Senior Security Operations Analyst

NHS National Services Scotland


Date: 16 hours ago
City: Dundee, Scotland
Contract type: Full time
About The Organisation

National Services Scotland (NSS) is a national NHS Board operating right at the heart of NHSScotland, providing invaluable support and advice at a strategic and operational level. NSS supports customers to deliver their services more efficiently and effectively and we offer shared services on a national scale using best-in-class systems and standards. Our priority is always the same to improve the health and well-being of the people of Scotland. We do this by working in partnership with colleagues across Health and Social Care to deliver fit for purpose solutions and systems, delivering high quality services that help our stakeholders to free up resources so they can be re-invested into essential services. The security services and technology provided by NSS Digital and Security (DaS) are critical operational components, used 24/7 365 days a year.

The Post

NSS DaS operates the Cyber Centre of Excellence (CCoE), providing modern, proactive, and efficient national cybersecurity services for NHSScotland. This is an exciting opportunity for two Senior Cyber Security Analysts to join the CCoE’s Cyber Security Operations Centre (CSOC), responding to incidents, working on projects and providing excellent services to NHSScotland’s Health Boards.

The post holders will lead and contribute to projects that extend and improve the capabilities of the CCoE, and that improve the cybersecurity stature and awareness of our customer base. They will engage with the team, stakeholders, and external suppliers to develop, validate, and continually improve processes and playbooks that prepare us for cybersecurity incidents ranging from localised issues to complex, multi-actor national incidents with lateral threat movement and severe impact on Scotland’s national core infrastructure.

In collaboration with the CSOC team, they will develop and improve operationally relevant KPIs and KRIs and associated reporting mechanisms that are suitable to evidence performance to the CCoE and NSS DaS management team, and that demonstrate value to our stakeholders.

During an active incident, the post holder is required to provide level-headed and hands-on response actions alongside the CSOC team and external service providers. They can draw on the support of the CCoE and CSOC leadership, and are enabled and authorised to take proactive steps that contain and minimise the impact of an incident. They provide concise situational updates to a wide audience, ranging from fellow CS professionals to CSOC and CCOE management.

The Candidate

Please note that the Job Description is generic in nature. The candidate should consider the attached Person Specification and content of this advert when submitting their application.

The candidate should have experience in some of the following:

  • Working in a busy national security operations centre, preferably in healthcare providing a service 24/7, 365 days a year
  • Delivering and operating IT infrastructure (networks, servers, desktop, cloud, etc.)
  • Working on or leading security operations functions, including: Cyber Security Incident Response and Management; Monitoring & Alerting; Vulnerability Management; Threat Intelligence; Security Architecture
  • Acting as a significant technical authority within the information and cyber security specialist area
  • Developing, designing, and implementing new security operations, processes, and technology.
  • Working within a multi-disciplinary team with high-calibre staff.
  • Working within NHS Scotland (desirable)

The Candidate should have a degree in a related subject, or demonstrable equivalent experience. They will have experience gained working in relevant role(s), for example within an NHS, healthcare, or similarly regulated environment, and have an in-depth knowledge of digital & information security. Ideally the candidate will have achieved Chartered Professional status of the British Computer Society (MBCS CITP) and should have obtained a post-graduate qualification in the specialist area e.g. ISO27001 Lead Implementer, CISM, CISA, CISSP, GIAC certifications, CCP accreditor or have equivalent additional experience / expertise.

The candidate should have excellent interpersonal, communication and organisational skills. They should also be able to work with minimal supervision but should demonstrate good team working and leadership skills. The candidate needs to be flexible and should be able to deal with conflicting demands, whilst under pressure. The candidate needs to understand the importance of effective communication skills and confidentiality.

The successful candidate will be required to undergo a PVG Scheme/Disclosure Scotland check. Any candidate who has lived/worked overseas for more than 12 months in the preceding 5 years will also be required to provide a criminal record check from the appropriate overseas agency. Details of how to apply for, or to update, PVG Scheme membership/Disclosure will be supplied to successful candidates.

Location and Working Pattern:

NSS DaS’s CCoE is physically located within the CyberQuarter at Abertay University, Dundee, where staff can benefit from hybrid working. Travel to NSS’s other office locations, and to customer sites across Scotland, may be required from time to time.

Work Pattern - Monday to Friday, 37 hours per week [preferred]. The successful candidate is expected to join an incident response on-call rota.

It is a condition of this employment that you must live and remain a resident within the UK for the post in which you will be employed with NSS.

Benefits

Our benefits package includes pension scheme, comprehensive range of work life balance policies, occupational health services, learning resource centres and discounted leisure, financial and shopping benefits. HR Benefits Brochure.

Inclusion

NHS National Services Scotland (NSS) is a national board and, as an anchor institution, it is our ambition to be a diverse and inclusive organisation where everyone feels welcome. We recognise that flexible working creates an inclusive workplace where employees can thrive and feel confident about their ability to balance their personal and professional responsibilities. This is supported through Once for Scotland flexible working policies. NSS has made a long-term commitment to staff health and well-being and offers many learning and development opportunities to support and improve our approaches to diversity, inclusion and mental health in the workplace. There are a number of equality staff networks in place which all staff are welcome to join. We are also an equal opportunities employer and as such guarantee to interview all disabled applicants who meet the minimum criteria for our vacancies. As an accredited Disability Confident Leader, it is the aim of NSS to offer a fully accessible and inclusive recruitment service that supports applicants on their candidate journey. If you are interested in any reasonable adjustments, please contact the Recruitment Team on [email protected]

Further Information

For an informal discussion on the post, please contact a member of our leadership team, Harry Chester at [email protected]

Closing date for completed applications is Friday 11th July

Further information on NSS is available from: https://www.nss.nhs.scot/

Please note that the majority of correspondence is sent by e-mail only, so please check your e-mail regularly (including junk folders).
Post a CV

See more jobs in Dundee