Application Security (AppSec)
UK

The following table provides summary statistics for permanent job vacancies with a requirement for Application Security skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Application Security over the 6 months to 28 April 2024 with a comparison to the same period in the previous 2 years.

6 months to
28 Apr 2024
Same period 2023 Same period 2022
Rank 500 456 548
Rank change year-on-year -44 +92 -74
Permanent jobs citing Application Security 453 675 902
As % of all permanent jobs advertised in the UK 0.46% 0.65% 0.58%
As % of the Processes & Methodologies category 0.54% 0.68% 0.61%
Number of salaries quoted 306 393 538
10th Percentile £46,250 £37,500 £37,500
25th Percentile £56,250 £55,000 £51,250
Median annual salary (50th Percentile) £75,000 £77,500 £72,500
Median % change year-on-year -3.23% +6.90% +11.54%
75th Percentile £85,000 £93,750 £88,750
90th Percentile £100,000 £107,500 £110,000
UK excluding London median annual salary £65,000 £60,000 £56,250
% change year-on-year +8.33% +6.67% -6.25%

All Process and Methodology Skills
UK

Application Security is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 84,360 99,485 147,504
As % of all permanent jobs advertised in the UK 85.99% 95.62% 95.58%
Number of salaries quoted 59,619 58,411 83,272
10th Percentile £29,000 £34,000 £33,500
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £61,500 £60,000
Median % change year-on-year -10.57% +2.50% +9.09%
75th Percentile £72,500 £82,500 £80,000
90th Percentile £92,500 £100,000 £96,250
UK excluding London median annual salary £50,000 £55,000 £52,500
% change year-on-year -9.09% +4.76% +9.38%

Application Security
Job Vacancy Trend

Job postings citing Application Security as a proportion of all IT jobs advertised.

Job vacancy trend for Application Security in the UK

Application Security
Salary Trend

3-month moving average salary quoted in jobs citing Application Security.

Salary trend for Application Security in the UK

Application Security
Salary Histogram

Salary distribution for jobs citing Application Security over the 6 months to 28 April 2024.

Salary histogram for Application Security in the UK

Application Security
Top 16 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Application Security within the UK over the 6 months to 28 April 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -11 406 £75,000 -3.23% 104
London +67 232 £75,000 -10.71% 45
Work from Home +19 206 £72,500 -3.33% 71
UK excluding London -84 187 £65,000 +8.33% 51
North of England +16 65 £61,206 +4.18% 16
South East -12 58 £72,500 +28.89% 18
North West 0 39 £60,603 -3.04% 6
Midlands -7 26 £60,000 - 7
West Midlands +23 25 £60,000 -17.81% 7
South West -6 22 £73,750 -34.44% 6
Yorkshire +84 18 £79,842 +33.07% 7
Scotland -56 16 £50,000 +5.96%
North East +1 8 £64,921 +36.68% 3
Wales +15 2 £65,000 +74.98% 1
East Midlands -15 1 £65,000 +18.18%
East of England -22 1 £60,000 -25.00% 5

