Security Information and Event Management (SIEM)
UK

The following table provides summary statistics for contract job vacancies with a requirement for SIEM skills. Included is a benchmarking guide to the contractor rates offered in vacancies that have cited SIEM over the 6 months to 13 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
13 May 2024
Same period 2023 Same period 2022
Rank 164 169 326
Rank change year-on-year +5 +157 -28
Contract jobs citing SIEM 644 879 730
As % of all contract jobs advertised in the UK 1.51% 1.51% 0.83%
As % of the Processes & Methodologies category 1.75% 1.68% 0.91%
Number of daily rates quoted 466 614 503
10th Percentile £425 £438 £401
25th Percentile £513 £500 £489
Median daily rate (50th Percentile) £600 £600 £580
Median % change year-on-year - +3.45% +10.48%
75th Percentile £700 £696 £688
90th Percentile £825 £775 £775
UK excluding London median daily rate £583 £560 £575
% change year-on-year +4.11% -2.61% +9.52%
Number of hourly rates quoted 6 7 5
10th Percentile - £62.75 -
25th Percentile - £67.63 £56.25
Median hourly rate £40.00 £75.00 £65.80
Median % change year-on-year -46.67% +13.98% +19.64%
75th Percentile £63.44 £77.63 £68.75
90th Percentile £74.63 £88.15 £74.00
UK excluding London median hourly rate £40.00 £75.00 £65.80
% change year-on-year -46.67% +13.98% +31.60%

All Process and Methodology Skills
UK

SIEM is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all contract job vacancies with a requirement for process or methodology skills.

Contract vacancies with a requirement for process or methodology skills 36,868 52,242 79,883
As % of all contract IT jobs advertised in the UK 86.23% 89.82% 90.61%
Number of daily rates quoted 23,721 36,208 56,080
10th Percentile £300 £325 £343
25th Percentile £413 £438 £428
Median daily rate (50th Percentile) £525 £550 £530
Median % change year-on-year -4.55% +3.77% +8.16%
75th Percentile £638 £650 £638
90th Percentile £750 £750 £738
UK excluding London median daily rate £500 £500 £475
% change year-on-year - +5.26% +8.57%
Number of hourly rates quoted 2,429 1,718 1,919
10th Percentile £12.75 £11.00 £12.50
25th Percentile £16.00 £16.22 £15.52
Median hourly rate £36.50 £36.00 £25.68
Median % change year-on-year +1.39% +40.19% +4.82%
75th Percentile £60.00 £65.00 £49.50
90th Percentile £72.50 £75.00 £65.00
UK excluding London median hourly rate £38.12 £35.00 £20.00
% change year-on-year +8.91% +75.00% -6.98%

SIEM
Job Vacancy Trend

Job postings citing SIEM as a proportion of all IT jobs advertised.

Job vacancy trend for SIEM in the UK

SIEM
Contractor Daily Rate Trend

3-month moving average daily rate quoted in jobs citing SIEM.

Daily rate trend for SIEM in the UK

SIEM
Daily Rate Histogram

Daily rate distribution for jobs citing SIEM over the 6 months to 13 May 2024.

Daily rate histogram for SIEM in the UK

SIEM
Contractor Hourly Rate Trend

3-month moving average hourly rates quoted in jobs citing SIEM.

Hourly rate trend for SIEM in the UK

SIEM
Hourly Rate Histogram

Hourly rate distribution of jobs citing SIEM over the 6 months to 13 May 2024.

Hourly rate histogram for SIEM in the UK

SIEM
Top 15 Contract Locations

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing SIEM within the UK over the 6 months to 13 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Jobs
England +24 595 £600 - 185
UK excluding London +32 392 £583 +4.11% 123
London -14 193 £600 -6.25% 75
South West +65 163 £570 +6.05% 21
Work from Home -42 141 £583 -6.80% 98
South East +27 119 £620 +4.42% 32
Midlands +48 83 £600 - 11
West Midlands +47 81 £600 - 9
North of England -68 31 £700 +24.38% 34
Yorkshire -15 21 £800 +39.13% 18
Scotland +46 15 £515 -10.43% 13
North West -40 10 £625 +13.64% 15
East of England +10 6 £600 +41.18% 6
Wales +11 2 £298 -38.18% 3
East Midlands +10 2 £596 -1.65% 2

