Skip to main content
Please wait, loading

Job summary

Main area
Cyber Risk and Assurance
Grade
Civil Service: Grade 7
Contract
Permanent
Hours
  • Full time
  • Part time
  • Job share
  • Flexible working
37.5 hours per week
Job ref
919-IS-60651878-EXT
Employer
UK Health Security Agency
Employer type
Public (Non NHS)
Site
London, Liverpool, Leeds, Birmingham
Town
London, Liverpool, Leeds, Birmingham
Salary
£51,824 - £65,089 per annum, pro rata
Closing
02/10/2024 23:59

Employer heading

UK Health Security Agency logo

Cyber Product/Supply Chain Assurance Lead

Civil Service: Grade 7

The United Kingdom Health Security Agency (UKHSA) is a system leader for health security; taking action internationally to strengthen global health security, providing trusted advice to government and the public and reducing inequalities in the way different communities experience and are impacted by infectious disease, environmental hazards, and other threats to health.

UKHSA’s remit, as an agency with a global-to-local reach, is to protect the health of the nation from infectious diseases and other external threats to health. As the nation’s expert national health security agency UKHSA will:

  • Prevent: anticipate threats to health and help build the nation’s readiness, defences and health security
  • Detect: use cutting edge environmental and biological surveillance to proactively detect and monitor infectious diseases and threats to health
  • Analyse: use world-class science and data analytics to assess and continually monitor threats to health, identifying how best to control and mitigate the risks
  • Respond: take rapid, collaborative and effective actions nationally and locally to mitigate threats to health when they materialise
  • Lead: lead strong and sustainable global, national, regional and local partnerships designed to save lives, protect the nation from public health threats and reduce inequalities.

Job overview

As part of its development and governance UKHSA is expanding the Cyber Security Division,  building on its capability to provide a critical function in the protection of the UKHSAs digital assets, working closely with wider UKHSA security teams  and stakeholders (Government Security Group, NCSC, Cabinet Office etc.) to build a resilient infrastructure, supporting the organisation in reaching its ambition to become a global leader for health security and becomes a critical component of our national security architecture.

This is an exciting opportunity to join the division in a specialist cyber assurance role. Reporting to the Head of Cyber Risk & Assurance, you will be responsible for the day-to-day management of cyber assurance activities, whilst reporting the cyber risk posture of the organisation to the Cyber Senior Leadership Team and internal stakeholders.

Main duties of the job

This is a challenging role where you will be expected to: 

  • Manage a team of cyber assurance professionals.
  • Continually develop and improve processes to provide assurance as to the cyber security of the UKHSA supply chain and associated products/services.
  • Provide pragmatic and balanced reporting, with an emphasis on identifying risks to the organisation posed by potential and current suppliers, their products and services.
  • Integrate into the cyber security area of business, and wider organisation, to identify opportunities, add value and promote the necessity of a robust and secure supply chain.
  • Engage colleagues in the wider cyber security team to ensure a consistent and joined up approach to delivery of services.
  • Manage the coordination of scheduled and reactive penetration testing.
  • On occasion, deputise for the Head of Cyber Risk and Assurance.

Working for our organisation

We pride ourselves as being an employer of choice, where Everyone Matters promoting equality of opportunity to actively encourage applications from everyone, including groups currently underrepresented in our workforce.   

UKHSA ethos is to be an inclusive organisation for all our staff and stakeholders. To create, nurture and sustain an inclusive culture, where differences drive innovative solutions to meet the needs of our workforce and wider communities. We do this through celebrating and protecting differences by removing barriers and promoting equity and equality of opportunity for all.  

Detailed job description and main responsibilities

The candidate must be comfortable to work flexibly and operate in a highly ambiguous environment while the Agency continues its transformation journey and defines its organisational culture. The ability to identify and understand challenges to find creative solutions will be critical as will strength in managing and building relationships across the organisation, undertaking effective collaboration at fast pace, both internally and externally to UKHSA. They will be expected to work on their own initiative but know when to seek direction or decision.

The candidate will be expected to engage various stakeholders across UKHSA to establish and manage cyber risk. In doing so, you will need to be analytical, pragmatic and innovative in developing and delivering effective cyber assurance activities across the organisation. 

The successful candidate will understand the requirements of corporate governance, the relationships between enabling functions and how they contribute to the wider organisational mission.

For a full list of the main duties and responsibilities of the role, please refer to the attached Job Description. 

 

Essential criteria 

You will be assessed on the below 4 essential criteria, which have been selected from the Job Description.

 

  • Knowledge and experience of SAAS security principles.
  • Proven cyber risk management and/or cyber security experience across broad range of areas in large complex organisations. This experience could have been gained from the public or private sectors.
  • An understanding of risk management methodologies.
  • A good understanding of cyber security and information security management systems.

 

Selection Process Details: 

This vacancy is using Success Profiles and will assess your Behaviours/Ability/ Experience/Technical skills. 

 Stage 1: Application & Sift  
 Success profiles

You will be required to complete an application form. You will be assessed on the above listed 4 essential criteria, and this will be in the form of a:  

  • CV/ Application form (Employer/ Activity history’ section on the application) 

  • 750 word Statement of Suitability.  

This should outline how your skills, experience, and knowledge, provide evidence of your suitability for the role, with reference to the essential criteria.  

 The CV / Application form and Statement of Suitability will be marked together . 

 If you are successful at this stage, you will progress to interview and assessment.  

Please do not exceed 750 wordsWe will not consider any words over and above this number. 

 Feedback will not be provided at this stage. 

 Stage 2: Interview (success profiles) 

 You will be invited to a (single) remote interview

Behaviours, technical and experience will be tested at interview. 

 There will be a Presentation. 

  The Behaviours tested during the interview stage will be:

 

  • Making Effective Decisions
  • Seeing the Big Picture
  •  Communicating and Influencing
  • Leadership
  • Working Together 
 

Once this job has closed, the job advert will no longer be available. You may want to save a copy for your records. 

Eligibility Criteria 

Open to all external applicants (anyone) from outside the Civil Service (including by definition internal applicants).  

Security Clearance Level Requirement  

Successful candidates must pass a disclosure and barring security check. 

The successful candidate once in post will be required to obtain Security Check (SC) clearance. 
 
For meaningful National Security Vetting checks to be carried out individuals need to have lived in the UK for a sufficient period of time. You should normally have been resident in the United Kingdom for the last 5  years as the role requires  Security Check (SC) clearance. UK residency less than the outlined periods may not necessarily bar you from gaining national security vetting and applicants should contact the Vacancy Holder / Recruiting Manager listed in the advert for further advice. 
 

Person specification

CV/Application Form and Statement of Suitability

Essential criteria
  • CV/Application Form and Statement of Suitability

Behaviours

Essential criteria
  • Seeing the Big Picture
  • Making Effective Decisions
  • Communicating and Influencing
  • Leadership
  • Working Together

Employer certification / accreditation badges

Purple SpaceApprenticeships logoNo smoking policyAge positiveImproving working livesMindful employer.  Being positive about mental health.Disability confident employerThe Employers Network for Equality & Inclusion (enei) is the UK's leading employer network covering all aspects of equality and inclusion issues in the workplace.Carer Confident -AccomplishedHappy to Talk Flexible Working

Documents to download

Apply online now

Further details / informal visits contact

Name
Irene Scahill
Job title
Resourcing Support
Email address
[email protected]
Apply online nowAlert me to similar vacancies