Job summary
- Main area
- Cyber Security
- Grade
- Band 6
- Contract
- Permanent
- Hours
- Full time - 37.5 hours per week
- Job ref
- 028-AC193-0825
- Employer
- Public Health Wales NHS Trust
- Employer type
- NHS
- Site
- Capital Quarter 2
- Town
- Cardiff
- Salary
- £39,263 - £47,280 per annum
- Salary period
- Yearly
- Closing
- 25/08/2025 23:59
- Interview date
- 11/09/2025
Employer heading

Cyber Security Technical Specialist
Band 6
Welcome to Public Health Wales, the national public health organisation for Wales
Our vision is Working to achieve a healthier future for Wales
To find out more visit Public Health Wales and watch this video about our Strategic Plan
Working together, with trust and respect, to make a difference
Follow us on Facebook, LinkedIn, Twitter and Instagram
Applicants are invited to apply in Welsh, any application submitted in Welsh will not be treated less favourably than an application made in English. To support our all Wales service, we particularly welcome applications from Welsh speakers.
Job overview
Are you an experienced Cyber Security specialist who is dedicated to ensuring that our public services are safe and secure? Do you enjoy collaborating and implementing across different functions and divisions? The Cyber Security Technical Specialist is a permanent role at Public Health Wales that will help us deliver our Digital and Data Strategy.
Full time permanent.
Closing date: 25th August 2025
Interview: The interview will take place virtually.
A degree in IT or equivalent experience, along with previous work in cyber security, is essential. You must also be prepared to work from our Cardiff location when required, including on short notice.
If you’d like to discuss the role further, please contact Dennis Jones, Principal Data Security Specialist: [email protected]
Main duties of the job
This post plays a critical role in protecting and securing Public Health Wales’ information and digital assets from cyber threats. The Cyber Security Technical Specialist operates with a degree of autonomy while receiving guidance from senior cyber security staff, playing a key role in implementing and maintaining security controls across the organisation. The role involves supporting and leading efforts related to cyber security protocols, conducting risk assessments, and responding to incidents. The specialist is responsible for developing, maintaining, and supporting cyber security systems in line with Public Health Wales’ operational requirements. They are expected to participate in early/late shift rotations and the on-call rota. A crucial part of the role includes staying current with emerging security technologies and threats, conducting research, and evaluating how to manage new risks. The specialist also leads assurance assessments to ensure the effectiveness of security controls and compliance with relevant laws, regulations, and industry best practices. Additionally, the role encompasses continuous monitoring, threat detection, and incident investigation to protect organisational assets, as well as leading vulnerability management activities such as scanning, assessment, remediation coordination, and tracking of security weaknesses. |
Working for our organisation
We are Public Health Wales – the national public health agency in Wales. Our purpose is ‘Working together for a healthier Wales'. We exist to help everyone in Wales live longer, healthier, happier lives. Together with our partners, we work to increase healthy life expectancy, improve health and well-being, and reduce inequalities for everyone in Wales, now and for future generations.
Our teams work to prevent disease, protect health, and provide leadership, specialist services and public health expertise. We are the leading source of public health information, research and innovation in Wales. In a world facing complex health challenges, our work has never been so important.
We are guided by our Values, 'Working together, with trust and respect, to make a difference'. We are committed to building an inclusive workplace that values equality and diversity. We welcome applications which represent the rich diversity of the communities we serve and are supportive of flexible working arrangements, including part time roles and job sharing.
To find out more about working for us and the benefits we offer please visit https://phw.nhs.wales/careers/
For guidance on the application process, please visit https://phw.nhs.wales/working-for-us/applicant-information-and-guidance/
Detailed job description and main responsibilities
You will be able to find a full Job description and Person Specification attached within the supporting documents or please click "Apply now" to view on Trac.
The ability to speak Welsh is desirable for this post; Welsh and/or English speakers are equally welcome to apply.
Person specification
Qualifications and Knowledge
Essential criteria
- • Degree-level qualification in a relevant IT subject or equivalent experience. .
- • Evidence of continuing professional development.
- • Understanding of Cyber Security best practices, standards, certifications, and terminology.
- • Awareness of national and international cyber security regulations, standards and frameworks (e.g. NIS Regulations, ISO 27001, NIST)
Desirable criteria
- • Holds a relevant cyber security certification (e.g CompTIA Security+, SSCP).
- • Registered with a relevant informatics professional body.
- • Experience applying Cyber Security in a healthcare environment.
- • Understanding of NHS standards and legal requirements related to Information Governance and Security.
- • In-depth knowledge of network technologies
Experience
Essential criteria
- • Demonstrated experience in cyber security role(s).
- • Good understanding and experience with application and network security.
- • Hands-on experience with SIEM (Security Information and Event Management) systems and vulnerability scanning tools
- • Involvement in creating training materials, including phishing simulation exercises.
- . • Experience in providing technical/ security support.
Desirable criteria
- • Cloud Security experience (e.g Azure, AWS, GCP)
- • Relevant experience working in a Cyber Security role in a healthcare environment
- • Experience documenting procedures, policies and standards.
- • Experience of taking a lead role in developing and implementing Network/Security related systems and services
Skills and Attributes
Essential criteria
- • Good communication skills, including the ability to explain complex ideas to non-technical staff.
- • Able to provide guidance and support to staff.
- • Ability to challenge poor behaviour constructively.
- • Effective team member within a multi-disciplinary environment.
- • Ability to analyse and resolve complex IT issues.
- • Ability to learn new technologies with minimal supervision.
- • Pragmatic in balancing security and business needs. . • Experience working with third parties and suppliers to establish project assurance.
- • Ability to work on own initiative
- • Experience working with third parties and suppliers to establish project assurance.
Desirable criteria
- • Welsh Language Skills
Other
Essential criteria
- • Ability to travel between sites in a timely manner to meet the needs of the service
- • Ability to travel and work away from base.
- • Able to periodically work out of hours or at weekends when required.
- • Able to participate in on-call rota.
Applicant requirements
Welsh language skills are desirable
Documents to download
Further details / informal visits contact
- Name
- Dennis Jones
- Job title
- Principal Data Security Specialist
- Email address
- [email protected]
- Additional information
Austin Rajul Senior Cyber Security Engineer
List jobs with Public Health Wales NHS Trust in Administrative Services or all sectors