Threat Modelling Contracts

Threat Modelling
UK

The table below provides summary statistics for contract job vacancies requiring Threat Modelling skills. It includes a benchmarking guide to the contractor rates offered in vacancies that cited Threat Modelling over the 6 months leading up to 1 May 2025, comparing them to the same period in the previous two years.

6 months to
1 May 2025
Same period 2024 Same period 2023
Rank 377 418 494
Rank change year-on-year +41 +76 +97
Contract jobs citing Threat Modelling 146 165 227
As % of all contract jobs advertised in the UK 0.50% 0.38% 0.38%
As % of the Processes & Methodologies category 0.55% 0.44% 0.42%
Number of daily rates quoted 105 80 140
10th Percentile £500 £463 £513
25th Percentile £534 £548 £550
Median daily rate (50th Percentile) £625 £608 £658
Median % change year-on-year +2.80% -7.60% +3.62%
75th Percentile £720 £706 £750
90th Percentile £800 £775 £835
UK excluding London median daily rate £600 £575 £600
% change year-on-year +4.35% -4.17% -4.00%
Number of hourly rates quoted 0 1 4
10th Percentile - - £72.04
25th Percentile - £81.75 £73.30
Median hourly rate - £83.50 £74.40
Median % change year-on-year - +12.24% +48.79%
75th Percentile - £85.25 £81.09
90th Percentile - - £92.44
UK excluding London median hourly rate - £83.50 £74.40
% change year-on-year - +12.24% -

All Process and Methodology Skills
UK

Threat Modelling falls under the Processes and Methodologies category. For comparison with the information above, the following table provides summary statistics for all contract job vacancies requiring process or methodology skills.

Contract vacancies with a requirement for process or methodology skills 26,594 37,597 53,655
As % of all contract IT jobs advertised in the UK 90.84% 86.31% 89.91%
Number of daily rates quoted 17,149 24,227 37,238
10th Percentile £308 £300 £325
25th Percentile £413 £413 £438
Median daily rate (50th Percentile) £520 £525 £550
Median % change year-on-year -0.95% -4.55% +4.76%
75th Percentile £630 £638 £650
90th Percentile £743 £750 £750
UK excluding London median daily rate £483 £500 £500
% change year-on-year -3.50% - +5.26%
Number of hourly rates quoted 1,071 2,443 1,746
10th Percentile £14.41 £12.75 £11.00
25th Percentile £18.21 £16.00 £16.25
Median hourly rate £29.00 £35.65 £37.30
Median % change year-on-year -18.65% -4.42% +49.20%
75th Percentile £60.38 £59.98 £65.00
90th Percentile £75.00 £72.50 £75.00
UK excluding London median hourly rate £27.50 £37.34 £36.00
% change year-on-year -26.35% +3.72% +80.00%

Threat Modelling
Job Vacancy Trend

Job postings citing Threat Modelling as a proportion of all IT jobs advertised.

Job vacancy trend for Threat Modelling in the UK

Threat Modelling
Contractor Daily Rate Trend

3-month moving average daily rate quoted in jobs citing Threat Modelling.

Daily rate trend for Threat Modelling in the UK

Threat Modelling
Daily Rate Histogram

Daily rate distribution for jobs citing Threat Modelling over the 6 months to 1 May 2025.

Daily rate histogram for Threat Modelling in the UK

Threat Modelling
Contractor Hourly Rate Trend

3-month moving average hourly rates quoted in jobs citing Threat Modelling.

Hourly rate trend for Threat Modelling in the UK

Threat Modelling
Top 14 Contract Locations

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing Threat Modelling within the UK over the 6 months to 1 May 2025. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Jobs
England +36 108 £650 +4.00% 179
Work from Home +64 71 £638 +4.85% 111
UK excluding London +47 67 £600 +4.35% 97
London +20 49 £625 -6.02% 103
South East +21 17 £625 +16.28% 33
South West +57 15 £665 +8.57% 17
North of England +28 15 £542 -5.74% 29
Scotland +4 14 £530 -7.91% 5
North West +23 9 £582 +1.13% 18
Midlands +25 8 £800 +40.11% 9
West Midlands +21 8 £800 +39.13% 3
North East - 4 £534 - 6
East of England +29 2 £775 +3.33% 6
Yorkshire +7 2 £550 - 5

