Static Application Security Testing Contracts

Static Application Security Testing (SAST)
UK

The table below provides summary statistics for contract job vacancies requiring Static Application Security Testing skills. It includes a benchmarking guide to the contractor rates offered in vacancies that cited Static Application Security Testing over the 6 months leading up to 4 July 2025, comparing them to the same period in the previous two years.

6 months to
4 Jul 2025
Same period 2024 Same period 2023
Rank 491 494 620
Rank change year-on-year +3 +126 +191
Contract jobs citing Static Application Security Testing 60 101 60
As % of all contract jobs advertised in the UK 0.19% 0.23% 0.11%
As % of the Processes & Methodologies category 0.21% 0.27% 0.12%
Number of daily rates quoted 44 79 46
10th Percentile £370 £472 £431
25th Percentile £457 £550 £506
Median daily rate (50th Percentile) £650 £650 £650
75th Percentile £706 £744 £738
90th Percentile £764 £823 £800
UK excluding London median daily rate £487 £625 £725
% change year-on-year -22.12% -13.79% +69.79%

All Process and Methodology Skills
UK

Static Application Security Testing falls under the Processes and Methodologies category. For comparison with the information above, the following table provides summary statistics for all contract job vacancies requiring process or methodology skills.

Contract vacancies with a requirement for process or methodology skills 28,676 37,017 50,286
As % of all contract IT jobs advertised in the UK 90.74% 85.22% 89.54%
Number of daily rates quoted 18,067 23,615 34,636
10th Percentile £300 £300 £325
25th Percentile £405 £413 £438
Median daily rate (50th Percentile) £505 £525 £550
Median % change year-on-year -3.81% -4.55% +1.38%
75th Percentile £625 £638 £650
90th Percentile £738 £750 £750
UK excluding London median daily rate £475 £500 £500
% change year-on-year -5.00% - -
Number of hourly rates quoted 1,409 2,525 1,716
10th Percentile £14.20 £12.75 £12.00
25th Percentile £17.35 £16.06 £16.59
Median hourly rate £25.15 £37.50 £37.42
Median % change year-on-year -32.93% +0.21% +43.92%
75th Percentile £53.75 £61.30 £65.00
90th Percentile £70.00 £72.50 £75.00
UK excluding London median hourly rate £24.66 £38.12 £35.00
% change year-on-year -35.31% +8.91% +64.71%

Static Application Security Testing
Job Vacancy Trend

Job postings citing Static Application Security Testing as a proportion of all IT jobs advertised.

Job vacancy trend for Static Application Security Testing in the UK

Static Application Security Testing
Contractor Daily Rate Trend

3-month moving average daily rate quoted in jobs citing Static Application Security Testing.

Daily rate trend for Static Application Security Testing in the UK

Static Application Security Testing
Daily Rate Histogram

Daily rate distribution for jobs citing Static Application Security Testing over the 6 months to 4 July 2025.

Daily rate histogram for Static Application Security Testing in the UK

Static Application Security Testing
Contractor Hourly Rate Trend

3-month moving average hourly rates quoted in jobs citing Static Application Security Testing.

Hourly rate trend for Static Application Security Testing in the UK

Static Application Security Testing
Top 8 Contract Locations

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing Static Application Security Testing within the UK over the 6 months to 4 July 2025. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Jobs
England +30 46 £650 - 253
London +10 40 £675 +3.85% 98
Work from Home +34 22 £464 -22.75% 84
UK excluding London +22 10 £487 -22.12% 186
Scotland -4 6 £500 -9.09% 20
North of England +9 3 £466 -29.66% 32
Yorkshire - 3 £466 - 15
South East +39 1 £650 - 45