SIEM
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 11 (1.71%) Confluence
2 5 (0.78%) SharePoint
3 4 (0.62%) Microsoft Exchange
4 1 (0.16%) IBM Notes
Applications
1 3 (0.47%) Microsoft Office
1 3 (0.47%) Microsoft PowerPoint
2 2 (0.31%) Microsoft Project
2 2 (0.31%) Spreadsheet
3 1 (0.16%) Microsoft Excel
Cloud Services
1 113 (17.55%) Azure
2 48 (7.45%) AWS
3 39 (6.06%) Azure Sentinel
4 18 (2.80%) Microsoft 365
5 17 (2.64%) SaaS
6 14 (2.17%) IaaS
7 12 (1.86%) Entra ID
8 9 (1.40%) Azure DevOps
8 9 (1.40%) GCP
9 8 (1.24%) Amazon CloudWatch
9 8 (1.24%) Azure Monitor
10 7 (1.09%) AWS CloudTrail
11 4 (0.62%) Amazon GuardDuty
11 4 (0.62%) Amazon S3
11 4 (0.62%) PaaS
12 3 (0.47%) AWS KMS
12 3 (0.47%) Azure ExpressRoute
12 3 (0.47%) Mimecast
12 3 (0.47%) Serverless
13 2 (0.31%) AWS Control Tower
Communications & Networking
1 124 (19.25%) Firewall
2 73 (11.34%) Network Security
3 34 (5.28%) TCP/IP
4 29 (4.50%) Intrusion Detection
5 21 (3.26%) SD-WAN
6 20 (3.11%) DNS
7 17 (2.64%) WAN
8 14 (2.17%) DHCP
9 12 (1.86%) Cisco ISE
10 11 (1.71%) VPN
10 11 (1.71%) Wireshark
11 10 (1.55%) HTTP
12 7 (1.09%) Cisco ASA
12 7 (1.09%) LAN
13 5 (0.78%) FTP
13 5 (0.78%) SMTP
13 5 (0.78%) tcpdump
14 4 (0.62%) HTTPS
14 4 (0.62%) POP3
14 4 (0.62%) SNMP
Database & Business Intelligence
1 56 (8.70%) Elasticsearch
2 15 (2.33%) Big Data
3 4 (0.62%) Amazon RDS
3 4 (0.62%) Apache Hive
3 4 (0.62%) Hadoop
3 4 (0.62%) NonStop SQL
3 4 (0.62%) SQL Server
3 4 (0.62%) Tableau
4 2 (0.31%) Amazon Redshift
4 2 (0.31%) Power BI
5 1 (0.16%) Data Lake
5 1 (0.16%) MySQL
Development Applications
1 20 (3.11%) JIRA
2 4 (0.62%) IDA Disassembler
3 3 (0.47%) Jenkins
4 2 (0.31%) Artifactory
4 2 (0.31%) Git
General
1 143 (22.20%) Social Skills
2 96 (14.91%) Finance
3 95 (14.75%) Analytical Skills
4 47 (7.30%) Public Sector
5 41 (6.37%) Banking
6 20 (3.11%) Telecoms
7 19 (2.95%) Manufacturing
8 17 (2.64%) Legal
9 12 (1.86%) Military
10 4 (0.62%) Presentation Skills
11 3 (0.47%) Inclusion and Diversity
12 2 (0.31%) Documentation Skills
12 2 (0.31%) Financial Institution
12 2 (0.31%) Fire and Rescue
12 2 (0.31%) Law
12 2 (0.31%) Police
12 2 (0.31%) Retail
13 1 (0.16%) Electronics
13 1 (0.16%) Marketing
13 1 (0.16%) Organisational Skills
Job Titles
1 193 (29.97%) Analyst
2 91 (14.13%) SOC Analyst
3 78 (12.11%) Security Engineer
4 74 (11.49%) Architect
5 62 (9.63%) SIEM Engineer
6 48 (7.45%) Security Analyst
6 48 (7.45%) Senior
7 42 (6.52%) Lead
8 41 (6.37%) SOC Engineer
9 39 (6.06%) Consultant
