NHS Logo

Chief Information Security Officer

Croydon Health Services NHS Trust
This job is closed to applications

Already thinking ahead to interview?

Save this role, then rehearse likely interview themes with structured write and speak feedback before the panel.

Practice interview answers
Location
Salary
£80,025 - £91,336 Per annum pro rata incl HCAS (outer)
Profession
Administrative and IT
Grade
Band 8
Deadline
31 Mar 2025
Contract Type
Permanent
Posted Date
21 Mar 2025

Job overview

Chief Information Security Officer

Band 8C,  Full Time,  Flexible working,  Home or Remote Working

The Chief Information Security Officer is the lead role within the Trust's Digital Services function for cyber security and information governance.  The CISO wis responsible for developing the Trust's cyber security strategy, ensuring alignment with national and regional cyber strategies.

The postholder will line manage the cyber security and IG teams, and will work with other senior leaders within digital services to ensure that the department specifically and also the Trust as a whole, understand the cyber agenda, and how to protect the systems and data the Trust holds.

Proposed Interview Date - 16th April 2025

Main duties of the job

The CISO is responsible for:

- developing, implementing and reviewing the Trust's cyber security strategy

- ensuring that there is training for staff on all things cyber security and information governance

- oversight, delivery and reporting on the Data Security and Protection Toolkit

- providing assurance to the Trust's SIRO and Chief Digital Officer on all things cyber

- line managing a cyber team and the IG function, including the Trust's FOI responsibilities

Detailed job description and main responsibilities

The CISO is responsible for:

- developing and maintaining highly effective relationships with a range of internal and external stakeholders, including NHS England's regional cyber lead, and the CISO at SW London ICS

- developing and delivering the Trust's cyber security strategy

- managing the Trust's cyber security and IG frameworks, including associated policies and procedures

- developing, managing and reporting on a suite of cyber security KPIs

- reviewing the Trust's cyber and IG capacity and capability, ensuring that it remains sufficient in terms of capacity and capability, to meet changing standards and requirements s they change from time to time.