NHS England

Senior Cyber Security Advisor

The closing date is 28 August 2025

Job summary

Are you a self-motivated cyber security professional with sharp situational judgement, a growth mindset, and a proven ability to navigate complex technical challenges? Do you thrive in high-impact environments where your work directly supports mission critical systems and healthcare delivery?

NHS England's CISO Portfolio Office (CPO) is seeking an exceptional individual to join our industry-leading cyber security function. Reporting directly to the Deputy Chief Information Security Officer, you will lead and deliver a diverse range of innovative and high-profile technical projects across the organisation, with the opportunity to directly influence key initiatives.

The CISO team at NHS England has received national and international recognition from the National Cyber Security Centre (NCSC), Gartner, and other leading authorities, for its pioneering work in areas such as risk remediation, quantum computing, and third-party risk management.

At NHS England, your work will have direct impact on the availability and security of systems relied upon by thousands of clinicians and millions of patients across the country. You will be joining a forward-thinking, inclusive, and collaborative cyber security team that is pushing boundaries and shaping the future of public sector security innovation.

Main duties of the job

As Senior Security Advisor within the CPO, you will:

  • Act as the Deputy CISO's technical subject matter expert across a portfolio of strategic cyber initiatives.
  • Lead and drive the delivery of key innovation programmes, including those focused on quantum computing, data-led security, and the CISO Cyber Resilience Programme.
  • Collaborate closely with delivery, programme, and policy colleagues to ensure that all initiatives are technically robust, aligned to strategic objectives, and enable secure, resilient healthcare operations

About us

The NHS England board have set out the top-level purpose for the new organisation to lead the NHS in England to deliver high-quality services for all, which will inform the detailed design work and we will achieve this purpose by:

  • Enabling local systems and providers to improve the health of their people and patients and reduce health inequalities.
  • Making the NHS a great place to work, where our people can make a difference and achieve their potential.
  • Working collaboratively to ensure our healthcare workforce has the right knowledge, skills, values and behaviours to deliver accessible, compassionate care
  • Optimising the use of digital technology, research, and innovation
  • Delivering value for money.

If you would like to know more or require further information, please visithttps://www.england.nhs.uk/.

Colleagues with a contractual office base are expected to spend, on average, at least 40% of their time working in-person.

Staff recruited from outside the NHS will usually be appointed at the bottom of the pay band.

NHS England hold a Sponsor Licence; this means that we may be able to sponsor you providing the Home Office requirements are met. To be eligible for sponsorship through the Skilled Worker route you'll usually need to be paid the 'standard' salary rate of at least £38,700 per year, or the 'going rate' for your job, whichever is higher. You can find more information on the Government website.

Details

Date posted

14 August 2025

Pay scheme

Agenda for change

Band

Band 8a

Salary

£66,828 to £75,218 a year (exclusive of HCAS). Includes a RRP payment of 20%.

Contract

Fixed term

Duration

14 months

Working pattern

Full-time

Reference number

990-TD-14983-E

Job locations

Any NHSE office

Leeds/London/Exeter: Other locations could be considered

LS1 4AP


Job description

Job responsibilities

Please see the attached Job Description and Person Specification for more information about the role and responsibilities. Please ensure your supporting statement includes demonstratable evidence and specific examples on how you meet the criteria for each of the key skills specified. This will be used in both the shortlisting and interview processes

We are looking for a dynamic individual with:

  • Excellent situational judgement and a pragmatic, solutions-focused approach to complex technical challenges.
  • Strong appreciation of broader business disciplines such as project management, finance, commercial operations, or experience transitioning from one of these into cyber security.
  • Confidence in engaging and influencing stakeholders at all levels, translating technical concepts into plain English and articulating the importance of cyber security in enabling patient care and operational continuity.
  • A growth mindset, with the initiative to seek out knowledge, collaborate effectively, and drive outcomes even in the face of ambiguity.

Desirable Experience

  • Experience delivering technical projects within a cyber security, engineering, digital, or critical infrastructure context.
  • Familiarity with NHS, public sector, or regulated environments is advantageous but not essential.
  • Understanding of how businesses track progress, report on key success metrics, and make evidence-based decisions.

Important: Please be aware there are residency requirements you need to meet:

All NHS England Cyber Security personnel must hold Security Clearance level as a minimum. To meet National Security Vetting requirements, SC clearances require 5 years continuous UK residency. In certain cases, this can be reduced to three years continuous UK residency, with additional overseas checks for the previous two years. Candidates who were posted abroad for service with HM Government, Armed Forces or within a UK government role - will still be considered.Please make sure you meet these requirements before applying for this role. You dont need to have SC already, however, failure to achieve the requirements for SC after offer will result in the job offer being withdrawn. For further advice please check https://www.gov.uk/government/publications/united-kingdom-security-vetting-clearance-levels/national-security-vetting-clearance-levels#security-check-sc

The post of Senior Security Advisor has been awarded a Recruitment and Retention Premia (RRP) in response to current labour market conditions. In recognition of this, the role attracts an additional monthly RRP payment equal to 20% per annum.Please be aware that RRP is non contractual and subject to review.

Please be aware that should you be successful in this position, you will be hired to the job title of Senior Security Advisor.

