£36,363 - 39,152 yearly
Number of Applicants
:000+
Let AI Supercharge Your Job Hunt!
JobCopilot scans 500,000+ company career sites daily to find jobs for you
Number of Vacancies:
1Time Type:
Full timeWorker Type:
RegularProposed Interview Date:
Monday, June 22, 2026Hours of Work:
37Hiring Manager:
James StrangewayContact Number:
01482 613295Job Description Summary:
This is Fixed Term Full Time Position (Maternity Leave)
1. To promote and safeguard the welfare of children, young people and/or vulnerable adults.
2. Customer Focus –
Works directly with victims of data breaches to provide support and assurance in the aftermath of incidents. Leads and supports service area colleagues in the Council’s responses to data breaches to ensure victims receive appropriate ongoing support, immediate risks to them and their personal data are mitigated, and matters are escalated to the Police or Information Commissioner’s Office as necessary. Supports managers and HR with advice on employee breaches of information governance policies/procedures.
Uses specialist knowledge to adjudicate on data breach complaints and concerns, acknowledges and resolves complaints and/or defends the Council’s position based on a fair interpretation of the circumstances.
Liaises with data breach victims and the insurance section to ensure potential claims for data breaches are efficiently received and actioned. Ensures that problem-solving, reconciliation and negotiation take place at earliest stage to resolve breaches.
Acts as the Council’s contact with the Information Commissioner’s Office/Police on serious data breach incidents to mitigate risks to individuals. Works with the ICO to resolve customer concerns on information access and security matters.
Provides expert advice to colleagues across the Council responding to issues, complaints and information risk issues. Includes giving immediate advice in critical and time-sensitive situations to mitigate risks of harm or to meet legal deadlines.
Determines whether matters are eligible for data breach complaints process and allocates to the correct Complaints Scheme. Consults the SIRO and Information & Data Protection Manager and Town Clerk where necessary. Supports the Information Governance & Member Support Manager in delivering the Council's approach to Information Governance and wider management of information risk.
Demonstrates customer service of a high standard to meet changing needs while maintaining legal compliance, including work with local organisations who commission our traded services, HCAL and KWL.
Maintains a caseload of information requests under FOI/EIR/DPA/Information Security and will be expected to provide line management, leadership, advice and decision-making support to junior colleagues on more complex cases.
Protects and enhances the council’s reputation through engagement with audiences including employees, Members, customers, partners and stakeholders in the response to Information Governance risks and issues. Includes the development and delivery of training sessions, including bespoke sessions to address risks arising from information security incidents.
3. Strategy –
Collates and monitors the Council’s information security incidents to inform senior decision makers. Leads the data breach monitoring evaluation at Corporate Information Governance Group meetings, highlighting specific risks, themes and threats for awareness or escalation.
Works closely with both Caldicott Guardians, Director and Assistant Directors to address issues and risks to drive improvement and safety in respect of social care information and our patients’/customers’ rights.
Works with Customer Services and ICT colleagues to identify risks and solutions where issues are raised in respect of customer contact channels. Oversees the Council’s approach to the use of secure email solutions for data exchange, including publication of the intranet ‘safe sender’ list.
Uses initiative to research, draft and publish council-wide bulletins and updates via email/website/intranet to promote information security and ensure staff are briefed on information security threats or immediate risks.
4. Performance Management –
Maintains focus on continuous improvement, effective use of resources and value for money.
Provides Council colleagues with specialist advice on data breach, information security and information rights to mitigate incidents and risks and ensure compliance with the law, legal deadlines and the Council’s policies. Works with service area colleagues to implement recovery actions and develop or amend processes to mitigate future risk.
Seeks to maximise resources and reduce demand taking a highly pro-active approach to the management of, and responses to, information security incidents. Ensures serious data breach reporting to regulator takes place within statutory 72-hour period.
Collates, evaluates and disseminates themes arising from breaches to inform practice development and improve information security for the Council and its service users.
