Head of Cyber Security

Company: NHS
Apply for the Head of Cyber Security
Location: Upper Cwmbran
Job Description:

Aneurin Bevan University Health Board (ABUHB) has a large and complex ICT service that underpins the delivery of digital health care. ICT supports around 17,000 users and over 200 services across more than 120 sites. The adoption and expectations placed upon digital healthcare are expected to grow substantially over the next 5 years as the health board adopts mobility both in primary and secondary care settings.

If you think you are the right match for the following opportunity, apply after reading the complete description.

The primary responsibility of the Cyber Security Manager is to implement, maintain and improve security within both new and existing Health Board ICT systems. This is a critical role within Aneurin Bevan University Health Board in terms of developing effective Cyber Security strategies, controls, and management of the Cyber Security team. Ensuring enhancement of Business Security aligns with the overall strategic goals of the Health Board.

The post holder is a senior position and will have acquired a high level of cyber security technical knowledge and understands the relevant digital Security standards and guidelines such as ISO27001 / Cyber Essentials +.

You will support the strategic development for Cyber Security services including representation and implementation of the Health Board Cyber leadership and Information Governance) framework.

Main duties of the job

The Head of Cyber Security provides strategic leadership and operational oversight for the organisation’s cyber security posture, ensuring robust protection of digital assets, clinical systems, and sensitive information. The role is responsible for developing and implementing the cyber security strategy, managing risk, leading incident response, and ensuring compliance with national standards, regulatory requirements, and NHS Wales policies. Working closely with Information Governance, Digital Services, and executive leadership, the Head of Cyber Security drives a proactive security culture, oversees monitoring and threat intelligence functions, and ensures that technical and organisational controls are effective, resilient, and continually improving. This role also provides expert advice on emerging threats and technologies, supports major digital transformation programmes, and ensures that cyber security is embedded across organisational decision-making.

About us

Aneurin Bevan University Health Board is a multi-award-winning NHS organisation with a passion for caring. The Health Board provides an exceptional workplace where you can feel trusted and valued. Whatever your specialty or stage in your career, we have opportunities for everyone to start, grow and build your career. The health board provides integrated acute, primary and community care serving a population of 650,000 and employing over 16,000 staff.

We offer a fantastic benefits package and extensive training and development opportunities with paid mandatory training, excellent in-house programmes, opportunities to complete recognised qualifications and professional career pathways including a range of management development programmes. We offer flexible working and promote a healthy work life balance, provide occupational health support and an ambitious plan for a Wellbeing Centre of Excellence to support you at work.

Our Clinical Futures strategy continues to enhance and promote care closer to home as well as high quality hospital care when needed. Join us on our journey to pioneer new ways of working and deliver a world-class healthcare service fit for the future.

Job responsibilities

You will be able to find a full Job description and Person Specification attached within the supporting documents or please click Apply now to view in Trac.

Person SpecificationExperience

  • Track record of achievement at a senior management level. Experience of dealing with major Digital private sector providers in delivering major security projects and solutions. Application form and interview. 8 Track record of innovation and implementation.
  • Membership of professional body, e.g. BCS

Qualification

  • Good working knowledge of the BS ISO/IEC 27001 Information Security standard

Qualifications

  • Cyber Security Qualifications or working towards
  • Management Qualification or equivalent

Qualifications

  • Educated to Masters Level in a relevant Digital subject or equivalent experience
  • Prince 2 Foundation

Knowledge

  • Detailed working knowledge of application and network security
  • A clear understanding and appreciation of the processes supporting clinical care and the approaches required to design and implement the supporting security environment

Aptitude and Ability

  • Excellent communication and interpersonal when dealing with highly technical information to a wide range of stakeholders across organisational boundaries.
  • Experience of dealing with major Digital private sector providers in delivering major security projects and solutions. xwzovoh

Disclosure and Barring Service Check

This post is subject to the Rehabilitation of Offenders Act (Exceptions Order) 1975 and as such it will be necessary for a submission for Disclosure to be made to the Disclosure and Barring Service (formerly known as CRB) to check for any previous criminal convictions.

AD of Digital Governance & Assurance / DPO

Posted: March 28th, 2026