Leave us your email address and we'll send you all the new jobs according to your preferences.

Cyber Security Lead - Threat Intelligence

Posted 16 hours 20 minutes ago by NHS

Permanent
Full Time
Other
Yorkshire, Leeds, United Kingdom, LS1 8
Job Description
Cyber Security Lead - Threat Intelligence

Cyber Operations purpose is to support safe care and build public trust by building NHS England's cyber resilience and enabling the wider health system to be cyber resilient, supporting Transformation Directorate's purpose of delivering the best care and outcomes for the NHS.

Operational areas
  • Cyber Security Operations Unit (CSOU)
  • Cyber Delivery Unit (CDU)
  • Cyber Improvement Programme
  • Chief Information Security Office Function (CISO)
CSOC functions
  • Intelligence Collection & Analysis - Perform collection, aggregation, analysis and contextualisation of healthcare and security information to produce actionable CTI.
  • Cybersecurity Threat & Risk Assessment - Perform high-level risk assessments of current and emerging threats to the health & social care estate.
  • Specialist CTI Support - Provide specialist CTI support to CSOC during high complexity incidents.

The post of Cyber Security Lead Analyst - Threat Intelligence has been awarded a Recruitment and Retention Premia (RRP) in response to current labour market conditions. In recognition of this, the role attracts an additional monthly RRP payment equal to 30% per annum.

Main duties of the job
  • Ensure the objectives and activities of the Threat Intelligence teams and Assessments are aligned with overarching CSOC strategy.
  • Represent the function at operational and managerial meetings, including regularly reporting to senior leadership.
  • Acts as an escalation point for national cyber threat advisories (NHS High Severity Alerts).
  • Acting as an escalation point for technical, operational and strategic threat intelligence queries.
  • Be responsible for the management and production of Key Performance Indicators (KPI) for the function.
  • Manage the resource allocation and workload across the function, including developing innovative solutions to improve quality and efficiency.
  • Manage the relationships and process integration between the Threat Intelligence and Threat Hunting teams.
  • Drive continuous improvement initiatives for the function, for the benefit of the wider CSOC.
Residency and Security Clearance requirements

All NHS England Cyber Security personnel must hold Security Clearance level as a minimum. To meet National Security Vetting requirements, SC clearances require 5 years continuous UK residency. In certain cases, this can be reduced to three years continuous UK residency, with additional overseas checks for the previous two years. Candidates who were posted abroad for service with HM Government, Armed Forces or within a UK government role will still be considered.

Failure to achieve the requirements for Security Clearance after an offer will result in the job offer being withdrawn.

About us

Our work supports the NHS to deliver high quality services for patients and best value for taxpayers.

Our staff bring expertise across hundreds of specialisms including clinical, operational, commissioning, technology, data science, cyber security, software engineering, education, and commercial enabling us to design and deliver high-quality NHS services.

Our focus
  • Enabling local systems and providers to improve the health of their people and patients and reduce health inequalities
  • Making the NHS a great place to work, where our people can make a difference and achieve their potential
  • Working collaboratively to ensure our healthcare workforce has the right knowledge, skills, values and behaviours to deliver accessible, compassionate care
  • Optimising the use of digital technology, research, and innovation
Person Specification Knowledge
  • Extensive knowledge of techniques, approaches and processes of digital threats; ability to detect, monitor, analyse and prevent digital threats.
  • Demonstrable knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.
  • Extensive knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilise related applications to protect organisational networks from cyber risks.
Skills and Experience
  • Working knowledge of processes, tools and techniques for assessing and controlling an organisation's exposure to risks of various kinds; ability to apply this knowledge appropriately to diverse situations.
  • Expert knowledge of and ability to utilise a variety of specific tools for collecting, analysing, and presenting digital-related evidence.
Qualifications
  • Masters level degree or equivalent level of experience.
Disclosure and Barring Service Check

This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.

£83,792 to £97,365 a year (this includes a RRP payment of 30%)

Email this Job