About the role

We are recruiting for a Security Lead who specialises in Protective Monitoring to join our Cyber Operations team. 
 
Cyber Operation's purpose is to support safe care and build public trust by building NHS England’s cyber resilience and enabling the wider health system to be cyber resilient. As well as, supporting the Transformation Directorate’s purpose of delivering the best care and outcomes for the NHS.

An extraordinary health and care service deserves exceptional talent to support its delivery.

The Cyber Operations sub-directorate consists of 4 operational areas:

  • Cyber Security Operations Unit (CSOU).
  • Cyber Delivery Unit (CDU).
  • Cyber Improvement.
  • Chief Information Security Office Function (CISO).

The CSOC, part of the CSOU, function provides centralised monitoring and response across NHS England, and the system. The CSOC consists of Threat Operations (ThreatOps), Protective Monitoring, Incident Management & response, Service Operations (ServiceOps) and Development Operations (DevOps).

To support our strategy to improve NHS England’s cyber resilience, we are recruiting for a Cyber Security Lead Analyst specialising in Protective Monitoring to work within the Cyber Security Protective Monitoring team. This is one of the core pods of NHS England's National CSOU.

The Role

As a Security Lead you will be responsible for analysing relevant security intelligence and threat information to identify and mitigate security threats occurring across the users, systems infrastructures and resources critical to NHS England and Health & Care Organisations. 

Some of your responsibilities include:
  • Area lead for monitoring of the NHS.net platform – this consists of providing security monitoring for a nationally important email and O365 collaboration platform for circa 2 million users and user principals used across the UK and NHS environments.
  • Leading investigations into security lapses and breaches of the mail platform. 
  • Collaboration with Live Service Management and Outsourced Supplier teams who maintain or deliver aspects of the NHS.net platform, including service reviews and metric delivery on CSOC performance and support for NHS.net
  • Delivering security monitoring using the CSOC’s Sentinel SIEM tooling and implementing the successful migration from incumbent SIEM solution. 
  • Working with the other area leads within the protective monitoring function and incident management, or elsewhere across CSOC to improve the team as a whole.
  • Mentoring and Line Managing analysts within the Area to provide upskilling and a scalable and resilient team.

Important: Please be aware there are residency requirements you need to meet:

  • All NHS Digital/England Cyber Security personnel must hold security clearance SC level as a minimum. To meet National Security Vetting requirements, you must have resided in the UK for a minimum of 3 out of the past 5 years for SC clearance. Candidates who were posted abroad for service with HM Government, Armed Forces or within a UK government role - will still be considered. More information on SC clearance can be found here.

Please make sure you meet these requirements before applying for this role. You don’t need to have SC already, however, failure to achieve the requirements for SC after offer, will result in the job offer being withdrawn. 

About you

Some of the skills and experience we're looking for: 

Information Security Management - Highly developed specialist knowledge of the processes, tools and techniques of information security management, ability to deploy and monitor information security systems, as well as detect, resolve and prevent violations of IT security, to protect organizational data.
Information Security Technologies - In-depth knowledge of technologies and technology-based solutions dealing with information security issues; ability to apply these in protecting information security across the organization.
Information Security Operation Centre (ISOC) - 
In-depth knowledge of modules, processes and technologies of Information Security Operation Centre (ISOC); ability to detect, response and utilize related platform and applications to perform cyber security initiatives.
Security Information and Event Management (SIEM) 
Extensive knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilize related applications to protect organizational networks from cyber risks.
Intrusion Detection and Prevention - Demonstrable knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.

What's in it for you

  • a role as part of a dynamic team using data and digital technology to transform health and care
  • a range of opportunities to build your experience in an environment where your
    work has a direct and positive impact
  • a real commitment to your personal and professional development with access
    to a broad range of learning opportunities

About us

We are a great place to work. What we do matters.


NHS England leads the NHS in England to deliver high quality care for all. We support NHS organisations to deliver better outcomes for our patients and communities, work to get the best possible value for taxpayers, and drive improvement across the NHS. This includes improving the health of the population and the quality of care, tackling inequalities, and delivering care more efficiently. 
 
Our outstanding teams are passionate about technology and public service, making use of everyone’s skills to improve people’s lives.

We collaborate to deliver world class tech and intelligence, so come and join us. We are committed to sustainability, diversity and inclusion; our people are at the heart of what we do.

To find out more about the type of work we do, please take a look at our website.

Why you should apply

We value the different experiences our people bring to their work. We're working to create an environment where everyone can make a full contribution no matter their background, identity, or circumstances.  Which means, we encourage applications from people of all backgrounds and abilities.  

Our work matters. You matter.

What we offer you:

  • we're moving to a hybrid working approach which offers you an informal, flexible way of blending home and office working. Colleagues with a contractual office base are expected to spend, on average, at least 40% of their time working in-person.
  • flexible working opportunities - we value and respect the diversity of our employees, and applications from prospective candidates who require flexible working arrangements are welcomed; these include part-time hours, job sharing, flexible hours and part-remote set ups
  • 27 days annual leave increasing to 33 days with service
  • a generous pension (with our contribution equal to 23.7% of your earnings)
  • NHS Discounts including shops, restaurants, gym, mobile phones, and insurance
  • employee benefit schemes including our Season Ticket Loan, Car Lease and Bike to Work schemes

We use NHS Terms and Conditions of Service (Agenda for Change) pay rates. Most new employees to the NHS will start at the bottom of the band. You can find more information about Agenda for Change pay rates here Pay scales for 2023/24 | NHS Employers.

Next steps

Interviews will take place via MS Teams. Applicants who are shortlisted for interview will be contacted by email.

To view further information please see the attached role profile.

If you require a reasonable adjustment or support with your application, please contact [email protected] 

This post is not exempt from the Rehabilitation of Offenders Act 1974. We only ask applicants to disclose convictions which are not yet spent / unspent under the Rehabilitation of Offenders Act 1974. Following an offer of employment, we will carry out a Basic Disclosure and Barring Service (DBS) check as part of the pre-employment check process.

 

Other jobs like this