Job title: Info Risk, Research and Prevention Officer Grade: SO 1 Role code: EUX1227 Status: Police Staff
Main purpose of the role:
Support the delivery of Force Information Security through undertaking extensive and detailed qualitative and quantitative research, analysing results in order to introduce and track prevention measures. Undertake research into the causes and effects of information security incidents involving Police information and to use that research to advise and draw responsive conclusions through analytical reporting resulting in guidance and new measures to refine existing measures designed to reduce the probability and impact of such incidents.
Undertake extensive and detailed qualitative and quantitative research on Information Security and analyse results to identify opportunities for process improvements across the force and business solutions that will assist with prevention.
Analyse and scrutinise results of research to provide clear and accurate reports to compare outcomes and to achieve efficiencies in productivity across the force.
Maintain current awareness of force policy, standards and guidance in relation to information management and security.
Analyse information, add value and understanding into the source data, provide analytical expertise, utilise statistical techniques, and develop new performance monitoring tools.
Assist in the production of training and guidance material on information management and security policy, updating the relevant sections of the force Intranet under guidance from the Information Security Officer and Accreditor in order to provide clear and consistent advice.
Manage professional internal and external relationships with key partners including the Home Office.
Oversee and monitor mailboxes and schedules and ensure co-ordinated systems are in place to identify the efficient management of the security of information and files; taking on complex issues to mitigate further security risk.
Produce force reports utilising insight into the raw data providing analytical expertise and preparing these reports for the quarterly returns to Chief Officers, PSD and for the quarterly Home Office returns.
Recruitment Vetting. (RV).
Requirements The Risk, Research & Prevention Officer must have a sound understanding of the key aspects of information security, information legislation, and information risk and how they practically apply to an organisation such as a police force.
Must have an excellent knowledge of the Microsoft suite of packages and database technology.
Must be proficient in the use of Microsoft Excel advanced and have good research, analytical and problem-solving background with the ability to write and deliver reports for senior management.
Preferences GCSE Maths, English and a statistical or analysis qualification equivalent.
Analyse critically (level 1)
I recognise the need to think critically about issues. I value the use of analysis and testing in policing. I take in information quickly and accurately. I am able to separate information and decide whether it is irrelevant or relevant and its importance. I solve problems proactively by understanding the reasons behind them, using learning from evidence and my experiences to take action. I refer to procedures and precedents as necessary before making decisions. I weigh up the pros and cons of possible actions, thinking about potential risks and using this thinking to inform our decisions. I recognise gaps and inconsistencies in information and think about the potential implications. I make decisions in alignment with our mission, values and the Code of Ethics.
Collaborative (level 1)
I work cooperatively with others to get things done, willingly giving help and support to colleagues. I am approachable, and explain things well so that I generate a common understanding. I take the time to get to know others and their perspective in order to build rapport. I treat people with respect as individuals and address their specific needs and concerns. I am open and transparent in my relationships with others. I ensure I am clear and appropriate in my communications.
Deliver, support and inspire (level 1)
I take on challenging tasks to help to improve the service continuously and support my colleagues. I understand how my work contributes to the wider police service. I understand it is part of my collective responsibility to deliver efficient services. I take personal responsibility for making sure that I am working effectively to deliver the best service, both individually and with others. I am conscientious in my approach, working hard to provide the best service and to overcome any obstacles that could prevent or hinder delivery. I support the efficient use of resources to create the most value and to deliver the right impact. I keep up to date with changes in internal and external environments. I am a role model for the behaviours I expect to see in others and I act in the best interests of the public and the police service.
Emotionally aware (level 1)
I treat others with respect, tolerance and compassion. I acknowledge and respect a range of different perspectives, values and beliefs within the remit of the law. I remain calm and think about how to best manage the situation when faced with provocation. I understand my own emotions and I know which situations might affect my ability to deal with stress and pressure. I ask for help and support when I need it. I understand the value that diversity offers. I communicate in clear and simple language so that I can be easily understood by others. I seek to understand the thoughts and concerns of others even when they are unable to express themselves clearly.
Innovative and open-minded (level 1)
I demonstrate an openness to changing ideas, perceptions and ways of working. I share suggestions with colleagues, speaking up to help improve existing working methods and practices. I constantly reflect on my own way of working and periodically review processes and procedures for continuous improvements. I adapt to change and am flexible as the need arises while encouraging others to do the same. I learn from my experiences and do not let myself be unduly influenced by preconceptions.
Take ownership (level 1)
I actively identify and respond to problems. I approach tasks with enthusiasm, focusing on public service excellence. I regularly seek feedback to understand the quality of my work and the impact of my behaviour. I recognise where I can help others and willingly take on additional tasks to support them, where appropriate. I give feedback to others that I make sure is understandable and constructive. I take responsibility for my own actions, I fulfil my promises and do what I say I will. I will admit if I have made a mistake and take action to rectify this. I demonstrate pride in representing the police service. I understand my own strengths and areas for development and take responsibility for my own learning to address gaps.
