The NHS Counter Fraud Authority (NHSCFA) is the national body responsible all for matters relating to the prevention, detection and investigation of economic crime across the NHS. Aligned to the DH Health Group Counter Fraud strategy, the NHSCFA acts as the principal lead for the NHS and wider health group in counter fraud intelligence work.
The NHSBSA is responsible for the processing of your application; a privacy notice is attached to advise you on how we will process your personal data.
The NHS Counter Fraud Authority (NHSCFA) is the national body responsible for all matters relating to the prevention, detection and investigation of economic crime across the NHS. Further information about our work and annual plan for delivering this is available on our website.
An exciting opportunity has arisen to join the NHSCFA Technology team as an Information & Cyber Security Analyst. We are looking for someone with a proven background in Information/Cyber security and a flexible ‘can do’ attitude and approach to work in the Information & Cyber Security (I&CS) Team who manage and maintain the security of NHSCFA ICT infrastructure and information systems.
You will work within the I&CS team to proactively monitor IT systems; identify, manage and resolve security incidents, vulnerabilities, security alerts and threats; potentially perform penetration testing; and contribute to maintaining security certifications, assurances and accreditations.
IMPORTANT Note: This position requires UK National Security Vetting to at least SC level. Please confirm residency below.
We reserve the right to close this vacancy before the advertised closing date should we receive a significant number of applications.
Potential applicants can contact Kannan Soman at [email protected] for an informal chat if they have any questions regarding the role.
The interview will be face to face in 10sc at below address on 10/11th December 2025 , Previous applicants need not apply.
NHS Counter Fraud Authority
HM Government Hub, 7th floor
10 South Colonnade
Canary Wharf
London E14 4PU
Actively manage, monitor and develop NHSCFA Cyber operations, including managing alerts, identifying and mitigating vulnerabilities and cyber threats.
Manage security incidents and requests through to remediation and resolution.
Support the Security Incident Management Process as a member of the NHSCFA Security Incident Response Team.
Carry out threat intelligence analysis and recommend or implement remediation or mitigation.
Perform security risk assessments, identifying security gaps and recommending appropriate remediation.
Create and prepare Cyber Security Operations reports
We have offices in Coventry, Newcastle and London and offer flexible, hybrid and home-based working. In addition to the advertised salary, working in the London area will attract High-Cost Area Supplement where appropriate. The NHSCFA values and respects the diversity of its employees, and aims to recruit a workforce which reflects our diverse communities. We welcome applications irrespective of people's age, disability, gender, race or ethnicity, religion or belief, sexual orientation, or other personal circumstances. We have policies and procedures in place to ensure that all applicants are treated fairly and consistently at every stage of the recruitment process, including an invitation to the first stage of the selection process and consideration of reasonable adjustments for people who have a disability. If you are applying to undertake this role on a secondment basis you should have agreement to being released from your current role in principle, prior to submitting an application form. When you apply for this role you will be redirected to our recruitment system TRAC. The CFA does not hold a sponsor licence in respect of skilled worker visas and so is unable to employ candidates requiring sponsorship.
To comply with the HM Government Functional Standard GovS 007, and specifically the Personnel Security Standards, individuals employed by NHS Counter Fraud Authority will be required to undergo Baseline Personnel Security Standards checks.
Manage, monitor, and develop NHSCFA cyber security operations and ICT security infrastructure to manage and reduce cyber risk and mitigate cyber threats.
Actively monitor NHSCFA ICT systems:
manage and operate IT security monitoring tools and systems ; review IT system alerts ; triage to eliminate false positives ; Identify threats that have entered the network.
Evaluate and address system generated and user-reported security incidents ; identify affected systems and scope of the incident ; analyse running processes and configurations on affected systems ; carry out in-depth threat intelligence analysis to identify an attack type, source, entry point, and possible remediation ; implement remediation or escalate incident.
Please see full Job Description and Person Specification.
The NHSCFA values and respects the diversity of its employees, and aims to recruit a workforce which reflects our diverse communities. We welcome applications irrespective of people's age, disability, gender, race or ethnicity, religion or belief, sexual orientation, or other personal circumstances.
We have policies and procedures in place to ensure that all applicants are treated fairly and consistently at every stage of the recruitment process, including an invitation to the first stage of the selection process and consideration of reasonable adjustments for people who have a disability.
All new entrants to the NHS will be appointed on the minimum of the pay scale in line with Agenda for Change Terms and Conditions.
If you are applying to undertake this role on a secondment basis you should discuss this opportunity with your manager and have agreement to being released from your current role in principle, prior to submitting an application form.
We reserve the right to close any vacancies from further submissions when we have received sufficient applications from which to make a shortlist. Please ensure you apply without delay if you wish to be considered for this role. For help with completing your application form, please read the guidance notes attached to this advert.
Please note all contact is made via our TRAC recruitment system. Please check your account regularly. If you are shortlisted for interview you will be required to provide proof of ID and the right to work in the UK.(Please refer to attached guidance documents for further details). Failure to bring the required proof will mean that we may be unable to proceed with your interview.
Please ensure you provide full contact details, including email address or fax number for each referee.
NHS Counter Fraud Authority Website: www.cfa.nhs.uk