Period
to 16 October 2017

The following table provides summary statistics for contract job vacancies advertised in London with a requirement for Penetration Testing skills. Included is a benchmarking guide to the contractor rates offered in vacancies that have cited Penetration Testing over the 6 months to 16 October 2017 with a comparison to the same period in the previous 2 years.

Note that daily and hourly rates are treated separately in these statistics. When calculating contractor rate percentiles, daily rates are never derived from quoted hourly rates or vice versa.

Penetration Testing
England > London
6 months to
16 Oct 2017
Same period 2016 Same period 2015
Rank 393 389 459
Rank change year-on-year -4 +70 +17
Contract jobs citing Penetration Testing 233 238 147
As % of all contract IT jobs advertised in London 0.52% 0.54% 0.31%
As % of the Processes & Methodologies category 0.60% 0.62% 0.38%
Number of daily rates quoted 165 178 118
London median daily rate £500 £457 £450
Median daily rate % change year-on-year +9.53% +1.44% -5.26%
10th Percentile £343 £363 £306
90th Percentile £625 £663 £579
England median daily rate £500 £475 £450
% change year-on-year +5.26% +5.56% -
Number of hourly rates quoted 1 0 0
London median hourly rate £62.50 - -
England median hourly rate £60.87 £35.00 -
% change year-on-year +73.91% - -

Penetration Testing is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all contract job vacancies advertised in London with a requirement for process or methodology skills.

All Process and Methodology Skills
London
Contract vacancies with a requirement for process or methodology skills 39029 38289 39127
As % of all contract IT jobs advertised in London 86.86% 86.21% 83.34%
Number of daily rates quoted 28300 27599 28007
London median daily rate £500 £464 £450
Median daily rate % change year-on-year +7.87% +3.00% +2.86%
10th Percentile £313 £300 £283
90th Percentile £663 £640 £638
England median daily rate £450 £425 £415
% change year-on-year +5.88% +2.41% +3.75%
Number of hourly rates quoted 361 382 477
London median hourly rate £23.00 £21.13 £20.00
Median hourly rate % change year-on-year +8.85% +5.65% +11.11%
10th Percentile £13.24 £11.40 £11.25
90th Percentile £52.00 £52.50 £52.18
England median hourly rate £25.00 £23.78 £22.00
% change year-on-year +5.15% +8.07% +12.82%

Penetration Testing
Job Vacancy Trend in London

Job postings citing Penetration Testing as a percentage of all IT jobs advertised in London.

Job vacancy trend for Penetration Testing in London

Penetration Testing
Contractor Daily Rate Trend in London

This chart provides the 3-month moving average for daily rates quoted in contract jobs citing Penetration Testing in London.

Contractor daily rate trend for Penetration Testing in London

Penetration Testing
Contractor Daily Rate Histogram in London

The daily rate distribution of IT jobs citing Penetration Testing in London over the 6 months to 16 October 2017.

Contractor daily rate histogram for Penetration Testing in London

Penetration Testing
Contractor Hourly Rate Trend in London

This chart provides the 3-month moving average for contractor hourly rates quoted in IT jobs citing Penetration Testing in London.

Contractor hourly rate trend for Penetration Testing in London

Penetration Testing
Contract Job Locations in London

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing Penetration Testing within the London region over the 6 months to 16 October 2017. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Job
Vacancies
Central London +14 31 £550 +37.50% 6
West London +22 24 £488 +18.18% 1
East London -13 6 £563 +14.80%
South London -16 2 £275 -42.11%
Penetration Testing
England

For the 6 months to 16 October 2017, IT contractor jobs citing Penetration Testing also mentioned the following skills in order of popularity. The figures indicate the number co-occurrences and its proportion to all contract ads across the London region with a requirement for Penetration Testing.

1 75 (32.19%) Information Security
2 72 (30.90%) Cybersecurity
3 64 (27.47%) CISSP
4 52 (22.32%) Linux
5 48 (20.60%) Vulnerability Management
6 47 (20.17%) Finance
7 46 (19.74%) Agile Software Development
7 46 (19.74%) Cyberthreat
8 45 (19.31%) Security Operations
9 43 (18.45%) Firewall
10 42 (18.03%) Security Testing
11 40 (17.17%) Network Security
12 38 (16.31%) OWASP
13 37 (15.88%) SIEM
14 36 (15.45%) Ethical Hacking
14 36 (15.45%) ITIL
15 34 (14.59%) Java
15 34 (14.59%) Puppet
15 34 (14.59%) Security Cleared
15 34 (14.59%) SDLC
16 33 (14.16%) CREST Certified
16 33 (14.16%) Security Monitoring
16 33 (14.16%) Vulnerability Assessment
16 33 (14.16%) ISO/IEC 27001
17 31 (13.30%) CEH
18 30 (12.88%) Incident Management
19 29 (12.45%) Analytics
19 29 (12.45%) Opscode Chef
19 29 (12.45%) CISM
19 29 (12.45%) Windows

Penetration Testing
Co-occurring IT Skills in London by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 6 (2.58%) IIS
2 5 (2.15%) nginx
3 4 (1.72%) CMS
3 4 (1.72%) TYPO3
3 4 (1.72%) Umbraco
3 4 (1.72%) WordPress
4 3 (1.29%) SharePoint
5 1 (0.43%) Confluence
5 1 (0.43%) Tomcat
Applications
1 5 (2.15%) Microsoft Excel
2 4 (1.72%) Microsoft Office
2 4 (1.72%) MS Visio
3 2 (0.86%) Microsoft PowerPoint
Business Applications
1 1 (0.43%) Oracle Financials
Cloud Services
1 28 (12.02%) Amazon AWS
2 25 (10.73%) IaaS
3 11 (4.72%) PaaS
4 6 (2.58%) GitHub
5 4 (1.72%) IBM Cloud
6 3 (1.29%) Microsoft Azure
6 3 (1.29%) Mimecast
6 3 (1.29%) OpenShift
6 3 (1.29%) SaaS
6 3 (1.29%) Virtual Private Cloud
7 1 (0.43%) AWS CloudFormation
7 1 (0.43%) Office 365
Communications & Networking
1 43 (18.45%) Firewall
2 40 (17.17%) Network Security
3 23 (9.87%) TCP/IP
4 17 (7.30%) Internet
5 15 (6.44%) IPsec
6 14 (6.01%) HTTP
6 14 (6.01%) HTTPS
7 12 (5.15%) Intrusion Detection
8 8 (3.43%) Kerberos
8 8 (3.43%) LAN
8 8 (3.43%) Reverse Proxy
8 8 (3.43%) VPN
8 8 (3.43%) WAN
9 6 (2.58%) SSH
9 6 (2.58%) Wi-Fi
10 5 (2.15%) Cisco ASA
10 5 (2.15%) NAS
10 5 (2.15%) SAN
10 5 (2.15%) VoIP
11 4 (1.72%) DNS
Database & Business Intelligence
1 10 (4.29%) MongoDB
2 4 (1.72%) Maltego
2 4 (1.72%) PostgreSQL
3 2 (0.86%) Data Warehouse
3 2 (0.86%) RDBMS
3 2 (0.86%) Relational Database
4 1 (0.43%) Amazon DynamoDB
4 1 (0.43%) Blockchain
4 1 (0.43%) MySQL
Development Applications
1 8 (3.43%) Visual Studio
2 7 (3.00%) JIRA
3 6 (2.58%) Git (software)
4 4 (1.72%) Jenkins
4 4 (1.72%) Subversion
5 3 (1.29%) Burp Suite
5 3 (1.29%) CircleCI
5 3 (1.29%) Travis CI
6 2 (0.86%) Metasploit
7 1 (0.43%) AppScan