I take into account individual needs and requirements in all of my actions. I understand that treating everyone fairly does not mean everyone is treated the same. I always give people an equal opportunity to express their views. I communicate with everyone, making sure the most relevant message is provided to all. I value everyone's views and opinions by actively listening to understand their perspective. I make fair and objective decisions using the best available evidence. I enable everyone to have equal access to services and information, where appropriate.
I always act in line with the values of the police service and the Code of Ethics for the benefit of the public. I demonstrate courage in doing the right thing, even in challenging situations. I enhance the reputation of my organisation and the wider police service through my actions and behaviours. I challenge colleagues whose behaviour, attitude and language falls below the public's and the service's expectations. I am open and responsive to challenge about my actions and words. I declare any conflicts of interest at the earliest opportunity. I am respectful of the authority and influence my position gives me. I use resources effectively and efficiently and not for personal benefit.
Public service (accredited)
I act in the interest of the public, first and foremost. I am motivated by serving the public, ensuring that I provide the best service possible at all times. I seek to understand the needs of others to act in their best interests. I adapt to address the needs and concerns of different communities. I tailor my communication to be appropriate and respectful to my audience. I take into consideration how others want to be treated when interacting with them. I treat people respectfully regardless of the circumstances. I share credit with everyone involved in delivering services.
I ensure that my decision-making rationale is clear and considered so that it is easily understood by others. I am clear and comprehensive when communicating with others. I am open and honest about my areas for development and I strive to improve. I give an accurate representation of my actions and records. I recognise the value of feedback and act on it. I give constructive and accurate feedback. I represent the opinions of others accurately and consistently. I am consistent and truthful in my communications. I maintain confidentiality appropriately.
Health and Safety (Level 3)
Has a basic understanding of Health and Safety issues affecting the current role and working environment. Takes responsibility for personal safety and the safety of others. Aware of hazards and reports problems identified to line manager. Understands and minimises the physical risk of injury through the use of proper manual handling procedures.
Information Gathering and Analysis (Level 4)
Is able to identify reliable and appropriate sources of information and select methods of gathering information which are efficient and effective. Has a working knowledge of legislation and policy relevant to the collection, recording, storage and distribution of information.
Information Management and Technology (Level 4)
Can conduct basic computer searches and can correctly interpret data generated. Can create and amend records, according to role requirement. Knows established rules and protocols. Understands impact of data quality, and is self-monitoring on data quality issues.
Inspection (Level 3)
Is able to undertake testing of systems for compliance, using predetermined frameworks. Can report findings accurately and in the required format. Is able to conduct routine interviews on the subject under review.
Interviewing - General (Level 4)
Has received some training in reliable interviewing techniques and is able to apply these techniques fairly, consistently and to good effect. Identifies the key issues for examination and tests these using open and probing questions. identifies weaknesses and inconsistencies in the account and seeks clarification. Keeps good written records of the interview for future
Knowledge of Police Environment and Policy (Level 3)
Has a basic awareness of current policing issues, the environment in which Kent Police and / or Essex Police operate and developments in the way the County is policed. Possesses sufficient knowledge of the roles of the various Areas / Departments, organisation structures and police systems to operate effectively. Understands appreciates and adheres to working procedures, practices and policies relevant to the current role. Familiar with Force goals and local business plan objectives.
Management of Police Information (MOPI) (Level 4)
Full compliance with Level 3. Has successfully completed all standard relevant Information Management and Security training package(s). Accurate use of Government Security Classification (GSC). Ensures physical and digital records are stored with appropriate security relevant to the sensitivity of the documents and has working understanding of appropriate National Retention Schedules. Is able to quality assure own records management processes as well as those of any staff for whom they have supervisory responsibility. Is aware of where to seek further support in relation to Records management within force when necessary. If nominated as an Information Asset Assistant is familiar with the NPCC information Asset Owners Handbook.
Office Organisation (Level 3)
Has a good understanding of office routines and procedures, and possesses skills in planning, organising and monitoring work. Understands record keeping, filing and data storage systems, and can ensure that information is stored accurately / logically, within Force guidelines. Able to organise the provision and storage of office supplies, stationery and consumable items etc. to ensure that appropriate stock levels are maintained. Able to undertake basic research and supply information in a well presented manner. Can draft and prepare routine documents.
Office Technology (Level 3)
Able to utilise relevant Force standard office software products such as word- processing, spreadsheet, database, presentation and desktop publishing packages to a standard that matches the requirements of the current role in terms of quality and speed. Can operate other items of essential office technology such as photocopiers, facsimile machines, answerphones, shredders, in order to effectively undertake the requirements of the current role. Aware of the implications of Data Protection and acts appropriately in this respect.
Risk Management (Level 4)
Able to anticipate risks likely to affect the team's ability to execute their function, in terms of likelihood and impact, and assesses how the challenges facing the wider organisation might affect their team and their objectives. Has an understanding of pathways to alert local managers to flawed or ineffective operational control strategies and provide continuity/recovery options. Has an appreciation that seizing opportunities also generates risks.