Threat Modelling
UK

The following table provides summary statistics for permanent job vacancies with a requirement for Threat Modelling skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Threat Modelling over the 6 months to 9 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
9 May 2024
Same period 2023 Same period 2022
Rank 762 531 755
Rank change year-on-year -231 +224 -11
Permanent jobs citing Threat Modelling 140 522 521
As % of all permanent jobs advertised in the UK 0.14% 0.52% 0.33%
As % of the Processes & Methodologies category 0.17% 0.54% 0.35%
Number of salaries quoted 101 272 271
10th Percentile £46,875 £46,454 £51,250
25th Percentile £57,000 £61,750 £60,000
Median annual salary (50th Percentile) £75,000 £81,928 £75,000
Median % change year-on-year -8.46% +9.24% -
75th Percentile £90,000 £100,000 £92,500
90th Percentile £103,750 £113,750 £101,250
UK excluding London median annual salary £58,750 £70,000 £61,000
% change year-on-year -16.07% +14.75% -6.15%

All Process and Methodology Skills
UK

Threat Modelling is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 84,809 96,894 150,102
As % of all permanent jobs advertised in the UK 85.57% 95.61% 95.67%
Number of salaries quoted 59,843 56,945 82,179
10th Percentile £29,000 £34,000 £33,500
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £61,180 £60,000
Median % change year-on-year -10.10% +1.97% +9.09%
75th Percentile £72,500 £81,250 £80,000
90th Percentile £92,500 £100,000 £96,550
UK excluding London median annual salary £50,000 £55,000 £52,500
% change year-on-year -9.09% +4.76% +9.38%

Threat Modelling
Job Vacancy Trend

Job postings citing Threat Modelling as a proportion of all IT jobs advertised.

Job vacancy trend for Threat Modelling in the UK

Threat Modelling
Salary Trend

3-month moving average salary quoted in jobs citing Threat Modelling.

Salary trend for Threat Modelling in the UK

Threat Modelling
Salary Histogram

Salary distribution for jobs citing Threat Modelling over the 6 months to 9 May 2024.

Salary histogram for Threat Modelling in the UK

Threat Modelling
Top 13 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Threat Modelling within the UK over the 6 months to 9 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -203 102 £70,000 -14.86% 57
UK excluding London -133 71 £58,750 -16.07% 28
Work from Home -62 38 £82,500 +10.00% 27
London -108 37 £97,500 +14.71% 28
North of England +8 27 £50,000 -28.29% 6
North West -6 20 £50,000 -28.57% 3
South West -16 14 £72,500 +11.97% 7
South East -62 13 £59,000 -34.44% 2
West Midlands +7 10 £72,500 -0.68% 9
Midlands -18 10 £72,500 -0.68% 9
Yorkshire +64 7 £50,000 -28.00% 3
Scotland -86 6 - - 2
East of England +19 1 - - 2