Threat Modelling
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Applications
1 1 (0.68%) Microsoft Project
Business Applications
1 4 (2.74%) Dynamics GP
Cloud Services
1 72 (49.32%) Azure
2 47 (32.19%) AWS
3 29 (19.86%) GCP
4 13 (8.90%) Azure Sentinel
5 9 (6.16%) SaaS
6 7 (4.79%) IaaS
6 7 (4.79%) PaaS
7 6 (4.11%) Entra ID
7 6 (4.11%) Power Platform
8 5 (3.42%) AWS CloudFormation
8 5 (3.42%) Azure Monitor
8 5 (3.42%) GitHub
8 5 (3.42%) Microsoft 365
9 4 (2.74%) Azure DevOps
9 4 (2.74%) Cloud Computing
9 4 (2.74%) Cloudflare
10 2 (1.37%) Amazon EKS
10 2 (1.37%) Microsoft Purview
11 1 (0.68%) Amazon ECS
11 1 (0.68%) OCI
Communications & Networking
1 27 (18.49%) Network Security
2 23 (15.75%) Firewall
3 9 (6.16%) HTTP
3 9 (6.16%) SSL
4 5 (3.42%) Intrusion Detection
5 4 (2.74%) DNS
5 4 (2.74%) FTP
5 4 (2.74%) NGFW
5 4 (2.74%) SMTP
5 4 (2.74%) TCP/IP
6 2 (1.37%) Ethernet
6 2 (1.37%) Internet
6 2 (1.37%) MQTT
7 1 (0.68%) VPN
Database & Business Intelligence
1 2 (1.37%) Big Data
1 2 (1.37%) MongoDB
1 2 (1.37%) MySQL
1 2 (1.37%) PostgreSQL
2 1 (0.68%) Data Warehouse
Development Applications
1 6 (4.11%) GitLab
2 3 (2.05%) Jenkins
2 3 (2.05%) Xcode
3 2 (1.37%) JIRA
4 1 (0.68%) Burp Suite
4 1 (0.68%) Git
4 1 (0.68%) Metasploit
4 1 (0.68%) MLflow
4 1 (0.68%) SonarQube
General
1 41 (28.08%) Social Skills
2 31 (21.23%) Finance
3 17 (11.64%) Analytical Skills
4 12 (8.22%) Public Sector
5 8 (5.48%) Banking
6 5 (3.42%) Retail
7 4 (2.74%) Legal
8 3 (2.05%) Law
9 2 (1.37%) Financial Institution
9 2 (1.37%) Military
9 2 (1.37%) Telecoms
10 1 (0.68%) Automotive
10 1 (0.68%) Aviation
10 1 (0.68%) Manufacturing
10 1 (0.68%) Organisational Skills
10 1 (0.68%) Presentation Skills
Job Titles
1 75 (51.37%) Architect
2 65 (44.52%) Security Architect
3 22 (15.07%) Senior
4 19 (13.01%) Security Specialist
5 17 (11.64%) Consultant
6 14 (9.59%) Security Engineer
7 11 (7.53%) Security Consultant
7 11 (7.53%) Solutions Architect
8 10 (6.85%) Cloud Architect
9 9 (6.16%) Senior Data Warehouse Specialist
10 8 (5.48%) Cloud Security Architect
10 8 (5.48%) Cybersecurity Architect
10 8 (5.48%) Information Security Specialist
10 8 (5.48%) Information Specialist
10 8 (5.48%) Senior Architect
10 8 (5.48%) Senior Security Architect
11 7 (4.79%) Cybersecurity Specialist
11 7 (4.79%) Senior Information Security Specialist
11 7 (4.79%) Senior Security Specialist
12 6 (4.11%) Technical Architect
Libraries, Frameworks & Software Standards
1 6 (4.11%) .NET
1 6 (4.11%) SAML
2 3 (2.05%) SwiftUI
2 3 (2.05%) UIKit
3 2 (1.37%) Elastic Stack
3 2 (1.37%) LDAP
3 2 (1.37%) OAuth
3 2 (1.37%) OpenID
3 2 (1.37%) React
4 1 (0.68%) ADO
4 1 (0.68%) Kafka
4 1 (0.68%) OAuth2
4 1 (0.68%) PyTorch
4 1 (0.68%) REST
4 1 (0.68%) SailPoint
4 1 (0.68%) Smart Contracts
4 1 (0.68%) TensorFlow
Miscellaneous
1 29 (19.86%) Security Posture
2 16 (10.96%) Cyber Threat
3 14 (9.59%) PKI
4 11 (7.53%) Cloud Native
4 11 (7.53%) Operational Technology
5 8 (5.48%) Mobile App
5 8 (5.48%) Public Cloud
6 6 (4.11%) Private Cloud
6 6 (4.11%) SCADA
7 5 (3.42%) Algorithms
8 4 (2.74%) Distributed Systems
8 4 (2.74%) Security Operations Centre
9 3 (2.05%) Cyber Defence
9 3 (2.05%) Cyber Kill Chain
9 3 (2.05%) Cyberattack
9 3 (2.05%) Data Centre
9 3 (2.05%) Enterprise Software
