Information Security Specialist

7 months ago


Newcastle upon Tyne, United Kingdom NHS Business Services Authority Full time

We're looking for an organised and motivated Information Security Management professional to join us and play a key role in delivering the information security compliance programme across all services within the NHS Business Services Authority (NHSBSA).

The role will be based in the NHSBSA’s Security & Information Governance Team located at our Stella House office, Newcastle upon Tyne. In line with our hybrid working policy there is also an opportunity for working from home to be considered providing business needs are met.

So, if you are excited by the above, feel you have what it takes to be successful, and would like to join our dynamic team we would love to hear from you.

What do we offer?
- 27 days leave (increasing with length of service) plus 8 bank holidays
- Flexible working (we are happy to discuss options such as compressed hours)
- Flexi time
- Hybrid working model (we are currently working largely remotely)
- Career development
- Active wellbeing and inclusion networks
- Excellent pension
- NHS Car lease scheme
- Access to a wide range of benefits and high street discounts

Actively supporting the continual improvement of the organisation’s arrangements for information security management you will work with relevant stakeholders and interested parties (such as special interest groups, professional associations and security forums) to understand the information security threat landscape, trends, and emerging risks.

Here at the NHS Business Services Authority (NHSBSA), what we do matters.

 We manage the NHS Pension scheme, process prescription payments and much more. Our services are used by NHS organisations, contractors and the public: we take pride in being part of something so meaningful, that touches millions of lives.

 Just as we design our services around the needs of our customers, we place our people at the heart of our organisation. That’s why when you join us, you’ll be empowered and given the right support to help your career grow.

 As one of the UK’s Best Big Companies to work for, we’re all connected to our values: Collaborative, Adventurous, Reliable and Energetic. We care about our people, our purpose, and your progress.

We strive to offer a fantastic colleague experience, where every voice is heard, and every colleague is supported and respected. Wellbeing, diversity and inclusion is at the centre of this, so when you join us, you can connect with our Lived Experience Networks who help us to bring our authentic selves to work.

We are people connected to care.

**In this role you are responsible for**:

- Understanding and employing a scenario-based approach to information risk assessment.
- Undertaking information security risk assessments in line with the approved NHSBSA risk management framework, ensuring effective and timely engagement with key stakeholders including Cyber Security Team, Information Governance Team and Information Asset Administrators.
- Engaging with senior management (SIRO and Information Asset Owners) to ensure that they understand the information security risks relevant to their service area and to the organisation as a whole.
- Co-ordinating the identification of suitable information security risk treatment options.
- Managing the development and delivery of the information security education, training and awareness programme.
- Delivering information security management awareness training for all levels of the organisation, including online and face-to-face sessions.
- Providing information security support, advice and guidance to all NHSBSA teams.
- Establishing information security management arrangements for new services / programmes / projects - ensuring that information security controls reflect best practice and are embedded within processes and procedures.
- Managing the information security incident management process ensuring that remediation actions are taken in a timely manner and that lessons learned inform the security improvement plan.
- Scoping and conducting information security internal audits in accordance with the ISMS internal audit schedule.
- Using credible and reliable information and information sources to provide evidence of emerging information security threats.
- Maintaining a sound knowledge of information security products, systems and procedures used within the NHSBSA.

**Responsible to**: Information Security & Business Continuity Manager

**Key relationship**: Head of Security & Information Governance, Senior Information Risk Owner, Cyber Security Operations Manager, Business Continuity Specialist, Information Security Compliance Specialist, Information Governance Manager, Information Asset Owners



  • Newcastle upon Tyne, United Kingdom NHS Business Services Authority Full time

    Providing information security support, advice and guidance to all NHSBSA teams. Establishing information security management arrangements for new services / programmes / projects ensuring that information security controls reflect best practice and are embedded within processes and procedures. Managing the information security incident management process...


  • Newcastle Upon Tyne, United Kingdom Reed Full time

    **Information Security Engineer** **Type: Permanent** **Location: Remote/ Newcastle upon Tyne** **Salary: £39,000** A national company in Newcastle are looking for an **Information Security Engineer** to join a brand-new team of Security experts in their technical hub. This role will involve managing the identification and implementation of suitable...


  • Newcastle upon Tyne, United Kingdom Mott MacDonald Full time

    Mott MacDonaldPosition location: Newcastle, United KingdomRecruiter contact: Nikki GeorgeWe’re a global engineering, management, and development consultancy.Our purpose is to improve society by considering social outcomes in everything we do, relentlessly focusing on excellence and digital innovation, transforming our clients’ businesses, our communities...


