Senior Cyber Security Analyst
Job summary
Support the Head of Cyber Security with regulatory requirements, such as NIS CAFDevelop policies and procedures to reduce the likelihood and impact of Cyber IncidentsMonitor security tools for incidents and events, responding appropriatelyManage vulnerabilities providing expect advice and guidance on remediationReport on Cyber metrics, Key Performance Indicators (KPI's) and Service Level Agreements (SLA's) .
The ability to speak Welsh is desirable for this post; Welsh and/or English speakers are equally welcome to apply.
Main duties of the job
To monitor Cyber Security Systems, respond to Cyber Incidents and develop policy, processes and procedures to reduce the likelihood of aCyber Security incident.To undertake vulnerability scanning, the monitoring of Cyber Security Systems and work with third parties to review compliance with bestpractice.
To deputise for the Senior Cyber Security Product Specialist where appropriate. To act as an escalation point for Cyber Security incidents and provide specialist advice and knowledge to support the service operations centreas well as developing Cyber Security training packages for both the team and the organisation.
To adhere to the Cyber Security professional code of conduct and keep up to date with legislation and national policies, as well as assessingsecurity advisories from third parties.To undertake other relevant duties as agreed with the Senior Cyber Security Product Specialist, and Head of Cyber Security commensuratewith the banding of this role. Assist in the Cyber Security Strategy development and delivery, affecting whole organisation.
To performs root cause analysis and lessonslearned on all Cyber Security Events. To work with external auditors to ensure compliance of Cyber Security Systems Implements recommendations in line with timescales agreedwith auditors. Monitors internal and external threat environment.
About us
Aneurin Bevan University Health Board (ABUHB) is a multi-award-winning NHS organisation serving the communities of Gwent. With more than 14,000 staff and volunteers, we provide safe, high-quality, and compassionate care across hospitals, GP practices, community services, and mental health settings. As a University Health Board, research, education, and innovation are central to our work, supporting evidence-based practice and continuous improvement.
Our work is guided by the Gwent Strategy 2025-2035, which sets out our long-term ambition to create a fairer and healthier future for our population. We focus on prevention, reducing health inequalities, and working in partnership with local authorities, voluntary organisations, and communities to improve health and wellbeing.
We are committed to creating an inclusive, supportive workplace where people feel valued, respected, and able to develop. Our values of Kindness, Integrity, and Respect shape how we care for patients and how we treat one another.
We offer a wide range of learning and development opportunities, flexible working where possible, and a comprehensive NHS benefits package. Working for ABUHB means being part of an organisation that values its people and offers the chance to build a meaningful and rewarding career while making a real difference to the lives of others.
Job description
Job responsibilities
Essential Educated to Degree level (preferably Cyber Security) or equivalent and a recognised qualification in Cyber Security e.g. CISMP,CompTIA or equivalent demonstrable level of work experience and knowledge ITIL Foundation Evidence of Continual Professional Development Good understanding of Cyber Security best practices and terminology Knowledge of Desktop, Server and Mobile devices and operating systems as well as IoT devices Knowledge of Information Assurance and Cyber Security standards and certifications Knowledge of laws and regulations relating to Cyber Security Knowledge of common Cyber Security tools and solutions Good understanding of security monitoring and alerting solutions Good understanding of Cyber Security professional code of conduct Good understanding of the Incident Response lifecycle Good understanding of vulnerability scanning and penetration testing methodologies You may be required, at times, to work outside of standard working hours. You will also be expected to join on an out of hours, on-call escalation rota.
Desirable Professional qualification or membership in cyber security (ISC2, BCS, NCSC, Tiger, CHECK, CREST, CompTIA etc.) Application of Cyber Security in a healthcare environment Good knowledge of one or more specialist areas such as compliance, penetration testing, or incident response Delivery of training to technical and non-technical staff Report writing Procedure development
Experience Experience within Cyber Security, underpinned by theory Experience of Cyber Security monitoring of SIEM systems Evidence of Cyber Security or other relevant work outside formal training or employment (voluntary, research, academia, social mediaetc.) Relevant experience working in Cyber SecuritySkills and Attributes Excellent communication and interpersonal skills, verbal and written and reporting skills Ability to produce good quality documentation Able to deal effectively with staff, customers, and suppliers at all levels Good organisational skills Good computing/keyboard skills Other Must be able to travel within geographical area May be required to work hours flexibly on occasions to meet service needs You will be required to work as part of an on-call escalation.
You will be able to find a full Job description and Person Specification attached within the supporting documents or please click Apply now to view in Trac.
Person Specification
Availability
- Evidence of Continual Professional Development
- You may be required, at times, to work outside of standard working hours
- You will also be expected to join on an out of hours, on-call escalation rota
Education
- Educated to Degree level (preferably Cyber Security) or equivalent and a recognised qualification in Cyber Security e.g. CISMP, CompTIA or equivalent demonstrable level of work experience and knowledge
- Knowledge of Information Assurance and Cyber Security standards and certifications
- Knowledge of laws and regulations relating to Cyber Security
- Good understanding of Cyber Security best practices and terminology
Disclosure and Barring Service Check
This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.
Certificate of Sponsorship
Applications from job seekers who require current Skilled worker sponsorship to work in the UK are welcome and will be considered alongside all other applications. For further information visit the UK Visas and Immigration website.
From 6 April 2017, skilled worker applicants, applying for entry clearance into the UK, have had to present a criminal record certificate from each country they have resided continuously or cumulatively for 12 months or more in the past 10 years. Adult dependants (over 18 years old) are also subject to this requirement. Guidance can be found here Criminal records checks for overseas applicants.
Employer details
Employer name
Aneurin Bevan University Health Board
Address
Ty Gwent
Llantarnam Industrial Park
Cwmbran
NP44 3HR
United Kingdom
Employer's website
https://abuhb.nhs.wales/