10 33 (5.12%) Network Architect
11 31 (4.81%) Threat Intelligence Analyst
12 30 (4.66%) Cybersecurity Analyst
13 29 (4.50%) Security Architect
14 26 (4.04%) Security Consultant
15 22 (3.42%) ArcSight Engineer
16 20 (3.11%) Cyber Threat Analyst
16 20 (3.11%) Cyber Threat Intelligence Analyst
17 19 (2.95%) Cyber Defence Analyst
17 19 (2.95%) Cybersecurity Engineer
Libraries, Frameworks & Software Standards
1 31 (4.81%) Elastic Stack
2 15 (2.33%) Apache NiFi
3 8 (1.24%) SAML
4 6 (0.93%) JSON
4 6 (0.93%) OAuth
5 5 (0.78%) Regular Expression
5 5 (0.78%) XML
6 4 (0.62%) Ajax
6 4 (0.62%) AngularJS
6 4 (0.62%) CSS
6 4 (0.62%) HTML
6 4 (0.62%) Kafka
6 4 (0.62%) OLE
6 4 (0.62%) OpenID
7 3 (0.47%) SOAP
7 3 (0.47%) Web Services
8 2 (0.31%) AWS SAM
8 2 (0.31%) REST
8 2 (0.31%) RESTful
8 2 (0.31%) YAML
Miscellaneous
1 121 (18.79%) Cyber Threat
2 104 (16.15%) Management Information System
3 103 (15.99%) Cyber Defence
4 89 (13.82%) Security Operations Centre
5 87 (13.51%) Cyber Kill Chain
6 37 (5.75%) Security Posture
7 27 (4.19%) CSOC
8 25 (3.88%) PKI
9 21 (3.26%) Distributed Applications
10 16 (2.48%) Cloud Native
11 12 (1.86%) Linux Command Line
12 11 (1.71%) Onboarding
13 10 (1.55%) Operational Technology
13 10 (1.55%) Public Cloud
14 9 (1.40%) Analytical Mindset
14 9 (1.40%) Hybrid Cloud
15 8 (1.24%) Cyberattack
16 7 (1.09%) Private Cloud
17 6 (0.93%) Data Protection Act
17 6 (0.93%) Distributed Denial-of-Service
Operating Systems
1 90 (13.98%) Linux
2 88 (13.66%) Windows
3 29 (4.50%) Unix
4 21 (3.26%) Red Hat Enterprise Linux
5 19 (2.95%) Windows Server
6 13 (2.02%) Android
6 13 (2.02%) Apple iOS
6 13 (2.02%) Ubuntu
7 12 (1.86%) Mac OS X
8 3 (0.47%) zOS
9 2 (0.31%) CentOS
9 2 (0.31%) Windows Server 2012
10 1 (0.16%) Mac OS
10 1 (0.16%) Oracle Linux
10 1 (0.16%) Windows 10
Processes & Methodologies
1 344 (53.42%) Cybersecurity
2 199 (30.90%) Security Operations
3 197 (30.59%) Incident Response
4 140 (21.74%) Information Security
5 130 (20.19%) Use Case
6 118 (18.32%) MITRE ATT&CK
7 111 (17.24%) Threat Intelligence
8 110 (17.08%) Vulnerability Management
9 106 (16.46%) Incident Management
10 105 (16.30%) SOAR
11 97 (15.06%) Cyber Threat Intelligence
12 74 (11.49%) Security Architecture
13 72 (11.18%) Mentoring
14 70 (10.87%) Cloud Security
15 68 (10.56%) Protective Monitoring
16 67 (10.40%) Analytics
17 59 (9.16%) Root Cause Analysis
18 57 (8.85%) Problem-Solving
19 53 (8.23%) Data Loss Prevention
20 52 (8.07%) Threat Detection
Programming Languages
1 43 (6.68%) PowerShell
