appoint a Senior Information Governance Officer to
play a pivotal role in leading, embedding and assuring robust information
governance across the organisation.
This is a senior, specialist role
within the Digital and Governance function, providing expert leadership, assurance,
and operational delivery across all core Information Governance disciplines.
The postholder will work with
a high degree of autonomy, acting as a key professional
authority on IG matters and deputising for the Head of Information Governance & Technology
when required.
The role will
work directly with senior stakeholders including the Governance Committee,
Caldicott Guardian,
Senior Information Risk
Owner (SIRO), Data Protection Officer (DPO), Information Asset Owners (IAOs)
and members of the Executive
Team, providing assurance, advice, reporting and constructive
challenge where appropriate. The postholder will be responsible for both the strategic development
and hands-on delivery
of the organisations IG framework, ensuring compliance with legislation, NHS
standards and best practice.
In addition to
leading on complex and high-risk IG matters, the Senior Information Governance
Officer will provide professional
leadership and guidance to colleagues with an interest in
information governance, supporting capability development while retaining
responsibility for core operational activities such as DPIAs, completion of the
DSPT, incident management, SARs, and audits.
This role is
ideal for an experienced IG professional who is confident operating at senior
level, able to make informed decisions independently, and comfortable providing
assurance and leadership in a complex, regulated healthcare environment.
Job description
Job responsibilities
Patient Care
Locally (PCL) is a forward-thinking and progressive healthcare organisation
committed to delivering high-quality, patient-centred care. As the organisation
continues to mature its digital, governance, risk, and compliance (GRC)
capabilities, we are seeking to appoint a Senior Information Governance Officer to
play a pivotal role in leading, embedding and assuring robust information
governance across the organisation.
This is a senior, specialist role
within the Digital and Governance function, providing expert leadership, assurance,
and operational delivery across all core Information Governance disciplines.
The postholder will work with
a high degree of autonomy, acting as a key professional
authority on IG matters and deputising for the Head of Information Governance & Technology
when required.
The role will
work directly with senior stakeholders including the Governance Committee,
Caldicott Guardian,
Senior Information Risk
Owner (SIRO), Data Protection Officer (DPO), Information Asset Owners (IAOs)
and members of the Executive
Team, providing assurance, advice, reporting and constructive
challenge where appropriate. The postholder will be responsible for both the strategic development
and hands-on delivery
of the organisations IG framework, ensuring compliance with legislation, NHS
standards and best practice.
In addition to
leading on complex and high-risk IG matters, the Senior Information Governance
Officer will provide professional
leadership and guidance to colleagues with an interest in
information governance, supporting capability development while retaining
responsibility for core operational activities such as DPIAs, completion of the
DSPT, incident management, SARs, and audits.
This role is
ideal for an experienced IG professional who is confident operating at senior
level, able to make informed decisions independently, and comfortable providing
assurance and leadership in a complex, regulated healthcare environment.
Person Specification
Commitment to Values & Behaviours
Essential
- Must be able to demonstrate behaviours consistent with PCLs Values and Behaviours.
- High levels of professionalism, integrity, and confidentiality.
- Resilient, adaptable, and confident operating in a complex and evolving environment.
Desirable
- Experience supporting organisational change or transformation.
Experience
Essential
- Substantial experience working in Information Governance, Data Protection or a related GRC role within a regulated environment.
- Proven experience of leading and delivering end-to-end IG activities independently, including DPIAs, SARs, DSPT completion, incident management, audits, and policy development.
- Experience of providing senior-level IG advice and assurance to committees, senior managers, and executives.
- Experience of supporting organisational compliance with the Data Protection Act, UK GDPR, and related legislation.
- Experience in IG within NHS, health, or social care organisations.
Desirable
- Experience of deputising for a senior IG/Governance lead.
- Experience contributing to organisational IG or GRC strategy development.
Qualifications
Essential
- Educated to degree level of equivalent demonstrable experience in Information Governance, Data Protection, Information Management, or a related discipline.
- Recognised qualification in Information Governance/Data Protection (e.g. BCS Foundation Certificate in Data Protection, IAPP, CIPM, CIPP/E) or significant equivalent experience.
Desirable
- Postgraduate qualification or advanced professional certification in IG, data protection, information security or governance.
- Membership of a relevant professional body (e.g. BSC, IAPP)
Leadership & Management
Essential
- Ability to work autonomously, making informed decisions and managing complex IG matters without direct supervision.
- Demonstrable experience of providing professional leadership, mentoring and supervision to colleagues.
- Ability to deputise effectively for senior leaders and represent the function at senior forums.
Desirable
- Experience of line management or formal supervisory responsibility.
Skills & Abilities
Essential
- Excellent written and verbal communication skills, including the ability to produce high-quality reports and present to governance committees.
- Strong analytical and problem-solving skills, able to assess risk and recommend proportionate solutions.
- Ability to influence, challenge and negotiate at a senior level with passion and integrity in your work.
- Highly organised, able to manage competing priorities and complex workloads.
- Proactive and forward-thinking mindset keeping up with digital trends and new technology.
- Team player works collaboratively within the teams across the organisation.
- Excellent leadership skills with the ability to inspire and develop others.
- Have great interpersonal and organisational skills.
- Excellent stakeholder engagement and relationship management skills.
