FOI reference - FOI-4385
Date - 20 January 2020
Request
- Name of SIRO (Senior Information Risk Owner) or similar post (Chief Information Governance Officer etc), or responsible person for SIRO duties.
- Contact email of person named in request No. 1.
- Name of DPO (Data Protection Officer) or responsible person for DPO duties.
- Contact email of DPO.
- Name of person with overall responsibility for Cyber security or equivalent (excluding persons in q1 and q3).
- Contact email of person in Q5.
- Name of person with overall responsibility for information security or equivalent (excluding persons in q1, q3 and 5).
- Contact email of person in Q7.
- Name of person with overall responsibility for information Governance or equivalent (excluding persons in q1, q3, q5 and q7).
- Contact email of person in Q9
- Do you have appointed Information Asset Owners (IAO's)?
- If yes, whom is responsible for leading the IAO structure and implementing any training requirements for the IAOs?
- Are you or have you considered becoming ISO 27001 compliant or certified? If so whom is responsible for maintaining this? (as in, the person)
- Contact email of person in Q: 13.
- Are you required to connect to the PSN Code of Connection (CoCo)? If so whom is responsible for complying with its requirements? (as in, the person)
- Contact email of person in Q:15.
I can confirm that we the information you have requested
Response
Information we are able to supply
- Name of SIRO (Senior Information Risk Owner) or similar post (Chief Information Governance Officer etc), or responsible person for SIRO duties.
Teena Tyrrell
- Contact email of person named in request No. 1.
Teena.Tyrrell@tpr.gov.uk
- Name of DPO (Data Protection Officer) or responsible person for DPO duties.
Teena Tyrrell
- Contact email of DPO.
DPO@tpr.gov.uk
- Name of person with overall responsibility for Cyber security or equivalent (excluding persons in q1 and q3).
Not applicable
- Contact email of person in Q5.
DPO@tpr.gov.uk
- Name of person with overall responsibility for information security or equivalent (excluding persons in q1, q3 and 5).
Not applicable
- Contact email of person
DPO@tpr.gov.uk
- Name of person with overall responsibility for information Governance or equivalent (excluding persons in q1, q3, q5 and q7).
Phil Yeoman
- Contact email of person in Q9
Phil.Yeoman@tpr.gov.uk
- Do you have appointed Information Asset Owners (IAO's)?
Yes
- If yes, whom is responsible for leading the IAO structure and implementing any training requirements for the IAOs?
We have a register of IAOs. There are no specific training requirements for IOAs, as is the case with all staff IAOs are accountable to the internal information management policies and have to undergo annual mandatory information security training.
- Are you or have you considered becoming ISO 27001 compliant or certified? If so whom is responsible for maintaining this? (as in, the person)
We are ISO 27001 certified – Teena Tyrrell is responsible for maintaining this.
- Contact email of person in Q: 13.
Teena.Tyrrell@tpr.gov.uk
- Are you required to connect to the PSN Code of Connection (CoCo)? If so whom is responsible for complying with its requirements? (as in, the person)
No.
- Contact email of person in Q:15.
Not applicable