Application Security
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 13 (2.87%) SharePoint
2 10 (2.21%) Microsoft Exchange
3 2 (0.44%) IIS
4 1 (0.22%) Apache
4 1 (0.22%) Blackberry Enterprise Server
4 1 (0.22%) CMS
4 1 (0.22%) Drupal
4 1 (0.22%) nginx
Applications
1 7 (1.55%) Microsoft Office
2 6 (1.32%) Microsoft Excel
Business Applications
1 2 (0.44%) Payment Gateway
1 2 (0.44%) SAP GRC
1 2 (0.44%) SAP S/4HANA
2 1 (0.22%) Aareon QL
2 1 (0.22%) Magento
2 1 (0.22%) MIS ActiveH
2 1 (0.22%) NEC Housing
2 1 (0.22%) OPENHousing
Cloud Services
1 160 (35.32%) Azure
2 116 (25.61%) AWS
3 56 (12.36%) Microsoft 365
4 26 (5.74%) SaaS
5 23 (5.08%) Entra ID
6 22 (4.86%) GCP
7 21 (4.64%) Cloud Computing
7 21 (4.64%) PaaS
8 18 (3.97%) IaaS
9 16 (3.53%) Azure AKS
10 14 (3.09%) Azure DevOps
10 14 (3.09%) Power Platform
11 11 (2.43%) Serverless
12 8 (1.77%) Azure Sentinel
13 6 (1.32%) Azure Service Bus
13 6 (1.32%) Azure Service Fabric
14 4 (0.88%) AWS Lambda
14 4 (0.88%) Azure App Service
14 4 (0.88%) Dynamics 365
14 4 (0.88%) PowerApps
Communications & Networking
1 103 (22.74%) Firewall
2 77 (17.00%) WAN
3 65 (14.35%) Network Security
4 49 (10.82%) VPN
5 43 (9.49%) LAN
6 42 (9.27%) Internet
7 33 (7.28%) SD-WAN
8 15 (3.31%) Wireless
9 13 (2.87%) Intrusion Detection
10 8 (1.77%) TCP/IP
10 8 (1.77%) Wireshark
11 6 (1.32%) HTTP
12 4 (0.88%) BGP
12 4 (0.88%) Ethernet VPN
12 4 (0.88%) F5 BIG-IP GTM
12 4 (0.88%) F5 BIG-IP LTM
12 4 (0.88%) MPLS
12 4 (0.88%) OSPF
12 4 (0.88%) tcpdump
12 4 (0.88%) Unified Communications
Database & Business Intelligence
1 16 (3.53%) SQL Server
2 10 (2.21%) Relational Database
3 9 (1.99%) Azure SQL Database
3 9 (1.99%) NoSQL
4 8 (1.77%) CockroachDB
5 7 (1.55%) SQL Server Integration Services
5 7 (1.55%) SQL Server Reporting Services
6 4 (0.88%) Amazon RDS
6 4 (0.88%) RDBMS
7 3 (0.66%) Data Lake
7 3 (0.66%) Elasticsearch
7 3 (0.66%) Looker
7 3 (0.66%) MySQL
8 1 (0.22%) Amazon Aurora
8 1 (0.22%) Big Data
8 1 (0.22%) Geospatial Data
8 1 (0.22%) MongoDB
8 1 (0.22%) PostgreSQL
8 1 (0.22%) Power BI
Development Applications
1 39 (8.61%) Burp Suite
2 34 (7.51%) Metasploit
3 12 (2.65%) Jenkins
4 11 (2.43%) Git
5 9 (1.99%) Sonatype Nexus
6 8 (1.77%) Jaeger
7 6 (1.32%) Selenium
8 5 (1.10%) Cypress.io
8 5 (1.10%) SoapUI
9 3 (0.66%) Moq
9 3 (0.66%) Postman
9 3 (0.66%) SpecFlow
9 3 (0.66%) Visual Studio
10 2 (0.44%) Bitbucket
10 2 (0.44%) WebDriver
11 1 (0.22%) Gradle
11 1 (0.22%) Grunt
11 1 (0.22%) Maven
11 1 (0.22%) MSI
11 1 (0.22%) Robot Framework
General
1 142 (31.35%) Social Skills
2 104 (22.96%) Finance
3 62 (13.69%) Analytical Skills
4 52 (11.48%) Retail
5 35 (7.73%) Inclusion and Diversity
5 35 (7.73%) Law
6 20 (4.42%) Banking
7 19 (4.19%) Telecoms
8 18 (3.97%) Marketing
9 15 (3.31%) Public Sector
