Threat Detection Job Trends in England

Threat Detection
UK > England

The table below provides summary statistics and salary benchmarking for jobs advertised in England requiring Threat Detection skills. It covers permanent job vacancies from the 6 months leading up to 1 January 2026, with comparisons to the same periods in the previous two years.

6 months to
1 Jan 2026
Same period 2025 Same period 2024
Rank 489 578 607
Rank change year-on-year +89 +29 +239
Permanent jobs citing Threat Detection 111 98 59
As % of all permanent jobs in England 0.21% 0.20% 0.13%
As % of the Processes & Methodologies category 0.26% 0.22% 0.14%
Number of salaries quoted 96 67 53
10th Percentile £36,250 £46,899 £32,750
25th Percentile £50,000 £58,750 £47,500
Median annual salary (50th Percentile) £70,000 £72,500 £60,000
Median % change year-on-year -3.45% +20.83% -11.11%
75th Percentile £88,125 £88,750 £72,500
90th Percentile £117,500 £110,000 £97,500
UK median annual salary £70,000 £72,500 £61,250
% change year-on-year -3.45% +18.37% -11.49%

All Process & Methodology Skills
England

Threat Detection falls under the Processes and Methodologies category. For comparison with the information above, the following table provides summary statistics for all permanent job vacancies requiring process or methodology skills in England.

Permanent vacancies with a requirement for process or methodology skills 42,728 44,744 41,388
As % of all permanent jobs advertised in England 82.15% 90.24% 91.27%
Number of salaries quoted 25,461 22,347 32,089
10th Percentile £28,500 £35,000 £32,500
25th Percentile £37,500 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £60,000 £60,000
Median % change year-on-year -8.33% - -4.00%
75th Percentile £76,000 £81,250 £80,000
90th Percentile £96,250 £100,000 £100,000
UK median annual salary £55,000 £60,000 £60,000
% change year-on-year -8.33% - -4.00%

Threat Detection
Job Vacancy Trend in England

Historical trend showing the proportion of permanent IT job postings citing Threat Detection relative to all permanent IT jobs advertised in England.

Threat Detection job vacancy trend in England

Threat Detection
Salary Trend in England

Salary distribution trend for jobs in England citing Threat Detection.

Salary distribution trend for jobs in England citing Threat Detection

Threat Detection
Salary Histogram in England

Salary distribution for jobs citing Threat Detection in England over the 6 months to 1 January 2026.

Salary histogram for Threat Detection in England

Threat Detection
Job Locations in England

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Threat Detection within the England region over the 6 months to 1 January 2026. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
London +26 51 £85,000 +3.03% 23
South East +41 19 £60,000 +14.29% 18
North of England +14 16 £50,000 -8.26% 9
Midlands +29 14 £52,500 -12.50% 9
West Midlands +23 11 £55,000 -8.33% 5
North West +18 10 £35,000 -22.22% 9
South West +13 10 £67,500 +27.36% 13
North East - 4 £105,000 -
East Midlands - 3 £50,000 - 4
Yorkshire -11 2 £92,500 +15.63%
East of England - 2 £56,750 - 12
Threat Detection
UK

Threat Detection
Co-Occurring Skills & Capabilities in England by Category

The following tables expand on the one above by listing co-occurrences grouped by category. They cover the same employment type, locality and period, with up to 20 co-occurrences shown in each category:

