Cyber Security Lead
Job in
Manchester, Greater Manchester, M9, England, UK
Listing for:
The Christie NHS FT
Full Time
position
Listed on 2026-06-13
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Project Manager
Salary/Wage Range or Industry Benchmark: 80000 - 100000 GBP Yearly
GBP
80000.00
100000.00
YEAR
Job Description & How to Apply Below
Job description
As Cyber Security Lead (Grade 8b subject to banding), you will provide strategic leadership, governance and assurance for cyber security across The Christie NHS Foundation Trust, acting with delegated authority from the CIO and SIRO. You will ensure cyber security enables safe, resilient, and trustworthy digital services that protect patient information and support clinical care, aligned to the Trust and Digital Strategies and national NHS cyber priorities.
You will oversee cyber security services delivered by internal teams and third‑party suppliers, maintain a clear view of cyber risk exposure, and provide high‑quality reporting and escalation to senior governance and Board‑level forums.
Develop, own and maintain the Trust Cyber Security Strategy and Roadmap, aligned to Trust objectives and national NHS cyber policy.
Main duties of the job Strategic Cyber Security Leadership
Act as the Trust's senior authority on cyber security risk, providing expert advice, assurance and appropriate challenge to executive and Board‑level forums.Translate national requirements and frameworks (including DSPT & the NCSC Cyber Assessment Framework) into pragmatic, risk‑based controls & improvement plans.Establish and maintain robust governance, policies, standards and assurance processes; lead the annual Data Security and Protection Toolkit submission.Maintain oversight of the cyber security risk register to ensure risks are assessed, owned, mitigated and escalated appropriately.Provide high‑quality cyber risk and assurance reporting to Digital governance groups, Audit/Risk & Assurance Committees & the Trust Board.Provide strategic oversight of cyber operations (monitoring, incident response, vulnerability management, identity & access management) delivered internally & via third parties; assure the effectiveness of managed services.Embed secure‑by‑design principles across architecture, procurement and project delivery; provide cyber input to high‑risk initiatives including risk assessments, threat modelling & assurance reviews.Promote a positive security culture through engagement & awareness activities across clinical, operational and corporate teams.Contribute to business continuity, disaster recovery & cyber resilience planning, including exercises, testing & post‑incident learning; participate in out‑of‑hours incident response where required.Cyber Governance, Risk and Assurance
Establish and maintain a robust cyber security governance framework, including policies, standards and assurance processes.Lead delivery and annual submission of the Data Security and Protection Toolkit (DSPT), incorporating NCSC CAF‑aligned assurance where applicable.Maintain oversight of the cyber security risk register, ensuring risks are assessed, owned, mitigated and escalated appropriately.Provide high‑quality cyber risk and assurance reporting to Digital governance groups, Audit, Risk and Assurance Committees and on occasion to the Trust Board.Lead the cyber security resources and services, providing strategic leadership and oversight of services, resources and contracts delivered internally or through third‑party suppliers.Ensure cyber security investments and services deliver value for money and are aligned to Trust's risk appetite and priorities.Contribute to Trust‑level financial and capacity planning to ensure cybersecurity considerations are embedded in digital investment decisions.Oversight of Cyber Security Operations
Provide strategic oversight of cyber security operations, including security monitoring, incident response, vulnerability management and identity and access management.Assure the effectiveness of third‑party and managed cybersecurity services.Support coordinated response to cybersecurity incidents, working with the SIRO, Digital leadership and external partners.Secure Design and Change Enablement
Ensure secure‑by‑design principles are embedded into system architecture, procurement and project delivery.Provide expert cyber input to high‑risk initiatives, including risk assessments, threat modelling and assurance reviews.Enable delivery of digital change whilst maintaining appropriate cyber…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: