Trac proudly powers the recruitment for
Northumbria Healthcare - NHCT Northumbria Healthcare NHS Foundation Trust

About
Northumbria Healthcare NHS Foundation Trust is an award winning NHS Foundation Trust which provides hospital and community health services in North Tyneside, and hospital, community health and adult social care services in Northumberland.
Contact
- Address
- Northumbria Healthcare NHS Foundation Trust
- Human Resources Department
- Northumbria House
- 7/8 Silver Fox Way, Cobalt Business Park
- Newcastle upon Tyne
- NE27 0QJ
- Contact Number
- 0191 2031415 Option 2
Vulnerability Management Engineer
Accepting applications until: 01-Sep-2025 23:59
Vacancy status: Open
Accepting applications until: 01-Sep-2025 23:59
Key details
Location
- Site
- Northumbria Healthcare Manufacturing and Innovation Hub
- Address
- Avenue Rd, Seaton Delaval
- Town
- Whitley Bay
- Postcode
- NE25 0QJ
- Major / Minor Region
- Tyne and Wear
Contract type & working pattern
- Contract
- Permanent
- Hours
- Full time
- Flexible working
Salary
- Salary
- £47,810 - £54,710 per annum
- Salary period
- Yearly
- Grade
- (NHS AfC: Band 7)
Specialty
- Main area
- Vulnerability Management
- Interview date
- 15/09/2025
Do you want to work in one of the best performing NHS organisations in England? Work for an organisation that was voted the best acute and combined acute and community trust in the country, based on the experience of its staff (NHS Staff Survey 2022). Work in an organisation that supports its staff and focuses on staff experience as much as it does the experience of its patients? You can live and breathe in an area that has the cleanest air, cost effective living, great nightlife, some of the best schools with a wealth of history available on your doorstep. Sound too good to be true? Well it isn’t, this is what you get when you work for Northumbria Healthcare and, this is…the Northumbria Way!
What the Northumbria Way means for you:
- Extensive staff health and well-being programme including access to our specialist Wellbeing Hub
- Support and connection through a variety of Staff Network groups
- A range of flexible working opportunities
- Generous annual leave and pension scheme
- Access to lease car and home electronics scheme (qualifying criteria applies)
- Opportunities to improve your professional development through our vast training programmes
- On-site nursery places via salary sacrifice
- Access to savings scheme via salary sacrifice with Northumberland Community Bank
We are proud to be one of the country’s top performing NHS trusts – rated ‘outstanding’ overall by the Care Quality Commission (CQC). We provide a range of health and care services to support more than 500,000 people living in Northumberland and North Tyneside across the largest geographical area of any NHS Trust in England. Our teams deliver care from hospitals, a range of community venues and people’s homes. Our hospitals include a specialist emergency care hospital (the first of its kind in England), three general hospitals and community hospitals. In the community we deliver a wide range of community and public health services.
We lead in innovation and quality, having opened the Northumbria Healthcare Manufacturing and Innovation Hub during the Covid-19 pandemic and have recently launched our Community Promise – a pledge to make a real impact not just in healthcare but on the wider factors that affect people’s lives, such as education, employment and the economy.
If Northumbria Healthcare sounds like somewhere you could belong we would love to hear from you. Visit our website to catch up on our latest news.
Whilst Northumbria Healthcare are a highly innovative organisation, the use of Third Party Artificial Intelligence (AI) presents a risk to the integrity of our Recruitment & Selection processes. If you use AI, and it poses a risk to the integrity your individual recruitment process, we may withdraw your application at any stage of the process.
Job overview
Northumbria Healthcare is making a significant investment in new technology to transform how we deliver care. The multi-million pound programme is both challenging in the expectation of delivery as well as ensuring that our services are secure, robust and resilient at all times. An opportunity has arisen for a Vulnerability Management Engineer to join the Digital Services Team at Northumbria Healthcare NHS Foundation Trust.
Working as part of the Information Security Team, you will be responsible for reducing risk to Northumbria's IT systems and data. The post will be based at the Manufacturing and Innovation Hub premises in Seaton Delaval and you will be coordinating mitigation and resolution activities with technical staff, system stakeholders and third parties across Trust sites such as North Tyneside General Hospital, Hexham General Hospital and the Northumbria Specialist Emergency Care Hospital in Cramlington.
Please note we reserve the right to close this vacancy prior to the closing date once the required number of suitable applications have been received.
Advert
The Vulnerability Management Engineer role involves utilising the Trust's security toolset to facilitate the reduction of risk to Northumbria’s IT systems and data. You will evaluate the practical criticality of vulnerabilities discovered by tooling, penetration tests, CareCERTS, audits, spot checks and assessments. You will lead and coordinate the required mitigation and resolution activities between Trust technical staff, system stakeholders, third parties, and any other parties required, to reduce the risk from all vulnerabilities by means such as patching, upgrades, reconfiguration, containment/isolation, etc.
You must be able to take a pragmatic view of risk and apply a wide knowledge of IT subjects to deliver solutions which balance risk reduction against service disruption. The role will also manage the Digital Services vulnerability register, arrange Penetration Testing and IT health checks, and take a key role in the Trust’s cyber compliance activities and accreditations.
