At a Glance
- Tasks: Lead the Cyber Security Team, ensuring top-notch security compliance across digital systems.
- Company: Join the Isle of Wight NHS Trust and Portsmouth Hospitals University NHS Trust, dedicated to patient care excellence.
- Benefits: Enjoy flexible working with up to two days from home and a supportive team environment.
- Why this job: Make a real impact on healthcare security while developing your skills in a dynamic setting.
- Qualifications: Degree in Computing or related field, plus relevant technical certifications and experience.
- Other info: Opportunity to work across multiple sites and engage with diverse teams.
The predicted salary is between 42000 - 84000 £ per year.
Location: Across sites, both Isle of Wight NHS Trust and Portsmouth Hospitals University NHS Trust (frequency of visits to each site, to be agreed locally)
Hours: 37.5 hours per week (Full time)
Contract Type: Permanent
An opportunity has arisen for the full time post of Technical Service Security Supervisor to lead our Cyber Security Team for Isle of Wight and Portsmouth Hospitals University NHS Trusts, as part of our Single Corporate and Digital Services. The post holder will work from our offices in Portsmouth and Isle of Wight and up to two days a week from home.
As team leader for the Cyber Security Team, the post holder will manage a team of three Security Specialists and one Security Architect, to ensure we maintain the highest levels of security compliance to maintain the confidentiality, integrity and availability of our corporate and clinical digital systems. The Technical Security Supervisor will report to the Technical Service Manager, but will work across Digital and closely with colleagues across our Corporate Services and our clinical divisions.
Isle of Wight and Portsmouth Hospitals NHS Trust Digital Team support some 13,500 users and a combined patient population of 820,000.
Main duties of the job
Communication and Working Relationships
- The role requires well developed communications and relationship management skills. Promote effective communication and networking with multi-disciplinary and multi-agency teams to ensure information security risks are well understood and managed, while developing a shared understanding of the pressures and priorities of partner organisations
- The post holder will provide face to face, written, verbal and electronic communications to a range of The Trusts managers and senior managers.
Analytical and Judgement
- Identify and analyses information security risks within new and changed IT Infrastructure components.
- Investigate highly complex information security issues such as related to breaches of security, identify of architectural security solutions to resolve including resource requirements from within Digital and Information Governance.
Planning and organising
- The post holder is required to plan and organise broad range of complex activities; formulates, adjusts plans or strategies Plans projects which impact across the department & organisation, delivery of Digital services for own area, contributes to medium term Digital strategy.
- The post holder will have occasional contact with patients and carers in a wide variety of situations (including mental health) during the course of their duties.
- They will Assist patients /clients during incidental contacts.
About us
Our vision for Single Corporate Services Isle of Wight NHS Trust (IWT) and Portsmouth Hospitals University NHS Trust (PHU) have a shared vision of a single corporate service across our two organisations, supported by a single set of identical systems and processes, under joint leadership, to drive significant efficiencies, improve employee experience, and return time to patient care.
Why are we changing the way we deliver Corporate Services?Working as a partnership, both IWT and PHU have a shared vision for excellence in care for our patients and communities; with a set of strategic aims underpinning how we will achieve this. The creation of a single corporate service is essential for us to support our clinical and operational services, and our wider transformation programme.
The single corporate service is delivered across both organisation. For leaders managing staff across multi-site locations, you will need to be visible and provide in person leadership. The arrangements and frequency will be agreed locally.
Job responsibilities
The Technical Security Supervisor will lead the Digital Cyber Security Team, helping to ensure the Confidentiality, Integrity and Availability of our infrastructure, systems and applications in line with established best practice, NCSC Cyber Assessment Framework, Data Security and Protection Toolkits and the Group Cyber Security Strategy.
Team Management
- The postholder will report to the Technical Services Manager and is responsible for the management and day to day operation of the Cyber Security Team. Ensuring that tasks are appropriately prioritised and scheduled, skills appropriately utilised, procedures documented and followed, adequate coverage for absence and Out-of-Hours support is in place, and consistent, up-to-date documentation is established and maintained.
- Provide the immediate line management for the Security Specialists and Information Security Architect within the Technical Security Team.
- Monitor security standards for the Technical Services team, monitoring achievement against these, and devising improved ways of working, working with the Technical Services Manager.
- As a team leader, take a lead role in the daily scrums held within the team to ensure the team collaboration and focus is aligned to the business outcomes.
System Design & Hosting
- Secure System Architecture: Working alongside the Digital Security Architect to design and implement robust security architectures for IT solutions, ensuring the integration of security principles such as least privilege, defence in depth, and secure by design throughout the IT solutions lifecycle.
- Access Control Management: Develop and enforce access control policies, ensuring that only authorized personnel have access to sensitive systems and data, using multi-factor authentication, role-based access, and other security mechanisms.
Software and Hardware Installation
- Secure Configuration and Hardening: Ensure that all software and hardware installations follow secure configuration guidelines and hardening practices to minimize vulnerabilities and reduce the attack surface.
