At a Glance
- Tasks: Analyse and identify potential cyber threats to protect NHS England's digital landscape.
- Company: Join NHS England, a leader in healthcare innovation and cyber resilience.
- Benefits: Competitive salary, additional RRP payment, and opportunities for professional growth.
- Why this job: Make a real difference in healthcare by safeguarding vital information and systems.
- Qualifications: Bachelor's degree or equivalent experience in cyber security.
- Other info: Dynamic role with excellent career progression in a supportive environment.
The predicted salary is between 47000 - 58000 £ per year.
Cyber Security Analyst – Threat Intelligence
Cyber Operations purpose is to support safe care and build public trust by building NHS England\’s cyber resilience and enabling the wider health system to be cyber resilient, supporting Transformation Directorate\’s purpose of delivering the best care and outcomes for the NHS. The Cyber Operations sub-directorate consists of 4 operational areas:
- Cyber Security Operations Unit (CSOU) – SIO
- Cyber Delivery Unit (CDU).
- Cyber Improvement Programme.
- Chief Information Security Office Function (CISO)
The role sits within the CSOCs Threat Intelligence team within NHS England CSOC comprised of four primary functions:
- Intelligence Collection & Analysis – Perform collection, aggregation, analysis and contextualisation of healthcare and security information to produce actionable CTI.
- Cybersecurity Threat & Risk Assessment – Perform high-level risk assessments of current and emerging threats to the health & social care estate.
- Specialist CTI Support – Provides specialist CTI support to CSOC during high complexity incidents.
Main duties of the job
The Cyber Security Threat intelligence Analyst represents acts as a threat intelligence specialist within the CSOC aimed at analysing and identify potential security threats facing NHS England as identified by the CSOCs threat intelligence collection and analyses capabilities.
You will be a threat intelligence analyst reporting to the threat intelligence senior analyst your core responsibilities will be to:
- Interrogate threat intelligence sources to identify items of interest for triage and analysis. Collect and process information from threat intelligence sources to aid the identification of potential cyber threats.
- Contextualise and interpret threats via the use of intelligence models and frame works. Accurately identify indicators of compromise within intelligence items as well as potential detection opportunities.
- Carry out investigations into intelligence items of significance, identifying opportunities for further lead development.
- Provide specialist CTI support to protective monitoring teams during high complexity incidents.
- Create intelligence products in the manner most appropriate for the audience, taking care to quote sources and state confidence.
- Contribute to the continuous development of the Threat Operations pod.
- Delivering against CSOC security requirements as directed by senior leadership.
- Lead in-depth CTI investigations.
About us
Our work supports the NHS to deliver high quality services for patients and best value for taxpayers.
Our staff bring expertise across hundreds of specialisms — including clinical, operational, commissioning, technology, data science, cyber security, software engineering, education, and commercial — enabling us to design and deliver high-quality NHS services.
We lead the NHS in England by:
- Enabling local systems and providers to improve the health of their people and patients and reduce health inequalities
- Making the NHS a great place to work, where our people can make a difference and achieve their potential
- Working collaboratively to ensure our healthcare workforce has the right knowledge, skills, values and behaviours to deliver accessible, compassionate care
- Optimising the use of digital technology, research, and innovation
Earlier this year, the Government announced that NHS England will gradually merge with the Department of Health and Social Care, leading to full integration. The aim is to create a smaller, more strategic centre that reduces duplication and eliminates waste.
If successful at interview, we will initiate an Inter Authority Transfer (IAT) via the Electronic Staff Record (ESR). This retrieves key data from your current or previous NHS employer to support onboarding, including competency status, Continuous Service Dates (CSD), and annual leave entitlement. You may opt out at any stage of the recruitment process.
Job responsibilities
Please ensure your supporting statement includes demonstratable evidence and specific examples on how you meet the criteria for each of the key skills specified. This will be used in both the shortlisting and interview processes
Important: Please be aware there are residency requirements you need to meet:
All NHS England Cyber Security personnel must hold Security Clearance level as a minimum. To meet National Security Vetting requirements, SC clearances require 5 years continuous UK residency. In certain cases, this can be reduced to three years continuous UK residency, with additional overseas checks for the previous two years. Candidates who were posted abroad for service with HM Government, Armed Forces or within a UK government role – will still be considered. Please make sure you meet these requirements before applying for this role. You don\’t need to have SC already, however, failure to achieve the requirements for SC after offer will result in the job offer being withdrawn. For further advice please check https://www.gov.uk/government/publications/united-kingdom-security-vetting-clearance-levels/national-security-vetting-clearance-levels#security-check-sc
Please be aware that if you are successful in this position, you will be hired to the job title of Security Advisor/Analyst and this job title is advertised to attract the right skills needed for the role.