2 31 (4.81%) Python
3 21 (3.26%) Kusto Query Language
4 12 (1.86%) C#
5 9 (1.40%) Bash
6 8 (1.24%) R
7 7 (1.09%) Java
7 7 (1.09%) JavaScript
8 4 (0.62%) SQL
9 3 (0.47%) VBScript
10 2 (0.31%) Go
11 1 (0.16%) Perl
11 1 (0.16%) Ruby
11 1 (0.16%) Shell Script
Qualifications
1 340 (52.80%) Security Cleared
2 245 (38.04%) DV Cleared
3 82 (12.73%) SC Cleared
4 81 (12.58%) Degree
5 79 (12.27%) CISSP
6 33 (5.12%) Computer Science Degree
7 31 (4.81%) SANS
8 30 (4.66%) CISM
9 24 (3.73%) CEH
10 21 (3.26%) CompTIA Security+
11 20 (3.11%) Cisco Certification
12 13 (2.02%) GIAC
13 11 (1.71%) Microsoft Certification
14 10 (1.55%) CCNA
15 9 (1.40%) Azure Certification
15 9 (1.40%) CCNP
16 6 (0.93%) CCSP
16 6 (0.93%) PMP
17 5 (0.78%) GCIA
17 5 (0.78%) GCIH
Quality Assurance & Compliance
1 141 (21.89%) NIST
2 75 (11.65%) ISO/IEC 27001
3 60 (9.32%) NIST 800
4 24 (3.73%) GDPR
5 19 (2.95%) PCI DSS
6 17 (2.64%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
7 15 (2.33%) Actionable Recommendations
8 14 (2.17%) HIPAA
9 10 (1.55%) California Consumer Privacy Act
10 9 (1.40%) HMG Security Policy Framework
11 8 (1.24%) NCSC
12 7 (1.09%) GRC
13 4 (0.62%) COBIT
13 4 (0.62%) Cyber Essentials
13 4 (0.62%) QA
14 3 (0.47%) Cyber Essentials PLUS
14 3 (0.47%) ISO 9001
15 2 (0.31%) Disclosure Scotland
15 2 (0.31%) ISA99
15 2 (0.31%) ISO 22301
System Software
1 38 (5.90%) Active Directory
2 12 (1.86%) VMware Infrastructure
3 9 (1.40%) iptables
4 7 (1.09%) Virtual Machines
4 7 (1.09%) VMware ESXi
4 7 (1.09%) VMware NSX
5 6 (0.93%) Docker
6 5 (0.78%) Snort
7 2 (0.31%) XenApp
Systems Management
1 30 (4.66%) Kibana
2 26 (4.04%) logstash
3 17 (2.64%) Terraform
4 16 (2.48%) QRadar
5 10 (1.55%) Nessus
5 10 (1.55%) SCCM
6 9 (1.40%) Ansible
7 7 (1.09%) ArcSight ESM
7 7 (1.09%) Kubernetes
7 7 (1.09%) Microsoft Intune
7 7 (1.09%) vCenter Server
8 6 (0.93%) Single Sign-On
9 5 (0.78%) FortiGate
10 4 (0.62%) Computer Emergency Response Teams
10 4 (0.62%) Nagios
10 4 (0.62%) OpenView
10 4 (0.62%) Trend Micro Deep Security
11 3 (0.47%) CASB
11 3 (0.47%) CSIRT
11 3 (0.47%) Puppet
Vendors
1 174 (27.02%) Microsoft
2 64 (9.94%) Splunk
3 38 (5.90%) ArcSight
3 38 (5.90%) LogRhythm
4 33 (5.12%) Cisco
5 24 (3.73%) Qualys
6 18 (2.80%) Varonis
7 17 (2.64%) Forcepoint
8 14 (2.17%) Red Hat
9 12 (1.86%) Palo Alto
9 12 (1.86%) Rapid7
9 12 (1.86%) VMware
10 11 (1.71%) CrowdStrike
11 9 (1.40%) Fortinet
11 9 (1.40%) Google
12 8 (1.24%) AlienVault
12 8 (1.24%) SolarWinds
13 7 (1.09%) Sophos
13 7 (1.09%) Veeam
13 7 (1.09%) Zscaler