- Patch Management: Oversee the timely installation of security patches and updates for both software and hardware across the entire IT landscape & two hospitals, ensuring that systems are protected against known threats and vulnerabilities.
- Malware Protection: Implement and configure antivirus, anti-malware, and intrusion detection/prevention systems during installation to safeguard against malicious software and unauthorized access.
- Secure Infrastructure Design: Working with the Digital Security Architect to support the development of secure infrastructure solutions, incorporating advanced security measures and best practices into the planning, design, and implementation of new technologies.
- Emerging Threat Mitigation: Proactively identify and address emerging security threats and vulnerabilities, adapting infrastructure developments to stay ahead of potential risks and ensure ongoing protection.
Person Specification
Knowledge
- Demonstrable in depth understanding of current NHS standards and policies relating to security.
- Ability to manage multiple complex projects to a successful conclusion, using structured methodologies.
- Substantial knowledge of Change Management processes and techniques.
- Working to IT service management best practice.
- Ability to forge long-term working partnerships with individuals and groups from internal and external departments and organisations.
- Ability to write clear concise reports, letters, minutes and documents using a good standard of English.
- Excellent organisational, problem solving, communication and analytical skills.
- The ability to tackle highly complex issues and resolve them to the benefit of the service.
- The ability to remain current with emerging technologies.
- Sensible negotiator with practical expectation of what can be achieved.
Qualifications
- ITIL v3 Foundation
- Degree-level Qualification or equivalent in a Computing or analytical field
- Technical Accreditation in one or more of the following: –
- oMicrosoft MCP/MCSA/MCSE
- oCompTIA Security+
- oCertified Ethical Hacker (CEH)
- ISO27001
- CISSP
Experience
- Broad practical experience and Hands-on technical experience in the majority of the following:
- oMicrosoft Windows and BackOffice Servers (SQL Server, Exchange)
- oApp-V or alternate Application Virtualisation solution
- oCitrix XenApp
- oCisco Switches and ASA and general networking
- oSAN technologies (Block and File)
- oSecurity Event Monitoring/Aggregation
- oEvent Monitoring solutions (e.g. Solarwinds/Zabbix or similar)
#J-18808-Ljbffr
Technical Services Security Supervisor employer: Isle of Wight NHS Trust
Contact Detail:
Isle of Wight NHS Trust Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Technical Services Security Supervisor
✨Tip Number 1
Familiarise yourself with the specific security standards and policies of the NHS. Understanding these will not only help you in interviews but also demonstrate your commitment to the role and the organisation's values.
✨Tip Number 2
Network with current employees or professionals in the cyber security field, especially those who have experience in NHS settings. This can provide you with insider knowledge about the team dynamics and expectations for the Technical Services Security Supervisor role.
✨Tip Number 3
Stay updated on the latest trends and emerging threats in cyber security. Being able to discuss recent developments or case studies during your interview can set you apart as a knowledgeable candidate.
✨Tip Number 4
Prepare to showcase your leadership skills and experience in managing teams. Think of specific examples where you've successfully led projects or initiatives, as this role requires strong team management capabilities.
We think you need these skills to ace Technical Services Security Supervisor
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the Technical Services Security Supervisor role. Focus on your leadership experience, knowledge of cyber security, and any specific qualifications mentioned in the job description.
Craft a Compelling Cover Letter: Write a cover letter that not only introduces yourself but also explains why you are passionate about this role. Mention your understanding of NHS standards and how your background makes you a perfect fit for leading the Cyber Security Team.
Highlight Communication Skills: Since the role requires strong communication and relationship management skills, provide examples in your application of how you've successfully communicated complex information to diverse audiences or managed multi-disciplinary teams.
Showcase Problem-Solving Abilities: In your application, include specific instances where you've tackled complex issues in IT security or project management. This will demonstrate your analytical skills and ability to resolve challenges effectively.
How to prepare for a job interview at Isle of Wight NHS Trust
✨Understand the Role
Make sure you have a solid grasp of the responsibilities of a Technical Services Security Supervisor. Familiarise yourself with key concepts like Cyber Security, access control management, and secure system architecture. This will help you answer questions confidently and demonstrate your knowledge.
✨Showcase Your Leadership Skills
As a team leader, you'll need to manage a group of specialists. Be prepared to discuss your previous leadership experiences, how you motivate teams, and how you handle conflicts. Use specific examples to illustrate your points.
✨Prepare for Technical Questions
Expect to be asked about your technical expertise, especially regarding NHS standards and security policies. Brush up on relevant certifications like ITIL, CompTIA Security+, or CISSP, and be ready to discuss how you've applied this knowledge in real-world scenarios.
✨Demonstrate Communication Skills
Effective communication is crucial in this role. Be ready to explain complex technical concepts in simple terms, as you'll be liaising with various stakeholders. Practice articulating your thoughts clearly and concisely to showcase your communication prowess.