Please note that the reason for the fixed term of this contract isshort term vacancy

If you like what you have read and think you have the skills and experience, we need then don't delay, apply today! We get lots of applications for our roles and so we sometimes have to close our posts early. Don't miss out!

Secondment

Applicants from within the NHS will be offered on a secondment basis only, agreement should be obtained from their employer prior to submitting the application.

Job description

Job responsibilities

Please see the attached Job Description and Person Specification for more information about the role and responsibilities. Please ensure your supporting statement includes demonstratable evidence and specific examples on how you meet the criteria for each of the key skills specified. This will be used in both the shortlisting and interview processes

We are looking for a dynamic individual with:

  • Excellent situational judgement and a pragmatic, solutions-focused approach to complex technical challenges.
  • Strong appreciation of broader business disciplines such as project management, finance, commercial operations, or experience transitioning from one of these into cyber security.
  • Confidence in engaging and influencing stakeholders at all levels, translating technical concepts into plain English and articulating the importance of cyber security in enabling patient care and operational continuity.
  • A growth mindset, with the initiative to seek out knowledge, collaborate effectively, and drive outcomes even in the face of ambiguity.

Desirable Experience

  • Experience delivering technical projects within a cyber security, engineering, digital, or critical infrastructure context.
  • Familiarity with NHS, public sector, or regulated environments is advantageous but not essential.
  • Understanding of how businesses track progress, report on key success metrics, and make evidence-based decisions.

Important: Please be aware there are residency requirements you need to meet:

All NHS England Cyber Security personnel must hold Security Clearance level as a minimum. To meet National Security Vetting requirements, SC clearances require 5 years continuous UK residency. In certain cases, this can be reduced to three years continuous UK residency, with additional overseas checks for the previous two years. Candidates who were posted abroad for service with HM Government, Armed Forces or within a UK government role - will still be considered.Please make sure you meet these requirements before applying for this role. You dont need to have SC already, however, failure to achieve the requirements for SC after offer will result in the job offer being withdrawn. For further advice please check https://www.gov.uk/government/publications/united-kingdom-security-vetting-clearance-levels/national-security-vetting-clearance-levels#security-check-sc

The post of Senior Security Advisor has been awarded a Recruitment and Retention Premia (RRP) in response to current labour market conditions. In recognition of this, the role attracts an additional monthly RRP payment equal to 20% per annum.Please be aware that RRP is non contractual and subject to review.

Please be aware that should you be successful in this position, you will be hired to the job title of Senior Security Advisor.

Please note that the reason for the fixed term of this contract isshort term vacancy

If you like what you have read and think you have the skills and experience, we need then don't delay, apply today! We get lots of applications for our roles and so we sometimes have to close our posts early. Don't miss out!

Secondment

Applicants from within the NHS will be offered on a secondment basis only, agreement should be obtained from their employer prior to submitting the application.

Person Specification

Knowledge

Essential

  • Demonstrable knowledge of and the ability to protect information and information systems while ensuring their confidentiality, integrity and availability.

Desirable

  • Familiarity with NHS, public sector, or regulated environments.
  • Understanding of how businesses track progress, report on key success metrics, and make evidence-based decisions.

Skills and Experience

Essential

  • Proven knowledge of technologies and technology-based solutions dealing with information security issues; ability to apply these in protecting information security across the organisation.

Desirable

  • Experience delivering technical projects within a cyber security, engineering, digital, or critical infrastructure context.

Qualifications

Essential

  • Masters degree in cyber security/ engineering/ computer science, or equivalent experience.
Person Specification

Knowledge

Essential

  • Demonstrable knowledge of and the ability to protect information and information systems while ensuring their confidentiality, integrity and availability.

Desirable

  • Familiarity with NHS, public sector, or regulated environments.
  • Understanding of how businesses track progress, report on key success metrics, and make evidence-based decisions.

Skills and Experience

Essential

  • Proven knowledge of technologies and technology-based solutions dealing with information security issues; ability to apply these in protecting information security across the organisation.

Desirable

  • Experience delivering technical projects within a cyber security, engineering, digital, or critical infrastructure context.

Qualifications

Essential

  • Masters degree in cyber security/ engineering/ computer science, or equivalent experience.

Disclosure and Barring Service Check

This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.

Employer details

Employer name

NHS England

Address

Any NHSE office

Leeds/London/Exeter: Other locations could be considered

LS1 4AP


Employer's website

https://www.england.nhs.uk/about/working-for/ (Opens in a new tab)


Employer details

Employer name

NHS England

Address

Any NHSE office

Leeds/London/Exeter: Other locations could be considered

LS1 4AP


Employer's website

https://www.england.nhs.uk/about/working-for/ (Opens in a new tab)


Employer contact details

For questions about the job, contact:

Deputy Director of Security

Dulcie Herreros

england.cyberoperationsrecruitment@nhs.net

Details

Date posted

14 August 2025

Pay scheme

Agenda for change

Band

Band 8a

Salary

£66,828 to £75,218 a year (exclusive of HCAS). Includes a RRP payment of 20%.

Contract

Fixed term

Duration

14 months

Working pattern

Full-time

Reference number

990-TD-14983-E

Job locations

Any NHSE office

Leeds/London/Exeter: Other locations could be considered

LS1 4AP


Supporting documents

Privacy notice

NHS England's privacy notice (opens in a new tab)