7 1 (0.43%) git-flow
7 1 (0.43%) IDA Disassembler
7 1 (0.43%) LoadRunner
7 1 (0.43%) NeoLoad
7 1 (0.43%) Paros
7 1 (0.43%) sqlmap
7 1 (0.43%) WebScarab
General
1 47 (20.17%) Finance
2 21 (9.01%) Banking
3 9 (3.86%) Legal
4 8 (3.43%) Retail
5 5 (2.15%) Electronics
5 5 (2.15%) Telecoms
6 4 (1.72%) Marketing
7 3 (1.29%) Manufacturing
8 2 (0.86%) Law
9 1 (0.43%) Local Government
Job Titles
1 67 (28.76%) Analyst
2 52 (22.32%) Security Analyst
3 30 (12.88%) Application Security Analyst
4 29 (12.45%) Tester
5 28 (12.02%) Penetration Tester
6 25 (10.73%) Security Engineer
7 24 (10.30%) Consultant
8 21 (9.01%) Security Consultant
9 18 (7.73%) Security Specialist
10 11 (4.72%) Business Analyst
10 11 (4.72%) IT Analyst
10 11 (4.72%) IT Security Analyst
11 10 (4.29%) Cybersecurity Consultant
11 10 (4.29%) Delivery Manager
12 9 (3.86%) Data Business Analyst
12 9 (3.86%) Information Analyst
12 9 (3.86%) Information Security Analyst
12 9 (3.86%) Technical Analyst
13 8 (3.43%) Architect
13 8 (3.43%) Security Architect
Libraries, Frameworks & Software Standards
1 16 (6.87%) .NET
2 8 (3.43%) SAML
2 8 (3.43%) Web Services
3 6 (2.58%) ActiveMQ
4 5 (2.15%) HTML
5 4 (1.72%) CSS
6 2 (0.86%) .NET Framework
6 2 (0.86%) ASP.NET
6 2 (0.86%) Java EE
7 1 (0.43%) 802.1X
7 1 (0.43%) CGI
7 1 (0.43%) Memcached
7 1 (0.43%) Node.js
7 1 (0.43%) REST
7 1 (0.43%) Velocity
7 1 (0.43%) XML
Miscellaneous
1 46 (19.74%) Cyberthreat
2 19 (8.15%) PKI
3 16 (6.87%) Management Information System
4 15 (6.44%) Analytical Skills
5 13 (5.58%) Distributed Denial-of-Service
5 13 (5.58%) Wiki
6 8 (3.43%) Linux Command Line
7 7 (3.00%) Public Cloud
8 6 (2.58%) Data Centre
9 4 (1.72%) Algorithms
9 4 (1.72%) Online Banking
9 4 (1.72%) User Experience
10 3 (1.29%) Cyber Defence
10 3 (1.29%) Enterprise Software
10 3 (1.29%) Mobile App
11 2 (0.86%) Blackberry
11 2 (0.86%) Data Protection Act
12 1 (0.43%) CESG
12 1 (0.43%) Cyber Attack
12 1 (0.43%) Greenfield Project
Operating Systems
1 52 (22.32%) Linux
2 29 (12.45%) Windows
3 18 (7.73%) Unix
4 6 (2.58%) Kali Linux
5 4 (1.72%) Apple iOS
5 4 (1.72%) Mac OS X
6 3 (1.29%) Android
6 3 (1.29%) Windows Server
7 1 (0.43%) Red Hat Enterprise Linux
7 1 (0.43%) Ubuntu
7 1 (0.43%) Windows 10
7 1 (0.43%) Windows 7
Processes & Methodologies
1 75 (32.19%) Information Security
2 72 (30.90%) Cybersecurity
3 48 (20.60%) Vulnerability Management
4 46 (19.74%) Agile Software Development
5 45 (19.31%) Security Operations
6 42 (18.03%) Security Testing
7 38 (16.31%) OWASP