Threat Modelling
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Applications
1 11 (7.86%) Microsoft Office
2 9 (6.43%) Microsoft Excel
Cloud Services
1 80 (57.14%) Azure
2 77 (55.00%) AWS
3 31 (22.14%) GCP
4 17 (12.14%) Microsoft 365
5 12 (8.57%) Power Platform
5 12 (8.57%) Serverless
6 8 (5.71%) AWS CloudFormation
6 8 (5.71%) Cloud Computing
6 8 (5.71%) PaaS
7 7 (5.00%) Amazon CloudWatch
7 7 (5.00%) Amazon EC2
7 7 (5.00%) Amazon GuardDuty
7 7 (5.00%) Amazon S3
7 7 (5.00%) AWS CloudTrail
7 7 (5.00%) AWS Lambda
7 7 (5.00%) Virtual Private Cloud
8 6 (4.29%) Azure Service Fabric
8 6 (4.29%) Entra ID
8 6 (4.29%) IaaS
8 6 (4.29%) SaaS
Communications & Networking
1 24 (17.14%) Firewall
2 18 (12.86%) LAN
3 15 (10.71%) DNS
4 11 (7.86%) Intrusion Detection
5 9 (6.43%) Network Security
6 6 (4.29%) HTTP
7 5 (3.57%) Internet
7 5 (3.57%) SSL
7 5 (3.57%) VPN
8 4 (2.86%) SMTP
9 3 (2.14%) Wireless
10 2 (1.43%) 802.11
10 2 (1.43%) Bluetooth
10 2 (1.43%) IPv4
10 2 (1.43%) WAN
10 2 (1.43%) ZigBee
11 1 (0.71%) SD-WAN
11 1 (0.71%) TCP/IP
11 1 (0.71%) Wireshark
Database & Business Intelligence
1 9 (6.43%) Power BI
2 7 (5.00%) Amazon RDS
3 6 (4.29%) Azure SQL Database
4 3 (2.14%) Data Lake
5 2 (1.43%) Big Data
Development Applications
1 18 (12.86%) Jenkins
2 5 (3.57%) Burp Suite
2 5 (3.57%) Metasploit
3 2 (1.43%) Bitbucket
3 2 (1.43%) sqlmap
4 1 (0.71%) CircleCI
4 1 (0.71%) GitLab
4 1 (0.71%) Snyk
General
1 43 (30.71%) Social Skills
2 33 (23.57%) Finance
3 17 (12.14%) Presentation Skills
3 17 (12.14%) Public Sector
4 13 (9.29%) Inclusion and Diversity
4 13 (9.29%) Law
4 13 (9.29%) Retail
5 12 (8.57%) Banking
6 9 (6.43%) Marketing
7 7 (5.00%) Analytical Skills
8 5 (3.57%) Manufacturing
9 4 (2.86%) Investment Banking
9 4 (2.86%) Legal
10 2 (1.43%) Cyber-Physical System
10 2 (1.43%) Financial Institution
10 2 (1.43%) Influencing Skills
10 2 (1.43%) Organisational Skills
11 1 (0.71%) Automotive
11 1 (0.71%) Pharmaceutical
11 1 (0.71%) Telecoms
Job Titles
1 48 (34.29%) Architect
2 41 (29.29%) Security Architect
3 39 (27.86%) Senior
4 23 (16.43%) Cybersecurity Architect
4 23 (16.43%) Security Engineer
5 16 (11.43%) Lead
6 15 (10.71%) Senior Architect
7 13 (9.29%) Consultant
7 13 (9.29%) Security Consultant
8 12 (8.57%) Security Technical Architect
8 12 (8.57%) Technical Architect
9 10 (7.14%) AWS Engineer
10 9 (6.43%) Senior Security Architect
11 8 (5.71%) Cybersecurity Engineer
11 8 (5.71%) Information Architect
11 8 (5.71%) Information Security Architect
12 7 (5.00%) Analyst
12 7 (5.00%) Senior Consultant
12 7 (5.00%) Senior Security Consultant
12 7 (5.00%) Senior Security Engineer
Libraries, Frameworks & Software Standards
1 12 (8.57%) OAuth
1 12 (8.57%) Web Services
2 6 (4.29%) REST
2 6 (4.29%) SAML
2 6 (4.29%) SOAP
3 4 (2.86%) JWT
4 3 (2.14%) HTML
5 2 (1.43%) 802.1X
5 2 (1.43%) HTML5
5 2 (1.43%) Middleware
5 2 (1.43%) OAuth2
5 2 (1.43%) OpenID
5 2 (1.43%) WebSockets
6 1 (0.71%) AWS CDK
Miscellaneous
1 36 (25.71%) Cyberattack
2 29 (20.71%) Management Information System
3 25 (17.86%) Cyber Threat
4 22 (15.71%) Data Centre
5 19 (13.57%) PKI
6 17 (12.14%) Security Posture
7 16 (11.43%) Onboarding
8 12 (8.57%) iPhone
9 8 (5.71%) Hybrid Cloud
9 8 (5.71%) Public Cloud
