At Livity Life, we’re leading the Technology Enabled Care (TEC) revolution. Using the most innovative technology and cutting-edge digital tools. We deliver a transformational service that challenges norms and delivers the very best care experience.
To provide professional leadership for Information Governance, Data Protection and Privacy across Livity Life.
The postholder will act as the organisation’s designated Data Protection Officer (DPO), providing independent expert advice to support compliance with UK GDPR, the Data Protection Act 2018 and associated data protection legislation.
The role will lead the organisation’s information governance framework, supporting the safe, lawful and ethical use of information whilst enabling high-quality service delivery, innovation and digital transformation across Livity Life’s health, social care and technology-enabled care services.
The postholder will act as the primary source of specialist advice on information governance, data sharing, Data Protection Impact Assessments (DPIAs), privacy risks, information rights and regulatory compliance.
Main Duties and Responsibilities
Data Protection Officer
-
Act as the organisation’s designated Data Protection Officer (DPO).
- Monitor compliance with data protection legislation and organisational policies.
- Provide independent advice regarding compliance with UK GDPR and the Data Protection Act 2018.
- Serve as the primary point of contact for the Information Commissioner’s Office (ICO).
- Advise senior leaders and managers on lawful processing activities and compliance obligations.
- Maintain knowledge of current legislation, guidance and best practice.
Information Governance Leadership
-
Lead the development and implementation of the organisation’s Information Governance framework. Develop, review and maintain information governance, privacy and data protection policies.
- Support the Clinical & Governance Director, SIRO and Governance Team in managing information risks.
- Promote good practice and a positive information governance culture throughout the organisation.
- Provide specialist advice in relation to confidentiality, records management and information handling.
- Provide advice regarding the governance, privacy and lawful use of artificial intelligence and emerging technologies.
Date Protection Impact Assessments (DPIAs)
-
Lead and quality assure Data Protection Impact Assessments (DPIAs).
- Support project teams in identifying and mitigating privacy risks.
- Advise on new systems, technologies, partnerships and service developments.
- Embed Privacy by Design principles throughout organisational change activities.
- Maintain records of completed DPIAs and associated actions.
Data sharing and information rights
-
Develop, review and advise on Data Sharing Agreements.
- Provide specialist advice on information sharing decisions and disclosures.
- Lead or advise on responses to Subject Access Requests, Freedom of Information requests and other Information Rights requests.
- Provide advice in relation to Freedom of Information requests and public sector information disclosure obligations where applicable.
- Advise on data retention, disposal and records management requirements.
- Ensure lawful and proportionate data sharing arrangements are in place.
Information Security and Incident Management
-
Provide specialist support in relation to data breaches, near misses and information security incidents.
- Assess incidents and determine reporting requirements.
- Advise on regulatory notifications where required.
- Maintain breach logs and supporting documentation.
- Support investigations, root cause analysis and organisational learning activities.
This job description shall not limit your role, you will also be expected to carry out any other duties that your Manager feels are within your capabilities and skill set. The above information may not cover everything involved in the position but indicates the size and scope of the role and may be subject to change as the role develops.
Measures of Success
-
Maintains compliance with applicable data protection legislation.
- Ensures DPIAs are completed and reviewed for relevant activities.
- Ensures Records of Processing Activities remain accurate and up to date.
- Supports timely and effective management of data incidents and breaches.
- Delivers data protection training and awareness activities.
- Provides regular assurance and compliance reporting.
- Fosters a positive culture of information governance across the organisation.
Experience
-
Significant experience within a Data Protection, Information Governance, Privacy or DPO role.
- Detailed knowledge of UK GDPR and the Data Protection Act 2018.
- Experience undertaking and reviewing DPIAs.
- Experience developing and implementing information governance policies and procedures
- Experience advising on information sharing and data protection compliance.
- Experience handling data incidents and breaches.
- Experience managing Records of Processing Activities (ROPAs).
- Experience providing training and advice to a range of stakeholders.
- Experience preparing governance or compliance reports for senior stakeholders.
- Experience within health, social care, technology-enabled care or healthcare environments.
- Experience acting as a Data Protection Officer
- Experience supporting NHS DSPT compliance
- Experience supporting ISO 27001, ISO 9001 or equivalent assurance frameworks.
- Knowledge of AI governance, automated decision-making and emerging technology risks.
- Experience working with local authorities, commissioners or regulated environments
- Excellent written and verbal communication skills.
- Ability to explain complex regulatory requirements clearly and pragmatically.
- Strong analytical and problem-solving skills
- Excellent organisational and prioritisation skills
- Ability to challenge constructively and influence senior stakeholders
- Ability to build strong working relationships across the organisation
- High levels of integrity, professionalism and discretion
- Ability to work independently and manage competing priorities
- Demonstrates a collaborative approach to working relationships and actively contributes to meetings, discussions and organisational initiatives
- Educated to degree level or able to demonstrate equivalent professional experience.
- Evidence of continuing professional development in Data Protection, Information Governance or Privacy Management.
- CIPM (Certified Information Privacy Manager).
- CIPP/E (Certified Information Privacy Professional Europe).
- BCS Practitioner Certificate in Data Protection.
- PDP Practitioner Qualification.
- ISO 27001 Lead Auditor or Lead Implementer qualification.
- Promote the values and objectives of Livity Life.
- Maintain confidentiality and professionalism at all times.
- Comply with organisational policies and procedures.
- Demonstrate a commitment to equality, diversity and inclusion.
- Support continuous improvement and quality assurance activities.
- Act in accordance with applicable legislation,
- professional standards and regulatory requirements.
What can we offer you?
Up to 33 days holiday (including bank holidays) plus optional 5 unpaid days
Company Pension Scheme
Life Assurance
A rewards scheme – 200+ exclusive perks and discounts from leading retailers and leisure outlets
Our ambition at Livity Life is to become the provider of choice in a world where intelligent healthcare technology enables proactive, personalised, and preventative care for every individual of all ages and backgrounds to live safe, independent lives in their own homes.
We are on a mission to create and nurture better social care and health outcomes for all. By empowering our people to inspire and support others, living our values to be the provider and employer of choice
Our core company values ‘LIFE’ newly launched in 2026 will support us achieve this. We are always looking to recruit hard working and talented individuals to become a part of our ongoing growth and success. You’ll enjoy all the support and encouragement you need to reach your own potential and develop a rewarding career along the way.
Lead by example in setting the standards which define our purpose.
Inspire and empower, collaboration, shared purpose and inclusion.
Fairness- we act ethically and with integrity in everything we do.
Entrepreneurial – innovate with purpose, with a mindset resilient to change.
This role involves working in a regulated activity and may be subject to a DBS disclosure and social media screening.
No terminology in the advert you have seen is intended to discriminate on the grounds of age, gender, race, colour, religion, disability or sexual orientation, and we will gladly accept applications from all sections of the community.
At Livity Life, we are redefining the future of healthcare through intelligent technology and human-centered innovation. Our vision is clear: a world where proactive, personalized, and preventative care empowers individuals of all ages and backgrounds to live safe, independent lives in the comfort of their own homes. Driven by our mission, we create cutting-edge digital tools and transformative services that challenge traditional norms and deliver exceptional care. We believe independence should be accessible to everyone, and technology is the key to making that possible. Our ambition is bold, to lead the digital health revolution by pioneering scalable, secure, and user-focused solutions that reshape how care is experienced and delivered. With a commitment to excellence and innovation, we are building a future where healthcare is not reactive, but proactive, and where every individual can thrive independently.