10 14 (3.09%) Legal
11 12 (2.65%) Financial Institution
11 12 (2.65%) Health Technology
12 10 (2.21%) Documentation Skills
12 10 (2.21%) Tech for Good
13 8 (1.77%) Manufacturing
14 7 (1.55%) Presentation Skills
15 5 (1.10%) Influencing Skills
16 2 (0.44%) Investment Banking
17 1 (0.22%) Local Government
Job Titles
1 152 (33.55%) Architect
2 119 (26.27%) Senior
3 85 (18.76%) Security Architect
4 49 (10.82%) Lead
5 47 (10.38%) Analyst
6 45 (9.93%) Penetration Tester
6 45 (9.93%) Security Analyst
6 45 (9.93%) Tester
7 41 (9.05%) Lead Architect
8 38 (8.39%) Security Engineer
9 30 (6.62%) Lead Security Architect
10 26 (5.74%) Developer
11 25 (5.52%) Consultant
12 24 (5.30%) Infrastructure Architect
13 23 (5.08%) Senior Analyst
14 22 (4.86%) Senior Security Analyst
15 21 (4.64%) CISSP Analyst
16 20 (4.42%) Cybersecurity Analyst
16 20 (4.42%) Senior Architect
17 16 (3.53%) Senior IT Security Analyst
Libraries, Frameworks & Software Standards
1 25 (5.52%) OAuth
2 16 (3.53%) .NET
2 16 (3.53%) REST
2 16 (3.53%) Web Services
3 15 (3.31%) HTML
3 15 (3.31%) React
3 15 (3.31%) RESTful
3 15 (3.31%) SAML
4 12 (2.65%) CSS
4 12 (2.65%) Middleware
4 12 (2.65%) SailPoint
5 10 (2.21%) Vue
6 9 (1.99%) .NET Framework
6 9 (1.99%) Entity Framework
7 8 (1.77%) HTML5
7 8 (1.77%) Kafka
7 8 (1.77%) OAuth2
7 8 (1.77%) OpenTelemetry
7 8 (1.77%) Spring Boot
8 7 (1.55%) web3js
Miscellaneous
1 76 (16.78%) Management Information System
2 52 (11.48%) Distributed Denial-of-Service
3 21 (4.64%) PKI
3 21 (4.64%) Security Posture
4 20 (4.42%) Cyber Threat
4 20 (4.42%) Public Cloud
5 19 (4.19%) Self-Motivation
6 14 (3.09%) Cloud Native
6 14 (3.09%) Distributed Systems
6 14 (3.09%) Greenfield Project
7 13 (2.87%) Data Centre
8 12 (2.65%) Mobile App
8 12 (2.65%) Replication
9 10 (2.21%) Product Ownership
9 10 (2.21%) Robotics
10 7 (1.55%) Blockchain
10 7 (1.55%) Web3
11 6 (1.32%) Hybrid Cloud
12 4 (0.88%) IoT
13 3 (0.66%) Data Structures
Operating Systems
1 85 (18.76%) Linux
2 68 (15.01%) Windows
3 36 (7.95%) Ubuntu
3 36 (7.95%) VMS
4 31 (6.84%) Kali Linux
5 19 (4.19%) Windows Server
6 9 (1.99%) Android
6 9 (1.99%) Apple iOS
7 2 (0.44%) Unix
8 1 (0.22%) Red Hat Enterprise Linux
8 1 (0.22%) Windows 10
8 1 (0.22%) Windows Server 2019
Processes & Methodologies
1 181 (39.96%) Cybersecurity
2 145 (32.01%) Information Security
3 104 (22.96%) OWASP
4 99 (21.85%) DevSecOps
5 98 (21.63%) Penetration Testing
6 94 (20.75%) Problem-Solving
7 88 (19.43%) Computer Science
8 83 (18.32%) Cloud Security
8 83 (18.32%) Security Architecture
9 82 (18.10%) CI/CD
10 70 (15.45%) Agile
11 66 (14.57%) DevOps
12 64 (14.13%) Security Testing
13 61 (13.47%) SIEM
14 55 (12.14%) Secure Coding
15 54 (11.92%) Security Operations
16 53 (11.70%) Vulnerability Management