10 7 (5.00%) IoT
11 6 (4.29%) Distributed Systems
12 5 (3.57%) PropTech
13 4 (2.86%) Mobile App
14 3 (2.14%) Cloud Native
14 3 (2.14%) SCADA
14 3 (2.14%) Self-Motivation
15 2 (1.43%) Renewable Energy
15 2 (1.43%) Robotics
15 2 (1.43%) Security Operations Centre
Operating Systems
1 19 (13.57%) Windows
2 8 (5.71%) Kali Linux
3 7 (5.00%) Android
3 7 (5.00%) Apple iOS
4 2 (1.43%) Linux
5 1 (0.71%) Red Hat Enterprise Linux
5 1 (0.71%) Unix
5 1 (0.71%) Windows Server
Processes & Methodologies
1 97 (69.29%) Cybersecurity
2 58 (41.43%) Information Security
3 47 (33.57%) Application Security
4 41 (29.29%) Incident Response
5 38 (27.14%) Vulnerability Management
6 35 (25.00%) Security Architecture
7 34 (24.29%) Penetration Testing
8 28 (20.00%) Threat Management
9 26 (18.57%) Identity Access Management
10 25 (17.86%) Threat Intelligence
11 24 (17.14%) Cyber Threat Intelligence
11 24 (17.14%) OWASP
11 24 (17.14%) Secure Coding
11 24 (17.14%) Stakeholder Management
12 22 (15.71%) Cryptography
12 22 (15.71%) Problem-Solving
12 22 (15.71%) SDLC
13 21 (15.00%) Cyber Assurance
13 21 (15.00%) MITRE ATT&CK
13 21 (15.00%) Roadmaps
Programming Languages
1 34 (24.29%) Python
2 11 (7.86%) Go
2 11 (7.86%) Java
3 6 (4.29%) C#
3 6 (4.29%) JavaScript
3 6 (4.29%) SQL
4 5 (3.57%) PowerShell
5 4 (2.86%) Lua
5 4 (2.86%) Ruby
5 4 (2.86%) Rust
6 2 (1.43%) Dart
6 2 (1.43%) Kotlin
6 2 (1.43%) Objective-C
6 2 (1.43%) PHP
6 2 (1.43%) Swift
7 1 (0.71%) C++
Qualifications
1 74 (52.86%) CISSP
2 55 (39.29%) CISM
3 38 (27.14%) AWS Certification
4 37 (26.43%) GIAC
5 26 (18.57%) OSCP
6 25 (17.86%) Degree
7 24 (17.14%) Security Cleared
8 23 (16.43%) CREST Certified
8 23 (16.43%) SC Cleared
9 22 (15.71%) Azure Certification
10 19 (13.57%) CRISC
11 15 (10.71%) ISSMP
12 12 (8.57%) BPSS Clearance
13 10 (7.14%) CISA
14 9 (6.43%) Computer Science Degree
15 8 (5.71%) CEH
15 8 (5.71%) Master's Degree
16 7 (5.00%) (ISC)2 CCSP
16 7 (5.00%) Cisco Certification
16 7 (5.00%) SANS
Quality Assurance & Compliance
1 39 (27.86%) NIST
2 28 (20.00%) ISO/IEC 27001
3 22 (15.71%) COBIT
4 12 (8.57%) PCI DSS
5 7 (5.00%) Cyber Essentials
5 7 (5.00%) QA
5 7 (5.00%) SOC 2
6 6 (4.29%) Web Application Security Consortium
7 5 (3.57%) Cyber Essentials PLUS
7 5 (3.57%) IASME
7 5 (3.57%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
8 4 (2.86%) GDPR
8 4 (2.86%) NCSC
8 4 (2.86%) NIST 800
9 2 (1.43%) HIPAA
9 2 (1.43%) ISO 31000
10 1 (0.71%) GRC
10 1 (0.71%) IEC 61508
System Software
1 20 (14.29%) Active Directory
2 4 (2.86%) Virtual Machines
3 3 (2.14%) Docker
Systems Management
1 18 (12.86%) Kubernetes
2 15 (10.71%) Ansible
3 9 (6.43%) Nessus
4 7 (5.00%) Computer Emergency Response Teams
5 5 (3.57%) Suricata
6 4 (2.86%) Single Sign-On
7 3 (2.14%) HP Fortify
7 3 (2.14%) Nmap
8 2 (1.43%) QRadar
8 2 (1.43%) Terraform
9 1 (0.71%) Anchore
9 1 (0.71%) Computer Incident Response Team
Vendors
1 25 (17.86%) Microsoft
2 15 (10.71%) Alibaba
3 12 (8.57%) Google
4 10 (7.14%) Splunk
5 6 (4.29%) Cisco
5 6 (4.29%) Palo Alto
6 5 (3.57%) Juniper
7 3 (2.14%) Qualys
7 3 (2.14%) Veracode
8 2 (1.43%) Fortinet
8 2 (1.43%) IBM
9 1 (0.71%) Forcepoint
9 1 (0.71%) Intel
9 1 (0.71%) Netskope
9 1 (0.71%) Okta
9 1 (0.71%) Red Hat
9 1 (0.71%) VMware