Cyber Security Specialist (Operational)

NICE - The National Institute for Health and Care Excellence

Manchester

On-site

GBP 60,000 - 85,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

NHS Pension
Flexible working
Blue Light Card discounts
27 days annual leave
Inclusive staff networks
Development opportunities

Job summary

The National Institute for Health and Care Excellence (NICE) is seeking a Cyber Security Specialist (Operational) to protect NICE's digital platforms, systems and data. You will investigate alerts, manage vulnerabilities, respond to incidents and support the cyber security posture across on-prem and cloud environments from our Manchester office.

You will work within a collaborative cyber security function, translating complex risks for both technical and non-technical stakeholders and ensuring

Qualifications

  • Extensive cyber security operations experience in complex enterprise environments.
  • Proven incident response, threat detection and vulnerability management expertise.
  • Strong ability to communicate risks clearly to technical and non-technical stakeholders.
  • Experience implementing and maintaining security tooling across on-prem and cloud.

Responsibilities

  • Act as a hands-on cyber security specialist, investigating alerts, responding to incidents and supporting day-to-day cyber resilience.
  • Configure, manage and maintain security tooling across on premise and cloud environments.
  • Carry out routine vulnerability assessments and horizon scanning to identify risks.
  • Serve as escalation point for complex security issues with practical solutions.
  • Support compliance with security standards (Cyber Essentials, ISO27001) with auditable records.
  • Communicate complex technical risks to technical and non-technical stakeholders.

Skills

Cyber security operations
Threat detection
Incident response
Vulnerability management
Security monitoring
Cyber risk reduction

Education

Master's degree or equivalent
FEDIP Senior Practitioner
ACSP
CISMP
SSCP

Tools

SIEM
EDR
XDR
SOAR
Vulnerability management platforms
Cloud security solutions
Identity and access management
Endpoint protection
Threat intelligence

Job description

Job summary

Do you want to do meaningful work that makes a genuine difference to society? Our main purpose here at The National Institute for Health and Care Excellence (NICE) is to improve health and wellbeing by putting science and evidence at the heart of health and care decision-making. As an organisation we all collaborate to achieve this goal by empowering our workforce to do great things!

Please note that this role may not be eligible for sponsorship under the Skilled Worker route. Please refer to the DirectGov website for more information on eligibility.

We reserve the right to close the advert early should we receive sufficient applications, so please don't delay your submission.

Please be aware interviews will be face to face in our Manchester Office.

Main duties of the job

As a Cyber Security Specialist (Operational), you will play a key hands on role in protecting NICE's digital platforms, systems, and data from cyber threats. Working as part of a collaborative cyber security function, you will investigate security alerts, manage vulnerabilities, respond to incidents and help ensure our services remain secure, resilient and compliant. The role combines technical expertise with clear communication, supporting both operational delivery and the continual improvement of NICE's cyber security posture.What the candidate will be expected to do / bring:

  • Act as a hands on cyber security specialist, investigating security alerts, responding to incidents and supporting day to day operational cyber resilience
  • Configure, manage and maintain security tooling and infrastructure across on premise and cloud environments, embedding secure by design principles
  • Carry out routine vulnerability assessments, threat analysis and horizon scanning to identify and mitigate emerging risks
  • Serve as a technical escalation point for complex security issues, contributing expert analysis and practical solutions
  • Support compliance with recognised security standards and frameworks (e.g. Cyber Essentials, ISO27001), maintaining clear and auditable records
  • Communicate complex technical risks and findings clearly to both technical and non technical stakeholders
About us

The Infrastructure, Cyber & IT Operations team plays a critical role in ensuring NICE's digital services are secure, resilient, and reliable. The team is responsible for safeguarding systems and information, supporting users across the organisation, and maintaining operational stability with minimal risk or disruption.

As part of this team, you will help protect nationally important digital services while enabling NICE to deliver trusted guidance and information to health and care users across England.