- Willingness to learn new skills and follow process.
- Ability to work independently, prioritising own workload and escalating when needed.
- Being perceptive and able to work on intuition.
Desirable
- Experience designing and delivering training programmes.
- Advanced skills in report writing and analysis of incident trends.
Equality & Diversity and Other Requirements
Essential
- Able to demonstrate a commitment and understanding of the importance of treating all individuals with dignity and respect appropriate to their individual needs.
- Ability to travel across Leicester, Leicestershire and Rutland and neighbouring counties as required.
- Commitment to continuous professional development and maintaining expert IG knowledge.
Desirable
- Active involvement in IG professional networks or forums.
Knowledge
Essential
- Expert knowledge of UK GDPR, Data Protection Act 2018, FOIA, NHS Confidentiality Code of Practice, and Records Management Code of Practice.
- In-depth understanding of Information Governance Frameworks, the ICO Accountability Framework and NHS assurance requirements.
- Strong knowledge of the Data Security and Protection Toolkit (DSPT) and associated evidence requirements.
- Understanding of information risk management and assurance in a healthcare context.
Desirable
- Understanding of digital health systems and emerging technologies such as AI, automation, and telehealth.
- Knowledge of information security standards (e.g. ISO27001), cyber security principles and privacy by design.
Person Specification
Commitment to Values & Behaviours
Essential
- Must be able to demonstrate behaviours consistent with PCLs Values and Behaviours.
- High levels of professionalism, integrity, and confidentiality.
- Resilient, adaptable, and confident operating in a complex and evolving environment.
Desirable
- Experience supporting organisational change or transformation.
Experience
Essential
- Substantial experience working in Information Governance, Data Protection or a related GRC role within a regulated environment.
- Proven experience of leading and delivering end-to-end IG activities independently, including DPIAs, SARs, DSPT completion, incident management, audits, and policy development.
- Experience of providing senior-level IG advice and assurance to committees, senior managers, and executives.
- Experience of supporting organisational compliance with the Data Protection Act, UK GDPR, and related legislation.
- Experience in IG within NHS, health, or social care organisations.
Desirable
- Experience of deputising for a senior IG/Governance lead.
- Experience contributing to organisational IG or GRC strategy development.
Qualifications
Essential
- Educated to degree level of equivalent demonstrable experience in Information Governance, Data Protection, Information Management, or a related discipline.
- Recognised qualification in Information Governance/Data Protection (e.g. BCS Foundation Certificate in Data Protection, IAPP, CIPM, CIPP/E) or significant equivalent experience.
Desirable
- Postgraduate qualification or advanced professional certification in IG, data protection, information security or governance.
- Membership of a relevant professional body (e.g. BSC, IAPP)
Leadership & Management
Essential
- Ability to work autonomously, making informed decisions and managing complex IG matters without direct supervision.
- Demonstrable experience of providing professional leadership, mentoring and supervision to colleagues.
- Ability to deputise effectively for senior leaders and represent the function at senior forums.
Desirable
- Experience of line management or formal supervisory responsibility.
Skills & Abilities
Essential
- Excellent written and verbal communication skills, including the ability to produce high-quality reports and present to governance committees.
- Strong analytical and problem-solving skills, able to assess risk and recommend proportionate solutions.
- Ability to influence, challenge and negotiate at a senior level with passion and integrity in your work.
- Highly organised, able to manage competing priorities and complex workloads.
- Proactive and forward-thinking mindset keeping up with digital trends and new technology.
- Team player works collaboratively within the teams across the organisation.
- Excellent leadership skills with the ability to inspire and develop others.
- Have great interpersonal and organisational skills.
- Excellent stakeholder engagement and relationship management skills.
- Willingness to learn new skills and follow process.
- Ability to work independently, prioritising own workload and escalating when needed.
- Being perceptive and able to work on intuition.
Desirable
- Experience designing and delivering training programmes.
- Advanced skills in report writing and analysis of incident trends.
Equality & Diversity and Other Requirements
Essential
- Able to demonstrate a commitment and understanding of the importance of treating all individuals with dignity and respect appropriate to their individual needs.
- Ability to travel across Leicester, Leicestershire and Rutland and neighbouring counties as required.
- Commitment to continuous professional development and maintaining expert IG knowledge.
Desirable
- Active involvement in IG professional networks or forums.
Knowledge
Essential
- Expert knowledge of UK GDPR, Data Protection Act 2018, FOIA, NHS Confidentiality Code of Practice, and Records Management Code of Practice.
- In-depth understanding of Information Governance Frameworks, the ICO Accountability Framework and NHS assurance requirements.
- Strong knowledge of the Data Security and Protection Toolkit (DSPT) and associated evidence requirements.
- Understanding of information risk management and assurance in a healthcare context.
Desirable
- Understanding of digital health systems and emerging technologies such as AI, automation, and telehealth.
- Knowledge of information security standards (e.g. ISO27001), cyber security principles and privacy by design.
Disclosure and Barring Service Check
This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.
Employer details
Employer name
LLR Patient Care Locally Community Interest Company
Address
Office 2 and 3, Coalville Business Centre
Goliath Way
Coalville
Leicestershire
LE67 3FT
Employer's website
https://llrpcl.co.uk (Opens in a new tab)