Works with Directors and senior managers at the strategic level to address risks to personal data. Escalates concerns to the SIRO, Information & Data Protection Manager, Town Clerk, Caldicott Guardians, Directors and/or Internal Audit as necessary. Compiles and presents a monthly information security incident monitoring report to the Information Governance Group highlighting themes and trends.
Uses research, incident monitoring and horizon scanning to ensure that training, policies and processes are fit for purpose, continually seeking new opportunities and innovations, adopts best practice from elsewhere when appropriate.
Develops and monitors clear success indicators for personal, team and corporate activity. Ensures that the Information Governance Team meet statutory deadlines on information rights requests. Works closely with the Legal Service to ensure that Public Interest Immunity disclosures are made to the Police to ensure prosecutions are not delayed.
5. Leadership –
Line manages Information Governance staff, including delegation of work, management of performance, identification and implementation of learning and development interventions, coaching and motivating, health, safety, and welfare.
Provides expert advice to service area colleagues and takes decisions on whether personal or otherwise confidential information can or must be disclosed to other agencies or partners, or in response to legal claims.
Develops and monitors clear success indicators for personal, team and corporate activity. Ensures that the Information Governance Team meet statutory deadlines on information rights requests. Works closely with the Legal Service to ensure that Public Interest Immunity disclosures are made to the Police to ensure prosecutions are not delayed.
6. Statutory Obligations –
Oversees and publicises the Council’s Information Security Incident Reporting process ensuring incidents are reported to the ICO in accordance with the UK GDPR and UK standards and legislation. The UK GDPR requires reporting of serious incidents within 72 hours of them coming to light with the potential for very large monetary penalties in the event of non-compliance.
Analyses data breaches to identify root causes and develop appropriate controls and risk mitigations to meet the legal requirement to have appropriate technical and organisational measures in place to protect personal and special category data.
Supports services to meet mandatory standards including the Caldicott Principles, the NHS Data Security and Protection Toolkit and PSN accreditation.
Works with Service Areas to ensure business activities are lawful and strike an effective balance between privacy of individuals and the public interest and the Council’s legitimate interests.
Works with Service Areas to produce effective Data Protection Impact Assessments to ensure business activities are designed to be lawful and strike an effective balance between privacy and of the public and the Council’s legitimate interests with particular focus on projects with the potential to breach privacy rights or increase information security risk.
Works with the Legal Service and the Police to ensure Public Interest Immunity disclosures are made in accordance with requirements of the Courts.
Compensation Grades:
GRADES 8.Pay Ranges:
£36,363.00 - £39,152.00Job Classifications:
3- Not Politically Restricted - Designated As Not Politically Sensitive (Politically Restricted Posts), Casual - (Travel Allowance Policy), No - (Childcare Disqualification Requirement), No - (Statutory Post), OSP - Other Support Staff (School WorkForce Census)Benefits of Working of Hull City Council:
- A competitive salary
- An excellent pension through the Local Government Pension Scheme (LGPS)
- Initially 23 days annual leave depending on length of service. You will also get eight public holidays per year, and three additional days off, one in May/August and one during the Christmas/New year period
- Career development and learning experiences from a range of training courses and learning methods
- Supportive and forward-thinking culture
- Great career development opportunities
Please ensure that you complete and submit your application by midnight prior to the closing date. Please ensure that your application demonstrates how you meet the essential criteria against the person specification as listed in the job description.
We are committed to increasing the diversity, equality, and inclusion within our workforce to represent the people we serve and build an environment in which everyone can feel like they belong. We encourage people from all backgrounds to apply.
We adopt a ‘name blind’ approach to shortlisting. Recruiting managers will not have access to personal information, including your name and contact details, until a shortlisting decision has been made. Equality monitoring information is not accessible by recruiting managers at any stage.
We reserve the right to amend the dates associated with this advert, which may include closing the advert early where required.
The Council is committed to safeguarding and promoting the welfare of children, young people and vulnerable adults and expects all employees and volunteers to share this commitment.
Online searches, including social media, may be carried out as part of the recruitment process.
Auto-Apply to Information Risk Officer Jobs with your AI JobCopilot
Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.