The post of Security Advisor/Analyst has been awarded a Recruitment and Retention Premia (RRP) in response to current labour market conditions. In recognition of this, the role attracts an additional monthly RRP payment equal to 20% per annum.
Please be aware that RRP is non-contractual and subject to review.
Applicants from within the NHS will be offered on a secondment basis only, agreement should be obtained from their employer prior to submitting the application.
Please note that the reason for the fixed term of this contract is short term vacancy.
You can find further details about the role, including key responsibilities and accountabilities, alongside the organisational structure and person specification in the attached Job Description and other supporting documents.
Person Specification
Knowledge
- Proven knowledge of techniques, approaches and processes of digital threats; ability to detect, monitor, analyse and prevent digital threats.
- Demonstrable Knowledge of vulnerability assessment tools, techniques, models, and systems; ability to utilize the knowledge to identify vulnerabilities on network, operating system, mobile application, etc.
- Demonstrable knowledge of and ability to utilize a variety of specific tools for collecting, analysing, and presenting digital-related evidence.
Skills & Experience
- Proven knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.
- Demonstrable knowledge of the processes, tools and techniques of information security management, ability to deploy and monitor information security systems, as well as detect, resolve and prevent violations of IT security, to protect organisational data.
- Working knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilize related applications to protect organisational networks from cyber risks.
Qualifications
- Bachelor\’s Degree or equivalent experience.
Disclosure and Barring Service Check
This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.
£57,372 to £65,652 a year (this includes a RRP payment of 20%)
#J-18808-Ljbffr
Cyber Security Analyst - Threat Intelligence employer: NHS England
Contact Detail:
NHS England Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Analyst - Threat Intelligence
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the cyber security field. Attend meetups, webinars, or even local events. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your threat intelligence projects or any relevant work you've done. This gives potential employers a taste of what you can bring to the table and sets you apart from the crowd.
✨Tip Number 3
Prepare for interviews by brushing up on common cyber security scenarios. Think about how you'd handle specific threats or incidents. Practising your responses will help you feel more confident and ready to impress during those crucial conversations.
✨Tip Number 4
Don't forget to apply through our website! We love seeing applications come directly from passionate candidates. Plus, it makes it easier for us to keep track of your application and get back to you quickly.
We think you need these skills to ace Cyber Security Analyst - Threat Intelligence
Some tips for your application 🫡
Tailor Your Supporting Statement: Make sure to customise your supporting statement to highlight how your skills and experiences align with the key criteria mentioned in the job description. Use specific examples to demonstrate your expertise in cyber security and threat intelligence.
Showcase Your Knowledge: Don’t hold back on showcasing your knowledge of digital threats and vulnerability assessment tools. We want to see that you’re not just familiar with these concepts, but that you can apply them effectively in real-world scenarios.
Be Clear and Concise: When writing your application, clarity is key! Keep your language straightforward and avoid jargon unless it’s necessary. We appreciate a well-structured application that’s easy to read and gets straight to the point.
Apply Through Our Website: Remember to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy to do!
How to prepare for a job interview at NHS England
✨Know Your Threat Intelligence
Make sure you brush up on the latest trends and techniques in threat intelligence. Familiarise yourself with common cyber threats, especially those relevant to the healthcare sector. Being able to discuss specific examples of threats and how they can impact NHS England will show your expertise.
✨Showcase Your Analytical Skills
Prepare to demonstrate your analytical abilities during the interview. Think of scenarios where you've successfully identified and mitigated threats. Use the STAR method (Situation, Task, Action, Result) to structure your responses, making it clear how your actions led to positive outcomes.
✨Understand the Role's Responsibilities
Dive deep into the job description and understand the key responsibilities. Be ready to discuss how your previous experience aligns with tasks like intelligence collection, risk assessment, and providing specialist support during incidents. Tailor your examples to reflect these duties.
✨Ask Insightful Questions
Prepare thoughtful questions to ask at the end of your interview. This could include inquiries about the tools and technologies used in the CSOC or how the team collaborates during high complexity incidents. This shows your genuine interest in the role and helps you assess if it's the right fit for you.