Cyber Security Analyst (Security Advisor/Analyst)
At a glance
- Band
- Band 7
- Contract
- Permanent
- Pattern
- Full-time, Part-time, Job share, Flexible working
- Posted
- 18/09/2026
- Closes
- 04/10/2026
Sponsorship verdict
This contract type is not eligible for Skilled Worker sponsorship.
NHS Trusts cannot issue a Certificate of Sponsorship for part-time, bank, locum, zero-hours, job-share or short fixed-term (under 12 months) contracts under current Home Office rules. This applies even when the wider Trust holds a Skilled Worker licence.
Role summary
This role is a Cyber Security Analyst position within the Security Operations pillar of the Cyber Security Operations Centre (CSOC) at NHS England. The primary focus is on providing second-line cloud security analytics, monitoring, and incident response services across cloud-hosted environments. The analyst will support senior analysts, act as an escalation point for junior analysts, and contribute to improving cloud security posture. The role involves researching emerging threats and using advanced analytic tools to identify suspicious activity.
Essential criteria
- Working knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilise related applications to protect organisational networks from cyber risks.
- Proven knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.
- Proven knowledge of techniques, approaches and processes of digital threats; ability to detect, monitor, analyse and prevent digital threats.
Desirable criteria
- Working knowledge of methods and processes to monitor, analyse and respond to network attacks, intrusions or any unauthorised actions; ability to use techniques and tools to perform network defence.
- Working knowledge of modules, processes and technologies of Information Security Operation Centre (ISOC); ability to detect, response and utilise related platform and applications to perform cyber security initiatives.
- Working knowledge of concept, issues and techniques of endpoint security; ability to ensure security compliance of endpoint infrastructure in various circumstances.
- Qualifiations
- Bachelor's Degree in Cyber Security or a relevant subject, or equivalent level of experience.
- Working knowledge of concept, procedures and processes of Security Information and Event Management (SIEM); ability to utilise related applications to protect organisational networks from cyber risks.
- Proven knowledge of tools, techniques and processes of intrusion detection and prevention; ability to detect, resolve and prevent intrusion behaviours to protect organisational networks.
- Proven knowledge of techniques, approaches and processes of digital threats; ability to detect, monitor, analyse and prevent digital threats.
- Working knowledge of methods and processes to monitor, analyse and respond to network attacks, intrusions or any unauthorised actions; ability to use techniques and tools to perform network defence.
- Working knowledge of modules, processes and technologies of Information Security Operation Centre (ISOC); ability to detect, response and utilise related platform and applications to perform cyber security initiatives.
- Working knowledge of concept, issues and techniques of endpoint security; ability to ensure security compliance of endpoint infrastructure in various circumstances.
- Qualifiations
- Bachelor's Degree in Cyber Security or a relevant subject, or equivalent level of experience.
Useful to know
Agenda for Change 2024/25 pays Band 7 at £46,148 – £52,809 a year, across England.
This advert: £59,264 – £67,818 — outside the standard scale; check for HCAS/London weighting.
Posted 1d ago · Closes in 16d
Plenty of time to prepare a strong application.
Full advert · preview
NHS England
Cyber Security Analyst (Security Advisor/Analyst)
The closing date is 04 October 2026
Job summary
Cyber Operations purpose is to support safe care and build public trust by building NHS England's cyber resilience and enabling the wider health system to be cyber resilient, supporting Transformation Directorate's purpose of delivering the best care and outcomes for the NHS.
The Cyber Operations sub-directorate consists of 4 operational areas:
- Cyber Security Operations Unit (CSOU) - SIO
- Cyber Delivery Unit (CDU).
- Cyber Improvement Programme.
- Chief Information Security Office Function (CISO)
The Cyber Security Analyst (Cloud) role is within the Security Operations pillar of the CSOC (Cyber Security Operations Centre), providing second line cloud security analytics, monitoring and incident response services across cloud-hosted environments and platforms.
Main duties of the job
- Deputise for Senior Analysts in their absence, supporting oversight of cloud security monitoring and response activity.
- Act as an escalation point for Tier 1 Junior Analysts for cloud security incidents, alerts and investigations.
- Offer mentorship and guidance to Tier 1 Junior Analysts to build capability in cloud threat monitoring, investigation and response.
- Keep up to date with the latest security and cloud technology developments, including researchin
Join the community to read the full pack, responsibilities and person-specification in one place.
Your seat is reserved — activate it
CareerHive is included with your CareerHive Skool community membership. If you haven't claimed your account yet, join the community (or sign in with the same email you joined with) to unlock the full advert, the apply link, HiveMind AI interview & application suite, your private vault, and daily sponsorship alerts.