Static Application Security Testing
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 1 (1.67%) MQSeries
Business Applications
1 4 (6.67%) Dynamics GP
Cloud Services
1 41 (68.33%) Azure
2 28 (46.67%) AWS
3 25 (41.67%) GCP
4 23 (38.33%) GitHub
5 10 (16.67%) Azure AKS
6 9 (15.00%) Azure Sentinel
7 7 (11.67%) Azure DevOps
7 7 (11.67%) GitHub Actions
7 7 (11.67%) Power Platform
8 5 (8.33%) AWS CloudFormation
9 4 (6.67%) Google Kubernetes Engine
9 4 (6.67%) Microsoft 365
9 4 (6.67%) SaaS
10 3 (5.00%) Azure Data Factory
10 3 (5.00%) Azure Machine Learning
10 3 (5.00%) Azure Monitor
10 3 (5.00%) Azure Synapse Analytics
10 3 (5.00%) Dynamics 365
11 2 (3.33%) Amazon CloudWatch
11 2 (3.33%) AWS CloudTrail
Communications & Networking
1 5 (8.33%) Firewall
2 4 (6.67%) Network Security
2 4 (6.67%) SSL
3 3 (5.00%) DNS
3 3 (5.00%) FTP
3 3 (5.00%) HTTP
3 3 (5.00%) SMTP
3 3 (5.00%) TCP/IP
Database & Business Intelligence
1 3 (5.00%) Power BI
2 2 (3.33%) BigQuery
3 1 (1.67%) SQL Server
Development Applications
1 17 (28.33%) SonarQube
2 14 (23.33%) Burp Suite
2 14 (23.33%) Metasploit
3 11 (18.33%) Jenkins
4 8 (13.33%) GitLab
5 6 (10.00%) Git
6 4 (6.67%) Snyk
7 3 (5.00%) Artifactory
8 2 (3.33%) CircleCI
9 1 (1.67%) AppScan
9 1 (1.67%) Octopus Deploy
General
1 23 (38.33%) Social Skills
2 17 (28.33%) Public Sector
3 12 (20.00%) Finance
4 3 (5.00%) Banking
5 2 (3.33%) Military
5 2 (3.33%) Telecoms
6 1 (1.67%) Analytical Skills
6 1 (1.67%) Financial Institution
6 1 (1.67%) Investment Banking
Job Titles
1 17 (28.33%) Security Engineer
2 15 (25.00%) Cybersecurity Engineer
3 10 (16.67%) Architect
4 7 (11.67%) DevSecOps Engineer
5 6 (10.00%) Azure Engineer
6 5 (8.33%) DevOps Engineer
6 5 (8.33%) Security Architect
7 4 (6.67%) Consultant
7 4 (6.67%) Lead
8 3 (5.00%) Information Security Consultant
8 3 (5.00%) Security Consultant
8 3 (5.00%) Security Technical Consultant
8 3 (5.00%) Senior
8 3 (5.00%) Technical Consultant
8 3 (5.00%) Technical Security Consultant
9 2 (3.33%) Analyst
9 2 (3.33%) AWS Engineer
9 2 (3.33%) Cybersecurity Specialist
9 2 (3.33%) Information Security Analyst
9 2 (3.33%) Site Engineer
Libraries, Frameworks & Software Standards
1 6 (10.00%) JSON
2 4 (6.67%) .NET
2 4 (6.67%) YAML
3 3 (5.00%) OpenTelemetry
4 1 (1.67%) .NET Core
4 1 (1.67%) .NET Framework
4 1 (1.67%) ADO
4 1 (1.67%) AWS CDK
4 1 (1.67%) Boost C++ Libraries
4 1 (1.67%) FpML
4 1 (1.67%) Kafka
4 1 (1.67%) Middleware
4 1 (1.67%) OAuth
4 1 (1.67%) OpenID
4 1 (1.67%) Rendezvous
4 1 (1.67%) Smart Contracts
4 1 (1.67%) STL
4 1 (1.67%) XML
Miscellaneous
1 7 (11.67%) Security Posture
2 6 (10.00%) PKI
3 5 (8.33%) Cyber Threat
4 4 (6.67%) Cloud Native
4 4 (6.67%) Public Cloud
5 3 (5.00%) Distributed Systems
6 2 (3.33%) Cloud Security Posture
6 2 (3.33%) Legacy Applications
