
Enable job alerts via email!
Generate a tailored resume in minutes
Land an interview and earn more. Learn more
A major health body in Cardiff seeks a Compliance Manager for the NHS Wales Cyber Resilience Unit. Your role will ensure compliance and reporting standards across NHS Wales, focusing on information security and risk management. Candidates should possess relevant qualifications and experience in cyber security compliance auditing, alongside leadership skills. Benefits include flexible working, competitive salary, and career development opportunities.
An exciting opportunity has arisen to join the NHS Wales Cyber Resilience Unit as aCompliance Manager. We are looking for someone with a proven background in Information/Cyber security, a flexible 'can do' attitude and approach to work and the ability toprovideadvice andassurance that security riskacross NHS Walesisbeingmanagedappropriately.
Whoarethe CRU?
The NHS Wales Cyber Resilience Unit (CRU),is an independent team hosted by Digital Health and Care Wales (DHCW).It'score purpose is to increase the security and resiliency of information systems across NHS Wales.
The CRU has been delegated responsibility by the WelshGovernmentto leadtheimplementation and monitoringofcompliance with the Network and Information Systems Regulations (NIS)across the NHS in Wales.
Whatyou'llbe doing
The role of the Compliance Manager is to provide direction to the CRU team and ensure its compliance and incident reporting activities across NHS Wales are of an excellent standardin order toestablishthe CRU as world-class national service.
The Compliance Manager willbe responsible forensuring that incident reporting and auditing process are carried out in a consistent,conciseand professional manner,in accordance withcyber security legislation such as the NIS regulations, best practice and Welsh Government requirements.
Please see the attached Job Description for a more complete picture of the post.
As a Compliance Manager, you will:
Manage the CRU auditing and reporting processes based on new and updated regulation.
Lead on Cyber Resiliency Unit audits, and support CRU team members in conducting audits, asrequired.
Helpestablishthe reputation of the CRU as a world-class national service.
Develop a consistent and concise report template for reporting to NHS Wales organisations and Welsh Government.
Develop dashboards to present reports and KPIs to Management, NHS Walesorganisationsand Welsh Government.
Review and quality assess reports produced by CRU before distribution.
Present reports asrequiredto Management, NHS Walesorganisationsand Welsh Government.
Advise NHS Wales organisations on how to improve their compliance status and security posture based on CAF audit results.
Work with NHS Wales organisations and Welsh Government to further improve the auditing process and reporting structure.
The ability to speak Welsh is desirable for this post; English and/or Welsh speakers are equally welcome to apply.
Digital Health and Care Wales (DHCW) is an expert national body and part of NHS Wales. We work in partnership with NHS Wales colleagues and other key stakeholders to provide national digital and data services which support the delivery of health and social care in Wales. Modern health and care services depend on good digital tools, data and information. DHCW runs or works with more than 100 services and delivers major national digital transformation programmes to support this. In addition, DHCW provides expert advice in relation to cyber security and information governance. We give frontline staff the digital tools which help them provide safer and more efficient care. We are also giving patients and the public digital tools to better manage their own health and wellbeing, empowering people to live healthier lives. We put people at the heart of what we do, working to the highest standards to deliver quality and make digital a force for good in health and care.
Working for DHCW offers lots of employee benefits, including flexible working, a competitive salary, 28 days of annual leave plus Bank Holidays and opportunities for career development. We are committed to recognising and celebrating our staff as the most valuable part of our organisation.
Whatwe arelooking for?
A Compliance Managerin cyber resiliencewillhold a Bachelors Honours degree, preferablyBusiness,ICT or Cyber Security,and hold professional Information Systems certification such as CISA, CIS, CISSP orQiCA, or significant relevant experience whichdemonstratesequivalent technical knowledge, or CISA exam passed and progressing towards experience requirements.
Candidates will have a broad level of knowledge gained throughcontinuous professional development,trainingandpractical experience of working at this level, across the range of work ICT and information security procedures and practices. The following would be an advantage:
Excellent knowledge of Cyber Security legislation such as NIS and NIS2 Directives.
A deep understanding of the NCSC Cyber Assessment Framework (CAF) and/or other frameworks.
Theoretical and specialist knowledge, gained with the following:
Recognised qualification in Management or Leadership.
Relevant certification in security auditing (e.g. ISCA CISA, ISO 27001 Auditor).
Knowledge of NHS Wales or the Health sector.
There will be a requirement to travel throughout Wales between sites, as required by the job and the ability to speak Welsh is desirable for this post; Welsh and/or English speakers are equally welcome to apply.
How to Apply:
Please send CVs and letters of interest todhcw.recruitment@wales.nhs.uk by midnight 11/01/2024
If you have any questionsregardingthe application process or if yourequireanyassistancesubmittingyour application, please contact:
dhcw.recruitment@wales.nhs.uk
This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.