Enable job alerts via email!

Associate Information Security Practitioner | Moorfields Eye Hospital NHS Foundation Trust

Moorfields Eye Hospital NHS Foundation Trust

City Of London

On-site

GBP 35,000 - 45,000

Full time

23 days ago

Job summary

A leading healthcare organization in the United Kingdom is seeking an Associate Information Security Practitioner to support various information security operations. Responsibilities include managing incident lifecycles, conducting assessments, and developing security policies. Ideal candidates will have a good understanding of cloud operations and risk management. This role offers various benefits including salary supplements and opportunities for learning and development.

Benefits

Salary including High‑Cost Area Supplement
Opportunity to join the NHS Pension Scheme
Free 24/7 independent counselling service
Learning and development opportunities
Easy and quick transport links
Attractive benefits and discounts
Free Pilates classes
Flexible working friendly organisation

Qualifications

  • Experience in information security practices and incident management.
  • Ability to contribute to risk management activities and policies.
  • Understanding of cloud technologies and infrastructure operations.

Responsibilities

  • Contribute to operational support of information security solutions.
  • Manage incident lifecycle for cyber security events.
  • Undertake Information Security Assessment activities.

Skills

Cloud operations
Network security and operations
Incident management
Risk management
Job description

The Associate Information Security Practitioner role is part of the Moorfields Information Security Team. The team ensures that our systems and data are safe, secure, and resilient – so that we can focus on delivering high‑quality, patient‑centred care and are trusted by our patients, service users and staff.

Responsibilities
  • Contribute to operational support of information security solutions and services
  • Engage with our third‑party provision of information security service
  • Contribute information security expertise to projects and operational services
  • Support assurance activities and the improvement of security and resilience of our organisational infrastructure
  • Be proactive in identifying problems and translating these into non‑technical descriptions that can be widely understood
Key Areas of Expertise
  • Cloud operations
  • Domain directory services/IAM
  • Infrastructure operations
  • End user device management
  • Network security and operations
  • Security architecture
Information Security Assessment Activities
  • Undertake Information Security Assessment activities, including supply chain / 3rd party assessments following National Cyber Security Centre evaluation best practices for cloud and on premise technologies
Monitoring Practices
  • Monitoring practices including key performance indicators on security enforcing tools such as anti‑virus, patching, and driving security posture improvements
Technical Audit Activities
  • Technical audit activities included within vulnerability management including internal scans and external security & penetration tests, forensic audits, or related investigations. This includes the ability to ensure remediation of findings are handled and fed into continuous service improvement activities
Incident Management
  • Incident management of cyber security events of all severities, throughout the incident lifecycle
Business Continuity
  • Develop, maintain, and improve data and technology Business Continuity & Disaster Recovery Plans that enable us to respond to and recover from events
Data Protection
  • Support information gathering and creating supporting narrative / recommendations to ensure security of data through the annual Data Security Protection Toolkit cycle
  • Provide advice and expert knowledge to projects / programmes / operational services to ensure that information systems are designed to meet data protection requirements
Risk Management
  • Risk management activities such as maintenance of the risk register, identification and management of risk, escalations, and using risk to drive improvements
Policies and Security Awareness
  • Contribute to the development of the Trust information Security policy framework, considering regional and national policies and practices
  • Apply policy to working practices and procedures, and guide colleagues towards information security policy
Benefits
  • Salary including High‑Cost Area Supplement
  • Opportunity to join the NHS Pension Scheme
  • Free 24/7 independent counselling service
  • Learning and development opportunities
  • Easy and quick transport links
  • A range of attractive benefits and discounts
  • Access to Blue Light Card and other NHS Discount Schemes
  • Free Pilates classes
  • Full support and training to develop your skills
  • Flexible working friendly organisation

This advert closes on Sunday 26 Oct 2025

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.