Rodeo
Get started

Manchester Digital

Cyber Security Analyst - Medr - HEO

Manchester
Posted about 16 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Location

Aberystwyth, Cardiff, Llandudno Junction, Merthyr Tydfil, Swansea

About The Job

Job summary

About Us

We are an arm’s length body of the Welsh Government, responsible for the strategy, funding and oversight of:

  • further education
  • higher education including research and innovation
  • apprenticeships
  • adult community learning; and local authority maintained school sixth forms.

We work in close collaboration with our partners to enable a tertiary education and research system which is centred around the needs of learners; society; and economy with excellence, equality and engagement at its heart.

Our values really matter to us, they help shape the culture of our organisation:

  • Dysgu (to learn; to teach; to educate) - learning is at the heart of everything we do. We believe curiosity fuels innovation and helps expand our horizons.
  • Cydweithio (to work together; to collaborate; to co-operate) - we can achieve far more together than we ever could alone.
  • Cynnwys Pawb (to include everyone; to involve everyone) - we are passionate about inclusion, seeking to create the right conditions for everyone to achieve their full potential.
  • Rhagori (to exceed; to excel) - we have high aspirations for tertiary education and research in Wales and always set high standards for ourselves to be the best we can be.

We are proud to be a Disability Confident employer and accredited as a Living Wage employer.

Location

Our headquarters is in 2, Capital Quarter, Cardiff, which has been specifically designed to meet our needs. This is where most colleagues will meet to collaborate, both with each other and with stakeholders.

As we operate across Wales, we also have limited office and collaboration space in Welsh Government offices in Llandudno Junction, Aberystwyth, Swansea and Merthyr Tydfil.

Main purpose of the job

The Cyber Security Analyst is responsible for safeguarding Medr’s digital assets by monitoring, analysing, and responding to cyber threats across its systems and services. The role ensures effective security controls are implemented in line with security policies and latest standards, supports secure system and service design, and undertakes real-time threat analysis, risk assessments and incident investigations. The role is critical to maintaining the confidentiality, integrity, and availability of Medr’s data and infrastructure, while supporting the resilience of its digital operations in an evolving threat landscape.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Job Description

What you'll be doing

  • Monitor, detect, and respond to cyber threats by conducting real‑time security monitoring, threat hunting, forensic investigations, and timely system patching to protect systems, networks, software, and data.
  • Identify and mitigate security risks and vulnerabilities through software risk assessments, continuous infrastructure monitoring, audits, and validation activities to ensure data integrity, timeliness, and completeness.
  • Design and enforce robust security controls and policies, embedding security into systems and application design and ensuring compliance with Cyber Essentials Plus and IASME Level 2 standards.
  • Manage access and permissions by maintaining strong user access controls and administrative privileges to prevent unauthorised access and data breaches.
  • Promote a strong security culture by delivering employee training and awareness programmes, supporting and challenging users where necessary, and encouraging continuous improvement and compliance with data standards.
  • Collaborate and communicate effectively with Digital teams, management, external suppliers, and stakeholders, maintaining up‑to‑date security documentation, producing security papers, and reporting progress and key challenges to senior leadership.

Key challenges you will face

  • Working in a fast-paced environment, with competing priorities and critical deadlines.
  • Ensuring that data governance and management approaches align with business needs, compliance requirements and best practice.
  • Integrate with a shared SOC/MDR service.
  • Incident response under pressure.
  • Preparing and participating in numerous audits where compliance is critical to the business function.
  • Sector collaboration by securing credibility and trust with a range of stakeholders.

About Your Team

The Digital Directorate within Medr spans three core areas: Development, Information Systems, and IT Security & Technical Services. Together, we design and manage systems, develop applications and ensure robust security, governance and compliance is in place.

The Cyber Security Analyst will report directly to the Senior Technical Services Manager who also manages the IT Support Manager and Officer posts. The team will be led by the Head of IT Security and Technical Services.

About Your Line Manager

The Senior Technical Services Manager brings over 25 years of digital experience and has been with HEFCW, Medr’s predecessor, since 2019, having seconded from a local Governments Network Team. As lead Technical Architect, he had a key role in the design and implementation of Medr’s IT environments, security profile, corporate IT systems, client solutions, data management processes, governance controls, and IT risk management.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Person specification

What You'll Bring

Attributes

  • Drive: You lead by example, showing dedication and perseverance in meeting organisational objectives.
  • Agile: You drive forward improvements, through collaboration, embracing new technologies and nurturing a culture of continuous learning.
  • Resilient: You lead with resilience in terms of uncertainty and change, inspiring your team to persevere despite obstacle
  • Dynamic - You encourage a culture of innovation and continuous improvement, encouraging experimentation and learning.

Experience

  • Technical experience in securing Microsoft Azure and Office 365 environments, with hands-on knowledge of cloud security tools such as Microsoft Sentinel, Purview or Microsoft Defender for Endpoint/Cloud SIEM tools. Capable of analysing and interpreting security events and logs, and performing digital forensics tasks. Experienced in responding to threat intelligence and vulnerability management platforms.
  • Demonstrates comprehensive understanding of cybersecurity frameworks, regulatory compliance requirements such as UK GDPR and the Data Protection Act 2018, and expertise with security technologies including firewalls, VPNs, and intrusion detection/prevention systems. Possesses strong analytical, communication, and problem-solving abilities, as well as proficiency in preparing clear and effective technical and non-technical reports.

Welsh Language Requirements

We have evaluated that the Welsh language requirements for this post are:

  • Desirable: Welsh desirable means that while having Welsh language skills is useful for the role, it is not an assessment criterion, so it won’t disadvantage you during recruitment if you don’t currently possess these skills.

Qualifications

  • A bachelor's degree in computer science, cybersecurity, or a closely related field is typically required; postgraduate qualifications or professional certifications (e.g., CISSP, CISM, CompTIA Security+) or several years of relevant experience in information security, network administration, or IT risk management.
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Cyber Security Monitoring
Threat Hunting
Digital Forensics
Vulnerability Management
Microsoft Azure Security
Office 365 Security
Microsoft Sentinel
Microsoft Purview
Microsoft Defender
SIEM
Firewalls
VPN
Intrusion Detection/Prevention Systems
Risk Assessment
Incident Response

Location

Manchester, England, United Kingdom

Sign up to applySee more jobs like this