Zoe H
@zoeh
Experienced Data Privacy & Information Security Manager with proven compliance expertise.
What I'm looking for
I am an experienced Data Privacy & Information Security Manager with over 20 years in the field of information security and compliance. My career has been marked by a proven track record in managing Information Security Management Systems (ISMS) aligned with ISO 27001, PCI DSS, and various government frameworks. I am an expert in GDPR and data protection legislation, risk management, and regulatory compliance, which has allowed me to lead cross-functional teams effectively and develop robust security policies.
Throughout my career, I have successfully fostered a culture of security awareness within organizations, ensuring that all team members understand the importance of data protection. My experience includes managing external auditor relationships, conducting ISO 27001 gap analyses, and implementing comprehensive security policies. I have a strong background in risk assessments, incident response planning, and stakeholder management, which has been crucial in my roles at various organizations.
Experience
Work history, roles, and key accomplishments
Information Security Officer
Barchester Healthcare
Dec 2024 - Jun 2025 (6 months)
Protected digital and paper assets across 250+ care homes and 7 mental hospitals, ensuring compliance with GDPR, Data Protection Act 2018, NHS, and CQC standards. Managed external auditor relationships and data incident responses, while also conducting ISO 27001 gap analyses, internal audits, and security risk assessments.
Data Privacy & Security Manager
Highbourne Group Ltd
Apr 2023 - Dec 2024 (1 year 8 months)
Managed the ISMS to ensure compliance with GDPR and PECR, and developed and implemented data privacy policies and procedures. Coordinated PCI DSS and external GDPR audits with reliable results, and managed personal data requests, RoPA, and third-party risk assessments.
Information Security Compliance and Training Manager
DX Group Ltd
Dec 2018 - Apr 2023 (4 years 4 months)
Managed the ISMS, including the implementation of the ISO 27001 framework, and coordinated ISO 27001 internal and external audits with reliable results. Developed a training platform for data protection and privacy awareness, and conducted risk assessments while managing information security incidents.
Health & Safety Technical Advisor
Cimbali UK Ltd
Jun 2015 - Dec 2018 (3 years 6 months)
Managed the health and safety management system and policy development, conducting risk assessments to ensure legislative compliance. Coordinated safety training and managed internal and external audits, achieving a record 93.7% pass score on the BP Safety Audit.
Lead Trainer/HR Safeguarding Assistant
PET-XI Ltd
Feb 2013 - Jun 2015 (2 years 4 months)
Managed educational courses at schools and colleges, supervising examinations and ensuring programme delivery. Vetted safeguarding documentation for all staff and developed a management compliance records system.
Education
Degrees, certifications, and relevant coursework
Various Certifications
Certification, Data Privacy & Information Security
Completed certifications in GDPR and ISO 27001 Lead Auditor Foundation, enhancing expertise in data privacy and information security management. Also obtained NEBOSH and IOSH Managing Safely certifications, demonstrating a commitment to health and safety standards.
Henley College
Course, Information Technology
Undertook an Information Technology Course at Henley College, building foundational knowledge in IT principles and practices. This course provided a solid understanding of technology relevant to information security and data management.
Tech stack
Software and tools used professionally
Availability
Location
Authorized to work in
Job categories
Interested in hiring Zoe?
You can contact Zoe and 90k+ other talented remote workers on Himalayas.
Message ZoeFind your dream job
Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!