We are passionate and proud of the work we do and the impact we make. NICE offer:

  • Generous NHS Pension - Secure your future with one of the most rewarding pension schemes in the UK
  • Flexible working - Enjoy a healthy work-life balance with options like remote working, compressed hours and flexible start/finish times
  • Exclusive discounts - Save on shopping, dining and more with a Blue Light CardTime to recharge - Start with 27 days' annual leave plus bank holidays
  • Inclusive staff networks - Join supportive communities like Women in NICE, Race Equality Network, Disability Advocacy and NICE and Proud - we celebrate diversity
  • Tailored development - Grow your career with personalised learning and development opportunities
Job description
Job responsibilities

To be considered for this role, you should be able to particularly demonstrate the person specification criteria in the job advert in your application. However, applicants should be able to demonstrate all essential criteria through the entirety of the recruitment process to be considered for the job. Please see job description attached for full list of responsibilities.

Person Specification
Knowledge
Desirable
  • Knowledge of Microsoft Defender, Sentinel, including Kusto Query Language (KQL), threat hunting, analytics rule development, security monitoring, incident investigation and automation capabilities.
Education/Qualifications
Essential
  • Holds highly developed specialist knowledge and expertise acquired through master's degree level or equivalent qualification/experience. Additionally holds specialist knowledge of the relevant area(s) of expertise as outlined in the person specification, acquired through relevant practical experience and training/development
Education/Qualifications
Desirable
  • One or more of the following qualifications, or equivalent experience, is desirable for this role: FEDIP Senior Practitioner, Cyber Security Professional (ACSP) ,BCS Certificate in Information Security Management Principles (CISMP), SSCP Systems Security Certified Practitioner
Experience
Essential
  • Extensive technical expertise across cyber security operations, threat detection, incident response, vulnerability management, security monitoring, and cyber risk reduction within complex enterprise environments. Experience gained through roles such as Security Analyst, SOC Analyst, Cyber Security Engineer, Incident Responder, or similar technical cyber security positions.
Experience
Essential
  • Demonstrable experience as an individual contributor within a cyber security team, with clear evidence of personal ownership, technical decision-making, incident resolution, vulnerability remediation, and delivery of measurable security outcomes.
Skills/Knowledge
Essential
  • Extensive hands-on experience across cyber security operations, threat detection, incident response, vulnerability management, security monitoring, and cyber risk reduction within complex enterprise environments. Proven experience in implementing, configuring, maintaining, and optimising security technologies including SIEM, EDR, XDR, SOAR, vulnerability management platforms, cloud security solutions, identity and access management controls, endpoint protection, and threat intelligence capabilities. Skilled in cyber incident investigation, threat hunting, security architecture, infrastructure hardening, digital forensics, and the application of industry best practices, standards, and frameworks to strengthen organisational resilience, improve security posture, and support operational cyber security objectives.
Skills/Knowledge
Essential
  • Demonstrable hands-on experience securing, supporting, implementing, and improving cyber security controls across enterprises in Microsoft O365, Azure, AWS, and on-premises or cloud environments. Strong technical expertise in network security, cloud security, identity and access management, endpoint security, infrastructure hardening, vulnerability management, security monitoring, threat detection, and incident response. Candidates must be able to provide practical examples of how they have personally investigated security incidents, remediate vulnerabilities, implemented security controls, enhanced monitoring and detection capabilities, and applied risk-based decision making to identify, assess, and mitigate cyber security risks within live operational environments.
Person Specification
Knowledge
Desirable
  • Knowledge of Microsoft Defender, Sentinel, including Kusto Query Language (KQL), threat hunting, analytics rule development, security monitoring, incident investigation and automation capabilities.
Education/Qualifications
Essential
  • Holds highly developed specialist knowledge and expertise acquired through master's degree level or equivalent qualification/experience. Additionally holds specialist knowledge of the relevant area(s) of expertise as outlined in the person specification, acquired through relevant practical experience and training/development
Education/Qualifications
Desirable
  • One or more of the following qualifications, or equivalent experience, is desirable for this role: FEDIP Senior Practitioner, Cyber Security Professional (ACSP) ,BCS Certificate in Information Security Management Principles (CISMP), SSCP Systems Security Certified Practitioner
Experience
Essential
  • Extensive technical expertise across cyber security operations, threat detection, incident response, vulnerability management, security monitoring, and cyber risk reduction within complex enterprise environments. Experience gained through roles such as Security Analyst, SOC Analyst, Cyber Security Engineer, Incident Responder, or similar technical cyber security positions.
Experience
Essential
  • Demonstrable experience as an individual contributor within a cyber security team, with clear evidence of personal ownership, technical decision-making, incident resolution, vulnerability remediation, and delivery of measurable security outcomes.
Skills/Knowledge
Essential
  • Extensive hands-on experience across cyber security operations, threat detection, incident response, vulnerability management, security monitoring, and cyber risk reduction within complex enterprise environments. Proven experience in implementing, configuring, maintaining, and optimising security technologies including SIEM, EDR, XDR, SOAR, vulnerability management platforms, cloud security solutions, identity and access management controls, endpoint protection, and threat intelligence capabilities. Skilled in cyber incident investigation, threat hunting, security architecture, infrastructure hardening, digital forensics, and the application of industry best practices, standards, and frameworks to strengthen organisational resilience, improve security posture, and support operational cyber security objectives.
Skills/Knowledge
Essential
  • Demonstrable hands-on experience securing, supporting, implementing, and improving cyber security controls across enterprises in Microsoft O365, Azure, AWS, and on-premises or cloud environments. Strong technical expertise in network security, cloud security, identity and access management, endpoint security, infrastructure hardening, vulnerability management, security monitoring, threat detection, and incident response. Candidates must be able to provide practical examples of how they have personally investigated security incidents, remediate vulnerabilities, implemented security controls, enhanced monitoring and detection capabilities, and applied risk-based decision making to identify, assess, and mitigate cyber security risks within live operational environments.
Disclosure and Barring Service Check

