
Cyber Security Lead (Analyst) - Threat Hunting
- England
- £83,792-97,365 per year
- Contract
- Full-time
- Cyber Security Operations Unit (CSOU)
- Cyber Delivery Unit (CDU).
- Cyber Improvement Programme.
- Chief Information Security Office Function (CISO)
- Act as the specialist for the threat hunting team and act as an escalation point for all threat hunting activities in the topic.
- Generate reports for technical and non-technical stakeholders, creating documentation or detailed reports that provide narrative for complex subjects to board level / senior management.
- Act as a technical specialist in advanced forensic investigations in support of Security Operations function.
- Responsible for the management and delivery of threat use cases and content, Ideation, production of bespoke detections to identify malicious activity across NHS tooling and telemetry.
- Prioritise workload and hunts carried out by the team.
- Interface and build relationships with Incident Management and Threat Intelligence teams.
- Management of staff, resource allocation, and workload.
- Ensure the objectives and activities of the function are aligned with overarching Threat Operations strategy.
- Enabling local systems and providers to improve the health of their people and patients and reduce health inequalities.
- Making the NHS a great place to work, where our people can make a difference and achieve their potential.
- Working collaboratively to ensure our healthcare workforce has the right knowledge, skills, values and behaviours to deliver accessible, compassionate care
- Optimising the use of digital technology, research, and innovation
- Delivering value for money.
- In-depth knowledge of technologies and technology-based solutions dealing with information security issues; ability to apply these in protecting information security across the organisation.
- Extensive knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilise related applications to protect organisational networks from cyber risks.
- Extensive knowledge of techniques, approaches and processes of digital threats; ability to detect, monitor, analyse and prevent digital threats.
- Demonstrable knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.
- Expert knowledge of and ability to utilise a variety of specific tools for collecting, analysing, and presenting digital-related evidence.
- Masters level degree or equivalent level of experience.
- In-depth knowledge of technologies and technology-based solutions dealing with information security issues; ability to apply these in protecting information security across the organisation.
- Extensive knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilise related applications to protect organisational networks from cyber risks.
- Extensive knowledge of techniques, approaches and processes of digital threats; ability to detect, monitor, analyse and prevent digital threats.
- Demonstrable knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.
- Expert knowledge of and ability to utilise a variety of specific tools for collecting, analysing, and presenting digital-related evidence.
- Masters level degree or equivalent level of experience.