17 52 (11.48%) Identity Access Management
18 47 (10.38%) Identity Management
19 46 (10.15%) Security Management
Programming Languages
1 55 (12.14%) SQL
2 37 (8.17%) Python
3 33 (7.28%) JavaScript
4 30 (6.62%) Java
5 26 (5.74%) PowerShell
6 17 (3.75%) C#
7 10 (2.21%) Kusto Query Language
7 10 (2.21%) TypeScript
8 8 (1.77%) Go
8 8 (1.77%) R
9 7 (1.55%) C
9 7 (1.55%) T-SQL
10 6 (1.32%) PHP
11 5 (1.10%) C++
11 5 (1.10%) Scala
12 4 (0.88%) Bash
13 3 (0.66%) Ruby
14 2 (0.44%) Dart
14 2 (0.44%) Lua
14 2 (0.44%) Objective-C
Qualifications
1 135 (29.80%) CISSP
2 116 (25.61%) Degree
3 81 (17.88%) CISM
4 63 (13.91%) Cisco Certification
5 59 (13.02%) (ISC)2 CCSP
5 59 (13.02%) Computer Science Degree
6 58 (12.80%) CCSP
7 57 (12.58%) Security Cleared
8 48 (10.60%) Azure Certification
9 43 (9.49%) AWS Certification
10 41 (9.05%) DV Cleared
11 33 (7.28%) CCSK
12 22 (4.86%) AWS Certified Cloud Practitioner
13 20 (4.42%) OSCP
14 19 (4.19%) CREST Certified
15 18 (3.97%) CompTIA CySA+
15 18 (3.97%) CompTIA Security+
16 17 (3.75%) SANS
16 17 (3.75%) SC Cleared
17 16 (3.53%) GIAC
Quality Assurance & Compliance
1 103 (22.74%) NIST
2 40 (8.83%) ISO/IEC 27001
3 24 (5.30%) GRC
4 23 (5.08%) SOC 2
5 22 (4.86%) PCI DSS
6 19 (4.19%) GDPR
7 15 (3.31%) Cyber Essentials
8 11 (2.43%) COBIT
9 9 (1.99%) NIST 800
10 8 (1.77%) NCSC
11 6 (1.32%) Accessibility
11 6 (1.32%) Actionable Recommendations
11 6 (1.32%) Web Application Security Consortium
12 5 (1.10%) Cyber Essentials PLUS
12 5 (1.10%) QA
12 5 (1.10%) SLA
13 4 (0.88%) WCAG
14 3 (0.66%) HIPAA
14 3 (0.66%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
15 2 (0.44%) ISO 31000
System Software
1 64 (14.13%) Active Directory
2 62 (13.69%) Docker
3 14 (3.09%) VMware Infrastructure
4 10 (2.21%) Hyper-V
5 4 (0.88%) Microsoft Virtual Server
5 4 (0.88%) Virtual Servers
6 3 (0.66%) VMware ESXi
7 2 (0.44%) Virtual Machines
8 1 (0.22%) vSphere
Systems Management
1 86 (18.98%) Kubernetes
2 58 (12.80%) Terraform
3 48 (10.60%) Ansible
4 46 (10.15%) Single Sign-On
5 12 (2.65%) Computer Emergency Response Teams
6 8 (1.77%) Kiali
6 8 (1.77%) Microsoft Intune
6 8 (1.77%) Nessus
7 6 (1.32%) Nmap
8 4 (0.88%) CSIRT
9 3 (0.66%) HP Fortify
9 3 (0.66%) QRadar
9 3 (0.66%) Suricata
9 3 (0.66%) vCenter Server
10 1 (0.22%) CASB
10 1 (0.22%) Grafana
10 1 (0.22%) Nagios
10 1 (0.22%) Puppet
10 1 (0.22%) WMI
10 1 (0.22%) WSUS
Vendors
1 94 (20.75%) Microsoft
2 16 (3.53%) Splunk
3 15 (3.31%) VMware
4 12 (2.65%) CyberArk
5 11 (2.43%) BeyondTrust
5 11 (2.43%) ServiceNow
6 10 (2.21%) Qualys
7 8 (1.77%) AppDynamics
8 6 (1.32%) Juniper
9 5 (1.10%) F5
10 4 (0.88%) Cisco
10 4 (0.88%) OpenAI
11 3 (0.66%) IBM
11 3 (0.66%) Palo Alto
11 3 (0.66%) Veracode
12 2 (0.44%) Citrix
12 2 (0.44%) Darktrace
12 2 (0.44%) Google
12 2 (0.44%) Oracle
12 2 (0.44%) SAP