6 2 (3.33%) Legacy Systems
7 1 (1.67%) Product Ownership
Operating Systems
1 7 (11.67%) Windows
2 5 (8.33%) Linux
3 4 (6.67%) Windows Server
4 1 (1.67%) VMS
Processes & Methodologies
1 46 (76.67%) Dynamic Application Security Testing
2 38 (63.33%) CI/CD
3 37 (61.67%) DevSecOps
4 27 (45.00%) Infrastructure as Code
5 26 (43.33%) Cloud Security
5 26 (43.33%) Security Testing
6 25 (41.67%) Secure Coding
7 24 (40.00%) Application Security
8 23 (38.33%) Threat Modelling
9 22 (36.67%) Cybersecurity
9 22 (36.67%) DevOps
9 22 (36.67%) OWASP
10 19 (31.67%) Penetration Testing
10 19 (31.67%) Vulnerability Assessment
11 18 (30.00%) Agile
12 17 (28.33%) SDLC
13 15 (25.00%) Vulnerability Remediation
14 13 (21.67%) Ethical Hacking
15 10 (16.67%) Vulnerability Management
16 9 (15.00%) Data Protection
Programming Languages
1 30 (50.00%) Python
2 20 (33.33%) Bash
3 12 (20.00%) PowerShell
4 6 (10.00%) Java
4 6 (10.00%) JavaScript
5 5 (8.33%) Go
6 4 (6.67%) Bicep
6 4 (6.67%) C#
6 4 (6.67%) Groovy
6 4 (6.67%) Kotlin
7 3 (5.00%) C++
7 3 (5.00%) Kusto Query Language
8 2 (3.33%) Perl
8 2 (3.33%) Rust
8 2 (3.33%) Shell Script
9 1 (1.67%) SQL
Qualifications
1 19 (31.67%) Security Cleared
2 16 (26.67%) CREST Certified
3 15 (25.00%) SC Cleared
4 14 (23.33%) OSCP
5 13 (21.67%) Tigerscheme
6 10 (16.67%) CHECK Team Member
7 4 (6.67%) CSSLP
7 4 (6.67%) GIAC
7 4 (6.67%) SANS
8 2 (3.33%) (ISC)2 CCSP
8 2 (3.33%) CASP
8 2 (3.33%) CCSP
8 2 (3.33%) CISA
8 2 (3.33%) Cisco Certification
8 2 (3.33%) CISM
8 2 (3.33%) CISSP
8 2 (3.33%) Degree
8 2 (3.33%) DV Cleared
8 2 (3.33%) ISO 27001 Lead Auditor
8 2 (3.33%) ISO 27001 Lead Implementer
Quality Assurance & Compliance
1 12 (20.00%) NCSC
2 8 (13.33%) Cyber Essentials
2 8 (13.33%) Cyber Essentials PLUS
3 6 (10.00%) ISO/IEC 27001
3 6 (10.00%) NIST
4 3 (5.00%) GDPR
4 3 (5.00%) SOC 2
5 2 (3.33%) Disclosure Scotland
5 2 (3.33%) HMG Security Policy Framework
5 2 (3.33%) PCI DSS
6 1 (1.67%) FedRAMP
6 1 (1.67%) GRC
System Software
1 6 (10.00%) Active Directory
2 4 (6.67%) Docker
2 4 (6.67%) Hyper-V
Systems Management
1 14 (23.33%) Kubernetes
1 14 (23.33%) Nmap
2 10 (16.67%) Terraform
3 6 (10.00%) Ansible
3 6 (10.00%) Grafana
4 4 (6.67%) SCCM
5 3 (5.00%) Prometheus
5 3 (5.00%) Puppet
6 2 (3.33%) Microsoft Intune
6 2 (3.33%) SELinux
7 1 (1.67%) Argo
7 1 (1.67%) CASB
7 1 (1.67%) HP Fortify
7 1 (1.67%) Progress Chef
7 1 (1.67%) Single Sign-On
Vendors
1 18 (30.00%) Veracode
2 5 (8.33%) Microsoft
2 5 (8.33%) Qualys
3 4 (6.67%) Google
4 3 (5.00%) Coverity
5 2 (3.33%) Alibaba
5 2 (3.33%) IBM
5 2 (3.33%) Tenable
6 1 (1.67%) Checkmarx
6 1 (1.67%) Confluent
6 1 (1.67%) Fortinet
6 1 (1.67%) Guidewire
6 1 (1.67%) Oracle
6 1 (1.67%) Palo Alto
6 1 (1.67%) Rapid7
6 1 (1.67%) Splunk
6 1 (1.67%) TIBCO
6 1 (1.67%) VMware