Information Security Analyst
Are you passionate about cyber security, technically minded and interested in understanding how security controls should be applied across complex IT environments?
We're looking for a Senior Information Security Analyst to help strengthen and protect our technology landscape, ensuring the security and resilience of critical systems and services that support the NHS.
This role would suit someone with strong information security experience who can apply sound security judgement across technical environments. You'll work with technical and business teams to identify risks, improve security controls and help ensure security best practice is embedded across our technology environment.
Location: Hybrid with occasional travel to Leeds OR Southampton Office.
Eligible for SC Clearance.
What you'll be doing:
- Providing information security advice across infrastructure, networks, systems, cloud services and applications.
- Assessing technologies, solutions and changes to identify security risks and recommend appropriate controls.
- Working with technical teams to implement and improve security controls and security best practice.
- Identifying security control gaps and recommending proportionate improvements.
- Analysing vulnerabilities, assessing their technical impact and working with relevant teams to support effective remediation.
- Supporting security-by-design activities across projects, technical changes and new solutions.
- Reviewing technical configurations and proposed solutions from an information security perspective.
- Supporting the management and improvement of Identity and Access Management controls, including privileged access and inappropriate access risks.
- Investigating security incidents and providing analysis and recommendations.
- Evaluating existing and emerging security technologies and recommending improvements.
- Researching emerging cyber threats, vulnerabilities and security trends and considering their potential impact on the organisation.
- Supporting internal and external security audits by providing information security expertise and evidence.
- Producing clear security reports, recommendations and updates for both technical and non-technical audiences.
- Helping continuously improve security standards, processes, controls and ways of working across the organisation.
What you'll bring:
- Strong information security foundations and a genuine passion for cyber security.
- Previous experience in an Information Security Analyst, cyber security or similar role, with the technical understanding needed to assess risks, recommend controls and support secure implementation across IT environments.
- Good understanding of enterprise IT environments and the security controls used to protect them.
- An understanding of how security principles and controls are applied in practice.
- Practical experience in one or more security areas such as vulnerability management, Identity and Access Management, endpoint security, cloud security, security monitoring or incident response.
- The ability to understand technical issues, assess security risk and recommend practical and proportionate solutions.
- Strong analytical and problem-solving skills.
- Confidence working with technical and business teams to discuss security requirements, risks and remediation.
- Awareness of recognised cyber security frameworks and standards, such as ISO 27001, NIST Cybersecurity Framework and PCI DSS, and an understanding of the role they play in supporting good security practice.
- A proactive approach to learning and developing your information security knowledge.
You do not need to be an expert in every area of cyber security. We're particularly interested in people with strong security judgement, good technical understanding, strong problem-solving skills and a passion for developing their career in information security.
Employment Type: Permanent
Location: Hybrid with occasional travel to Leeds OR Southampton.
Security Clearance Level: Eligible for SC Clearance.
Internal Recruiter: Jane
Salary: Up to£35K
Benefits: 25 days annual leave with the choice to buy additional holiday days, health cash plan, life assurance, and pension.
Why join NHS SBS?
At NHS SBS, you'll be part of an organisation that plays a vital role in supporting the NHS. You'll work alongside talented professionals who are passionate about security, innovation and continuous improvement, helping to protect systems and services that make a real difference.
If you're looking for an opportunity to apply your cyber security expertise in a purpose-driven organisation while continuing to develop your career, we'd love to hear from you.
Apply today and help us strengthen the security of services that support healthcare across the UK.