9 3 (2.05%) IoT
9 3 (2.05%) iPad
9 3 (2.05%) Virtual Team
Operating Systems
1 23 (15.75%) Windows
2 11 (7.53%) Windows Server
3 10 (6.85%) Linux
4 5 (3.42%) Apple iOS
5 3 (2.05%) Android
6 1 (0.68%) Kali Linux
6 1 (0.68%) Mac OS
6 1 (0.68%) Unix
6 1 (0.68%) Windows 7
Processes & Methodologies
1 64 (43.84%) Cybersecurity
2 57 (39.04%) Security Architecture
3 51 (34.93%) Cloud Security
4 35 (23.97%) DevSecOps
4 35 (23.97%) Information Security
5 29 (19.86%) DevOps
6 28 (19.18%) Penetration Testing
6 28 (19.18%) SIEM
7 27 (18.49%) Agile
8 24 (16.44%) Risk Assessment
8 24 (16.44%) Vulnerability Management
9 22 (15.07%) Application Security
9 22 (15.07%) Risk Management
10 18 (12.33%) CI/CD
10 18 (12.33%) Identity Access Management
10 18 (12.33%) Incident Response
10 18 (12.33%) Problem-Solving
11 17 (11.64%) OWASP
11 17 (11.64%) Security Operations
11 17 (11.64%) Vulnerability Assessment
Programming Languages
1 12 (8.22%) Python
2 11 (7.53%) PowerShell
3 9 (6.16%) Java
4 4 (2.74%) Bash
4 4 (2.74%) C#
5 3 (2.05%) C++
5 3 (2.05%) JavaScript
5 3 (2.05%) Objective-C
5 3 (2.05%) Swift
6 2 (1.37%) Kotlin
6 2 (1.37%) Perl
6 2 (1.37%) PHP
6 2 (1.37%) Rust
6 2 (1.37%) TypeScript
7 1 (0.68%) Ruby
Qualifications
1 42 (28.77%) Security Cleared
2 35 (23.97%) SC Cleared
3 31 (21.23%) CISM
3 31 (21.23%) CISSP
4 18 (12.33%) DV Cleared
5 12 (8.22%) CompTIA Security+
6 11 (7.53%) (ISC)2 CCSP
6 11 (7.53%) Azure Certification
6 11 (7.53%) Cisco Certification
7 9 (6.16%) Degree
8 7 (4.79%) AWS Certification
8 7 (4.79%) CEH
9 5 (3.42%) AWS Certified Solutions Architect
9 5 (3.42%) CRISC
10 3 (2.05%) CCSP
10 3 (2.05%) CISA
10 3 (2.05%) Computer Science Degree
10 3 (2.05%) Microsoft Certification
10 3 (2.05%) SANS
10 3 (2.05%) TOGAF Certification
Quality Assurance & Compliance
1 35 (23.97%) NIST
2 29 (19.86%) ISO/IEC 27001
3 20 (13.70%) GDPR
4 12 (8.22%) NCSC
5 11 (7.53%) PCI DSS
6 7 (4.79%) California Consumer Privacy Act
7 5 (3.42%) HIPAA
8 4 (2.74%) NIST 800
9 3 (2.05%) Actionable Recommendations
9 3 (2.05%) Disclosure Scotland
9 3 (2.05%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
9 3 (2.05%) PMO
9 3 (2.05%) Sarbanes-Oxley
10 2 (1.37%) QA
11 1 (0.68%) EU AI Act
11 1 (0.68%) FISMA
11 1 (0.68%) Government Security Classifications
11 1 (0.68%) GRC
11 1 (0.68%) ISO 31000
11 1 (0.68%) ISO/IEC 27005
System Software
1 12 (8.22%) Active Directory
2 6 (4.11%) Hyper-V
3 4 (2.74%) Docker
4 2 (1.37%) VMware Infrastructure
5 1 (0.68%) Virtual Desktop
5 1 (0.68%) Virtual Machines
Systems Management
1 12 (8.22%) Terraform
2 10 (6.85%) Microsoft Intune
3 9 (6.16%) Kubernetes
4 6 (4.11%) SCCM
5 4 (2.74%) Active Directory Federation Services
6 3 (2.05%) Progress Chef
7 2 (1.37%) Nagios
8 1 (0.68%) CASB
8 1 (0.68%) CSIRT
8 1 (0.68%) OPNET
8 1 (0.68%) Prometheus
8 1 (0.68%) QRadar
8 1 (0.68%) Single Sign-On
Vendors
1 28 (19.18%) Microsoft
2 9 (6.16%) Google
3 4 (2.74%) CyberArk
3 4 (2.74%) ServiceNow
4 3 (2.05%) ForgeRock
5 2 (1.37%) Alibaba
5 2 (1.37%) ArcSight
5 2 (1.37%) Cloudera
5 2 (1.37%) Qualys
5 2 (1.37%) Rapid7
5 2 (1.37%) Snow
5 2 (1.37%) SolarWinds
5 2 (1.37%) Tenable
5 2 (1.37%) VMware
6 1 (0.68%) Forcepoint
6 1 (0.68%) LogRhythm
6 1 (0.68%) Okta
6 1 (0.68%) Ping Identity
6 1 (0.68%) Splunk
6 1 (0.68%) Symantec