Senior Manager, Data Protection and Governance

Institution:  National Healthcare Group
Family Group:  Administration

STATEMENT OF PURPOSE

 

You will be part of the Group Digital Health team, supporting Data Protection and Governance, and planning functions for NHG Health. You will be supporting in driving digital health innovation through strategic commercial partnerships by identifying, negotiating, and managing collaborative agreements with technology providers and healthcare establishments. This role is instrumental in advancing NHG's digital transformation agenda through co-development and pilot programs for fulfilling our strategic priorities.

 

 

MAJOR DUTIES AND RESPONSIBILITIES

 

  1. Reviewing and updating the data protection policy and framework in NHG, considering various standards for data governance in healthcare context (e.g. Personal Data Protection Act (PDPA), MOH’s HealthTech Instruction Manuals (HIM)).

 

  1. Collaborating with NHG institutions on the implementation of the data protection policy and framework as well as data incident reporting procedures.

 

  1. Establish and communicate the NHG’s data protection objectives and direction effectively to all NHG’s units and functions.

 

    • Promote a positive data protection and privacy culture within NHG through proper training and awareness programme.
    • Work with NHG’s units and functions to proactively implement the appropriate data protection and data security policies and procedures.
    • Act as the data protection advisor to NHG’s units and functions and promote data protection risk awareness and accountability amongst Management and Staff in the units and functions.

 

  1. Assisting the Data Protection Officer (DPO) Committee in reviewing, evaluating and making recommendations on all matters related to data protection.

 

  • Preparing reports for Data Protection Officer Committee and Senior Management team.
  • Participate in relevant data protection and governance subcommittees or discussions.
  • Liaising with data protection leads in risk monitoring and reporting.
  • Report regularly to the senior management on data breach incidents to address data protection risks by minimising the effects of threats and implementing action plans to mitigate risks to an acceptable level.

 

  1. Managing the data protection training program.

 

  • To oversee the development and maintenance of an up-to-date data protection training program for employees of NHG.
  • To work with NHG’s units and functions to ensure that all employees are provided with relevant and timely training in data protection.
  • To ensure the content of the training program remains current and relevant.

 

  1. Reviewing and analysing data protection risk registers and risk statistics.

 

  • To review the internal controls in data handling areas and develop appropriate risk mitigation plans to mitigate the risks (e.g. via the use of Privacy Enhancing Technology (PETs)).
  • To facilitate the preparation and update the risk registers (and relevant risk reports containing risk indicators) which identify and assess the key data breach risks facing NHG’s units and functions

                   

  1. Performing compliance checks on data protection and data security in accordance with PDPA and MOH’s HIM policy requirements

 

  1. Managing Strategic Partnership Development
  • Identify and evaluate potential technology partners, healthcare establishments, and innovation partners aligned with NHG's digital health strategy
  • Conduct market research and due diligence on emerging digital health technologies and potential collaboration opportunities
  • Develop partnership strategies and business cases for digital health innovation initiatives
  • Establish and maintain a pipeline active partnership annually for co-development or pilot programs

 

  1. Managing Commercial Agreement Management
  • Lead the review, drafting, and negotiation of commercial partnership agreements, including joint development agreements, pilot agreements, and technology licensing arrangements
  • Collaborate with legal, procurement, and compliance teams to ensure agreements meet regulatory and organizational requirements
  • Structure partnership terms including intellectual property arrangements, revenue sharing, risk allocation, and performance metrics
  • Manage contract lifecycle from initiation through execution and renewal

 

  1. Managing Stakeholder Management
  • Present partnership opportunities and progress to senior leadership and governance committees
  • Maintain relationships with external partners and internal stakeholders
  • Represent NHG at industry events, conferences, and partnership forums

 

OTHER DUTIES AND RESPONSIBILITIES

 

  1. Any other administrative duties and responsibilities that may be assigned from time-to-time in the areas of Group Digital Health matters.