  • Newcastle upon Tyne, United Kingdom Mott MacDonald Full time

    Do you want to work for a company whose purpose is to improve society by considering social outcomes, and to transform businesses, communities, and opportunities for it’s employees? Mott MacDonald is a global consultancy whose people do exactly that. The Group Information Security Team is responsible for group information security strategy, risk...


  • Newcastle upon Tyne, United Kingdom Nigel Wright Group Full time

    The Opportunity Fantastic opportunity for an experienced Information Security professional to take the lead on this national business's Information Security activities. The company operates a fully flexible hybrid working policy where on average the person will be onsite 2 days per week. The Role Leading a small team, you will be responsible for...


  • Newcastle Upon Tyne, United Kingdom Coburg Banks Limited Full time

    We're looking for a high calibre Information Security Manager to work for our client, the UK's leading and best-known food on the go retailer. If you have experience creating information security strategies with a thorough understanding on how to continuously improve organisational information security management frameworks, plus a high level of commercial...


  • Newcastle Upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique blend...


  • Newcastle upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique blend...


  • Newcastle Upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique blend...


  • Newcastle upon Tyne, United Kingdom Mott MacDonald Full time

    Group Information Security Officer **Country**:United Kingdom**Position Location**:Newcastle, United Kingdom**Contract Type**:Permanent**Work Pattern**:Full Time**Sector**:Digital Ventures**Discipline**:Information technology**Job Ref**:1695**Recruiter Contact**:Nikki George**Mott MacDonald** - We’re a global engineering, management, and development...


  • Newcastle Upon Tyne, United Kingdom Norton Rose Fulbright LLP Full time

    We're Norton Rose Fulbright - a global law firm with over 50 offices and 7,000 employees worldwide. Our London or Newcastle office is currently recruiting for a**Information Security Analyst**. As well as the relevant skills and experience, we're looking for people who are innovative, commercial and value the work that they do. The Information Security...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom Austin Fraser Full time

    We are seeking an experienced Information Security Professional to join our team at Austin Fraser.About the Role:This is a unique opportunity to join a dynamic team and contribute to the development of information security policies and procedures.The successful candidate will have a strong understanding of IT security principles and best practices.They will...


  • Newcastle upon Tyne, United Kingdom NHS Business Services Authority Full time

    **In this role, you are accountable for**: Undertaking information security assurance assessments and producing NHSBSA Information Security Assurance Documentation (ISAD) for the certification of business systems Understanding and employing a scenario-based approach to information risk assessment Undertaking information security risk assessments through the...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom Circle Group Full time

    Job OverviewWe are seeking a highly skilled Cyber Security Engineer to join our team at Circle Group. This is a full-time position, based 2-3 days on site in Newcastle Upon Tyne and the remainder working from home.Key ResponsibilitiesTo work in a Security Operations Centre, providing support for cybersecurity incidents and threats.To develop and implement...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom EPAM Full time

    As a Security Information Architect at EPAM, you will play a critical role in designing and implementing secure information architectures for our clients. You will work closely with our security team to develop and deploy SIEM solutions, ensuring seamless integration with various security tools, systems, and log sources. This role requires a strong...


  • Newcastle upon Tyne, United Kingdom CIS Security Full time

    Do you have 5* customer service skills with the ability to provide a friendly and secure corporate security service?CIS Security have an exciting opportunity available for a Corporate Security Officer who will be an ambassador to represent CIS Security who will demonstrate and deliver high quality guarding and customer service to both our customers and...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom CyberNorth Full time

    Job OverviewCyberNorth seeks an experienced Cyber Security Analyst to join its team. As a key member of the Customer Experience & Bridge Operations Centre (CE&BO), you will play a vital role in monitoring the HMRC IT network, services, applications, batch processing, security, and incident management 24/7.This is a rotational 12-hour shift pattern position,...


  • Newcastle upon Tyne, United Kingdom Go To Outsourcing Full time

    This is your chance to be a part of our client who is looking for an Information Security Officer in Newcastle **Key Accountabilities**: The position includes, but is not limited to; - Ownership of our main ERP system end user permission (sky-based) and dialogue with the maker - Access control and governance of the ERP system in line with best practices -...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom Circle Group Full time

    Circle Group Job Opportunity:We are excited to announce a new job opening for an Information Assurance Specialist to join our team in Newcastle Upon Tyne. This is a full-time position, based 2-3 days on site and the remainder working from home.About the Role:In this critical role, you will be responsible for ensuring the confidentiality, integrity, and...


  • Newcastle Upon Tyne, United Kingdom NRG PLC Full time

    Are you an experienced CSM with hopes to climb the ladder to a possible CISO pathway? Are you looking to take charge of the daily running of a security function? Are you well vexed in the requirements for ISO27001 and SOCII certification and implementing the standards into a business? If so, then we may have the perfect role for you! **Key...