Job description
Cyber Security Manager (Ref: 144693)
Evidence Directorate
£46,244 - £53,789 (Band 7)
One year fixed term or secondment
Edinburgh or Glasgow - hybrid working will apply for the foreseeable future
Who We Are
The purpose of Healthcare Improvement Scotland (HIS) is to enable the people of Scotland to experience the best quality of health and social care. We are the national health board with responsibility for driving improvement in the safety and quality of health and social care for all people in Scotland.
What we are doing
HIS has set out an ambitious and exciting Digital work programme for 2023/24 focused on our Information and Communication Technology (ICT) architecture, cloud migration, digital transformation and our staff capacity and capability. This is an exciting time to join the Digital Services Group (DSG) and support us in achieving our future vision for HIS.
The Opportunity
We are looking for a Cybersecurity Manager to join our small, but highly talented and growing ICT team to provide leadership, technical direction and guidance on all matters of Cyber / IT Security Technical Controls, Procedures and Standards.
The successful candidate will ensure that HIS will comply and maintain the assurance standards provided by National Information Systems Regulations (NISR) and the Centre for Internet Security (CIS) Critical Security Controls as well as implement recommendations from the NHS Scotland Cybersecurity Centre of Excellence.
Would you enjoy working in a small, multi-disciplinary team that provides all the ICT support and Cybersecurity advice and assurance across a diverse organisation?
Do you want to play a key role in improving the cyber posture of HIS and achieving the requirements of the NISR audit?
Do you enjoy working at pace and being adaptive to an ever-changing environment?
Working in the ICT Team in DSG you will have the opportunity to provide expert Cybersecurity advice that will directly inform the development and delivery of digital services to a diverse, multi-disciplinary healthcare organisation located across Scotland.
Does this sound like you?
What we like to see
Cybersecurity Managers offer a broad range of skills and experience, if you can offer some or all of these, we would like you to apply:
Proven experience in a previous cybersecurity role along with a broad understanding of the application of security controls to systems is expected – including but not limited to authentication/authorisation, encryption and data security, logging, system hardening, web application security, antivirus and Microsoft Advanced Threat Protection.
Confident in assessing Cybersecurity risks and articulating and documenting these so that they can be understood at all stakeholder levels.
Proven ability in the documentation of Cybersecurity and ICT policies and procedures.
Previous experience in obtaining Cybersecurity certifications.
Assessment of vulnerabilities and development of remediation plans to address these.
Highly experienced in leading on the investigation and understanding of a range of complex cybersecurity issues, identifying possible solutions and recommending the best options.
Ability to work collaboratively with a multi-disciplinary team.
Highly effective communicator knowing how to make complex technical information and language simple for a diverse, multidisciplinary workforce (both verbally and in writing)
Excellent organisational skills, the ability to work as part of a team and on your own initiative, to organise and prioritise your workload and to meet strict deadlines
Benefits Which Matter
As a valued employee of NHS Scotland, you can enjoy an extensive range of benefits including:
Life-work balance - with opportunities for flexible working and remote working
Generous NHS pension scheme
Annual incremental salary progression (up to the maximum of the salary band) plus annual NHS salary scale review
Annual Leave - 27 Days increasing in line with service plus 8 days public holiday
NHS discounts and more
Diversity and Inclusion
Developing a successful national service for Scotland is impossible without ensuring we consider the diverse needs, perspectives and backgrounds of everyone in Scotland in our work.
We are focused on hiring the very best talent available for HIS, and actively encourage applications from candidates of all backgrounds and aim to ensure everyone is treated fairly, with respect and has a positive recruitment experience – regardless of the outcome. As a Disability Confident employer we will be happy to discuss any reasonable adjustments candidates may require to support them in the application process.
Location
Although HIS staff are currently working in a hybrid manner between home and office, as this is a Cybersecurity role there is a requirement to attend our offices in Glasgow and Edinburgh and our data centre in Livingston.
If you are considering applying and feel it would be helpful to discuss this initially, please contact [email protected]
Closing Date: midnight on Sunday 23rd April 2023
It is anticipated that interviews will be held on Tuesday 9th May 2023