Cyber Security Specialist

Company: Cyfoeth Naturiol Cymru / Natural Resources Wales
Apply for the Cyber Security Specialist
Location: Manchester
Job Description:

As a Cyber Security Specialist, you will play a vital role in safeguarding Natural Resources Wales’ digital infrastructure, systems, and data. You will proactively identify, assess and mitigate cyber threats to ensure the organisation remains resilient in an evolving risk landscape. Your responsibilities will include implementing and maintaining robust cyber security controls, ensuring compliance with key legislation and standards such as NCSC guidance, ISO 27001 and GDPR, and supporting the delivery of NRW’s cyber resilience strategy across the organisation and with external partners.

What You Will Do

  • Monitor security alerts and threat intelligence feeds to detect and respond to cyber incidents.
  • Lead or support incident response activities, including investigation, containment, eradication and recovery.
  • Manage and maintain security tools such as Security Information and Event Management (SIEM), endpoint protection, vulnerability scanners and firewalls.
  • Conduct regular vulnerability assessments and coordinate remediation efforts.
  • Ensure compliance with public sector cyber security frameworks and deliver cyber security awareness training and phishing simulations to staff.
  • Advise on security requirements for digital transformation projects, ensuring alignment with organisational policies and risk appetite.
  • Review new systems and services for security risks, promoting secure‑by‑design principles throughout their lifecycle.
  • Liaise with internal stakeholders, external partners and national cyber security bodies (e.g. NCSC, law enforcement).
  • Be responsible for out of hours operational management of NRW’s entire ICT security service on a rota basis.
  • Undertake health and safety duties and responsibilities appropriate to the post.
  • Commit to Natural Resources Wales Equal Opportunities and Diversity Policy.
  • Commit to your own development through the effective use of your personal development plan (Gwgors).
  • Perform any other reasonable duties requested commensurate with the grade of this role.
  • Required to take part in incident response activities.

Qualifications, Experience and Knowledge

In your application and interview you will be asked to demonstrate the following skills and experience using the STAR method.

  • High level of technical expertise and skills including detailed knowledge of Azure Stack.
  • Degree in Cyber Security, Computer Science or a related field, or equivalent experience.
  • Professional certifications such as CompTIA Security+, CISSP, CISM or equivalent.
  • Strong understanding of cyber security principles, threat landscapes and attack vectors.
  • Experience with security technologies such as SIEM, IDS/IPS and endpoint protection.
  • Knowledge of public sector security standards and regulatory requirements such as GDPR, ISO 27001 and NCSC CAF.
  • Experience in identity and access management (IAM), cyber threat hunting, Endpoint Detection and Response (EDR) and detection analytics.
  • Proficiency in cloud security, particularly with Azure security tools and services.
  • Knowledge of secure coding practices and application security.
  • Incident response and digital forensics experience.
  • Eligibility for Security Check (SC) clearance or experience in obtaining such clearance in the UK.
  • Full and current UK driving licence.

Welsh Language Level Requirements

  • Essential: Level A1 – entry level (able to use and understand simple, basic phrases and greetings, no conversational Welsh).

Benefits

  • Civil Service Pension Scheme offering employer contributions of 28.97%.
  • 28 days annual leave, rising to 33 days.
  • Generous leave entitlements for all life needs.
  • Commitment to professional development.
  • Health and wellbeing benefits and support.
  • Weekly wellbeing hour to use as you choose.

Equality, Diversity and Non‑Discrimination

We are passionate about creating a diverse workforce and positively encourage applications from under‑represented communities. We embrace equality of opportunity irrespective of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, sexual orientation, and other protected characteristics. We guarantee interviews for candidates with disabilities who meet the minimum selection criteria and provide suitable adjustments where needed.

#J-18808-Ljbffr…

Posted: April 20th, 2026