8 37 (15.88%) SIEM
9 36 (15.45%) Ethical Hacking
9 36 (15.45%) ITIL
10 34 (14.59%) SDLC
11 33 (14.16%) Security Monitoring
11 33 (14.16%) Vulnerability Assessment
12 30 (12.88%) Incident Management
13 29 (12.45%) Analytics
13 29 (12.45%) Configuration Management
14 27 (11.59%) Cryptography
15 26 (11.16%) Project Management
16 19 (8.15%) PRINCE2
17 18 (7.73%) Data Protection
Programming Languages
1 34 (14.59%) Java
2 28 (12.02%) Python
3 21 (9.01%) Bash Shell
3 21 (9.01%) Ruby
4 17 (7.30%) SQL
5 15 (6.44%) C#
6 14 (6.01%) C-shell
6 14 (6.01%) Korn
7 11 (4.72%) PHP
8 10 (4.29%) JavaScript
9 6 (2.58%) C
10 4 (1.72%) C++
10 4 (1.72%) Perl
11 2 (0.86%) COBOL
12 1 (0.43%) Assembly Language
12 1 (0.43%) PowerShell
12 1 (0.43%) VBScript
Qualifications
1 64 (27.47%) CISSP
2 34 (14.59%) Security Cleared
3 33 (14.16%) CREST Certified
4 31 (13.30%) CEH
5 29 (12.45%) CISM
6 26 (11.16%) SC Cleared
7 24 (10.30%) CRISC
8 22 (9.44%) Degree
9 15 (6.44%) GIAC
9 15 (6.44%) SANS
10 12 (5.15%) CISA
10 12 (5.15%) MAPM
11 10 (4.29%) CHECK Team Member
12 9 (3.86%) CASP
12 9 (3.86%) MCSE
12 9 (3.86%) Microsoft Certification
12 9 (3.86%) SSCP
13 8 (3.43%) CGEIT
14 7 (3.00%) ISO 27001 Lead Implementer
15 6 (2.58%) DV Cleared
Quality Assurance & Compliance
1 33 (14.16%) ISO/IEC 27001
2 20 (8.58%) PCI DSS
3 11 (4.72%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
4 10 (4.29%) GDPR
5 7 (3.00%) COBIT
6 4 (1.72%) Cyber Essentials
6 4 (1.72%) QA
6 4 (1.72%) Sarbanes-Oxley
7 3 (1.29%) Data Quality
7 3 (1.29%) PSD2
8 2 (0.86%) PMO
9 1 (0.43%) GAAP
9 1 (0.43%) HMG Security Policy Framework
System Software
1 5 (2.15%) Active Directory
2 4 (1.72%) VMware ESXi
2 4 (1.72%) VMware Infrastructure
3 3 (1.29%) ProxySG
3 3 (1.29%) Virtual Servers
4 1 (0.43%) Docker
Systems Management
1 34 (14.59%) Puppet
2 29 (12.45%) Opscode Chef
3 15 (6.44%) HP Fortify
4 8 (3.43%) CA Single Sign-On
5 7 (3.00%) Nessus
6 6 (2.58%) Terraform
7 4 (1.72%) BMC PATROL
7 4 (1.72%) Systems Management Server (SMS)
8 2 (0.86%) AirWatch
8 2 (0.86%) EnCase
8 2 (0.86%) Nagios
8 2 (0.86%) Nmap
9 1 (0.43%) Ansible
Vendors
1 22 (9.44%) Microsoft
2 18 (7.73%) HP
3 16 (6.87%) Splunk
4 13 (5.58%) ArcSight
5 11 (4.72%) Qualys
6 10 (4.29%) Cisco
6 10 (4.29%) Citrix
7 9 (3.86%) Juniper
8 8 (3.43%) CA
9 7 (3.00%) CheckPoint
10 6 (2.58%) Oracle
10 6 (2.58%) VMware
11 5 (2.15%) SolarWinds
12 4 (1.72%) BMC
12 4 (1.72%) Palo Alto
12 4 (1.72%) ServiceNow
12 4 (1.72%) Sophos
12 4 (1.72%) Tableau
13 3 (1.29%) Apigee
13 3 (1.29%) Darktrace