Experience of leading group work to resolve issues is essential alongside excellent communication skills as you will be regularly liaising with clinical and business services, service delivery teams and 3rd party suppliers. You will be responsible for generating regular vulnerability reports for senior management and will be required present and discuss these. You will have recent and comprehensive experience of working in large-scale, corporate, connected and distributed IT environments.
Working for our organisation
We manage three major locality hospitals at North Tyneside, Wansbeck and Hexham, plus a number of smaller community hospitals and clinics from Tynemouth to Berwick on Tweed, covering one of the largest geographical areas of any NHS trust in the country. Leading in innovation and quality – opening a state of the art Northumbria Specialist Emergency Care Hospital, the first of its kind in England. Do you want to work in one of the best performing NHS organisations in England? Work in an organisation that supports its staff and focuses on staff experience as much as it does the experience of its patients? You can live and breathe in an area that has the cleanest air, cost effective living, great nightlife, some of the best schools with a wealth of history available on your doorstep. Sound too good to be true? Well it isn’t, this is what you get when you work for Northumbria Healthcare, this is the Northumbria Way! Please read ‘applicant guidance notes’ before submitting your application.
Detailed job description and main responsibilities
-
Provide leadership and co-ordination for vulnerability management projects
-
Ownership of compliance submissions including Data Security and Protection Toolkit, and DCB 1596 NHS Secure Mail Accreditation
-
Develop viable options for the Trust response to vulnerabilities.
-
Perform recurring and on-demand scanning of Trust systems and cloud environments.
-
Review the Trust’s security toolset to identity vulnerabilities in hardware, software, operating systems, web services, and other Trust information systems.
-
Classify and communicate the risk of identified vulnerabilities and recommend security controls to mitigate them
-
Maintain documentation regarding threat management, including policies and procedures
-
Assist technology teams to develop, implement, and automate security solutions
-
Improve and automate existing vulnerability management systems
-
Research and assess emerging security threats and vulnerabilities
-
Manage the penetration testing of Trust systems for compliance and assurance.
-
Manage the Trusts vulnerabilities register and escalate to risk register as appropriate.
-
Work with Digital Services teams to implement “approved standard builds” across all managed assets and manage the ongoing configuration and release management processes.
Applicants who are members of the Armed Forces, and those who have a disability that requires support in the work place (two ticks pledge) and who meet the essential criteria will be interviewed under the Trust's interview guarantee scheme.
We recognise the positive value of diversity and inclusion and are committed to a workforce that is diverse, equal and inclusive. We welcome and encourage job applications from people of all backgrounds. We particularly welcome applications from Black, Asian and Minority Ethnic (BAME) candidates as BAME people are currently under-represented in our workforce as well as other under-represented groups such as LGBT+ and disabled candidates. We are proud to be a Disability Confident Employer, a Stonewall Diversity Champion, we have a Gold award from the Defense Recognition Scheme, and we are delighted to support Apprenticeships, Age Posi+ive and are a mindful employer.
If you require any reasonable adjustments to attend interview please make the recruitment team aware as soon as possible by calling our HR Recruitment Team on 0191 203 1415 option 2.
Applicants who meet the Fit and Proper Person Requirements (FPPR) will require additional pre-employment checks in line with CQC and NHS England statutory guidance.
Make sure to read the ‘applicant guidance notes’ before submitting your application and make sure you know everything there is to know before joining our fantastic trust!
Certificate of Sponsorship
Northumbria Healthcare NHS Foundation Trust proudly hold a sponsor licence. In order to provide sponsorship you and the role you are applying for must meet UKVI eligibility requirements. Please check your eligibility prior to submitting an application. Skilled Worker visa: Overview - GOV.UK (www.gov.uk)
Please note that it is a requirement of this Trust that all successful applicants pay for their own DBS certification if a DBS check is required for the post. The method of payment is a salary deduction from your first monthly pay.
Person specification
Qualifications
Essential criteria
- Degree, or equivalent, in Computer Networks, Computer Forensics, Engineering or related subject (modules in Cyber Security would be advantageous) plus specialist Its security knowledge and expertise in large-scale IM&T procedures and techniques.
- Current Cyber Security Qualification or evidence of attendance on a range of Cyber Security Training courses is essential.
Experience
Essential criteria
- Experience in vulnerability management or compliance monitoring
- Experience leading in a cybersecurity environment
- Experience in technical project management
- Experience in vulnerability scanning, penetration testing, network admission control, and/or SIEM
- Experience in design and implementation of security technologies
- Experience with IT controls monitoring for regulatory and compliance requirements
Desirable criteria
- Knowledge of or experience in coaching and mentoring practices and tools
- Knowledge of or experience in Quality improvement tools, techniques and methods
Further details / informal visits contact
- Name
- Graham Reynolds
- Job title
- Technical Information Security Engineer
- Email address
- [email protected]
Start your application
Sign in
Create an account
Create your account and apply for your new job!