This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.

Certificate of Sponsorship

Applications from job seekers who require current Skilled worker sponsorship to work in the UK are welcome and will be considered alongside all other applications. For further information visit the .

Employer details
Employer name

NICE - The National Institute for Health and Care Excellence

Address

3rd Floor, 3 Piccadilly Place

Manchester

M1 3BN

United Kingdom

Additional information
Disclosure and Barring Service Check

This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.

Certificate of Sponsorship

Applications from job seekers who require current Skilled worker sponsorship to work in the UK are welcome and will be considered alongside all other applications. For further information visit the .

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Specialist (Operational)
Cyber Security Specialist (Operational)

NHS • Manchester

On-site
GBP 60,000 - 90,000
NHS Pension
Flexible working
Remote working options
Cyber Security Specialist (Operational)
Cyber Security Specialist (Operational)

NICE - National Institute for Health and Care Excellence • Manchester

On-site
GBP 60,000 - 80,000
NHS Pension
Flexible working
Blue Light Card discounts
+3
Cyber Security Analyst (Security Advisor/Analyst)
Cyber Security Analyst (Security Advisor/Analyst)

NHS England • Exeter

On-site
GBP 45,000 - 70,000
RRP allowance (20% p.a.)
Security Officer
Security Officer

Cardiff and Vale University Health Board • Leeds

On-site
GBP 52,000 - 61,000
RRP 10% annual
People/Employee Relations and Change Specialist
People/Employee Relations and Change Specialist

NHS • Manchester

On-site
GBP 42,000 - 64,000
NHS pension
Remote work
Annual leave 27 days
+3
Deputy Director of Cyber and IT Operations
Deputy Director of Cyber and IT Operations

University Hospitals Sussex NHS Foundation Trust • Worthing

Hybrid
GBP 113,000 - 130,000
Hybrid working
Wellbeing programme for staff
Flexible working
+1
Cloud Security Engineer
Cloud Security Engineer

United States Digital Space LLC • Manchester

On-site
GBP 50,000 - 80,000
Private medical insurance
Pension contributions
Equity participation
Professional Sevices Engineer (Implementation Engineer)
Professional Sevices Engineer (Implementation Engineer)

Nice • Southampton

On-site
GBP 50,000 - 75,000
Security analyst - Sector security
Security analyst - Sector security

Jisc • Greater London, West of England, Manchester, Oxford

Hybrid
GBP 60,000 - 90,000
Flexible work pattern
31 days annual leave
Pension schemes
Band 7 Nurse Manager
Band 7 Nurse Manager

Ministry Of Defence (Defence Medical Services) • Aldershot, Minley

On-site
GBP 46,000 - 58,000
NHS pension scheme
Inclusive working environment
Learning and development opportunities
+2