Application Platforms
1 5 (4.50%) SharePoint
1 5 (4.50%) WordPress
2 4 (3.60%) Apache Airflow
2 4 (3.60%) Apache Spark
3 2 (1.80%) Microsoft Exchange
Business Applications
1 1 (0.90%) Elite 3E
Cloud Services
1 39 (35.14%) Azure
2 34 (30.63%) AWS
3 30 (27.03%) Microsoft 365
4 16 (14.41%) GCP
5 10 (9.01%) Azure Sentinel
5 10 (9.01%) Entra ID
5 10 (9.01%) Power Automate
5 10 (9.01%) Power Platform
6 8 (7.21%) GitHub
6 8 (7.21%) GitHub Actions
7 6 (5.41%) SaaS
8 5 (4.50%) Azure AI
8 5 (4.50%) Cloud Computing
8 5 (4.50%) Dynamics 365
8 5 (4.50%) Microsoft Copilot
8 5 (4.50%) OneDrive
9 4 (3.60%) Mimecast
10 3 (2.70%) Datadog
11 2 (1.80%) Microsoft Purview
11 2 (1.80%) SecurityScorecard
Communications & Networking
1 32 (28.83%) Firewall
2 22 (19.82%) Network Security
3 15 (13.51%) VPN
4 10 (9.01%) Wireshark
5 7 (6.31%) Intrusion Detection
6 6 (5.41%) TCP/IP
7 3 (2.70%) DNS
7 3 (2.70%) HTTP
7 3 (2.70%) SSL
8 2 (1.80%) Cisco ISE
8 2 (1.80%) Cisco Nexus
8 2 (1.80%) Internet
8 2 (1.80%) SSH
9 1 (0.90%) FTP
9 1 (0.90%) NAS
9 1 (0.90%) SAN
9 1 (0.90%) SCCP
9 1 (0.90%) SMTP
Database & Business Intelligence
1 10 (9.01%) Power BI
2 2 (1.80%) Elasticsearch
2 2 (1.80%) SQL Server
3 1 (0.90%) GIS
Development Applications
1 4 (3.60%) TeamCity
2 3 (2.70%) CircleCI
2 3 (2.70%) Jenkins
3 1 (0.90%) GitLab
General
1 40 (36.04%) Social Skills
2 22 (19.82%) Finance
3 13 (11.71%) Analytical Skills
4 10 (9.01%) Legal
5 9 (8.11%) Banking
6 8 (7.21%) Law
6 8 (7.21%) Retail
7 6 (5.41%) Financial Institution
8 4 (3.60%) Back Office
9 3 (2.70%) Documentation Skills
10 2 (1.80%) Inclusion and Diversity
10 2 (1.80%) Marketing
10 2 (1.80%) Military
10 2 (1.80%) Public Sector
11 1 (0.90%) Aerospace
11 1 (0.90%) Automotive
11 1 (0.90%) Electronics
11 1 (0.90%) Manufacturing
11 1 (0.90%) Organisational Skills
11 1 (0.90%) Telecoms
Job Titles
1 29 (26.13%) Security Engineer
2 28 (25.23%) Analyst
3 19 (17.12%) Senior
4 17 (15.32%) Security Analyst
5 10 (9.01%) IT Support
6 9 (8.11%) Head of Security
7 7 (6.31%) Cybersecurity Engineer
8 6 (5.41%) Information Analyst
8 6 (5.41%) Information Security Analyst
8 6 (5.41%) Senior Analyst
8 6 (5.41%) Senior Security Engineer
8 6 (5.41%) SOC Analyst
9 5 (4.50%) Incident Manager
9 5 (4.50%) Infrastructure Engineer
9 5 (4.50%) IT Engineer
9 5 (4.50%) IT Security Engineer
9 5 (4.50%) IT Support Engineer
9 5 (4.50%) Lead
9 5 (4.50%) Support Engineer
9 5 (4.50%) Support Officer
Libraries, Frameworks & Software Standards
1 7 (6.31%) PyTorch
1 7 (6.31%) TensorFlow
2 5 (4.50%) HTML
3 4 (3.60%) ARM Templates
4 3 (2.70%) Pandas
4 3 (2.70%) scikit-learn
5 2 (1.80%) Elastic Stack
6 1 (0.90%) Dask
6 1 (0.90%) FastAPI
6 1 (0.90%) Flask
6 1 (0.90%) LDAP
Miscellaneous
1 21 (18.92%) Security Posture
2 18 (16.22%) Onboarding
3 16 (14.41%) Security Operations Centre
4 14 (12.61%) Cyber Threat
5 12 (10.81%) Cloud Native
6 11 (9.91%) Cyber Kill Chain
7 8 (7.21%) Management Information System
8 6 (5.41%) Cyber Security Posture
8 6 (5.41%) Hybrid Cloud
9 5 (4.50%) Video Conferencing
10 4 (3.60%) Analytical Mindset
10 4 (3.60%) ARM Cortex
10 4 (3.60%) Blog
11 3 (2.70%) Cyber Defence
11 3 (2.70%) Cyberattack
11 3 (2.70%) Operational Technology
12 2 (1.80%) CCTV
12 2 (1.80%) Enterprise Software
12 2 (1.80%) IoT
12 2 (1.80%) YubiKey
Operating Systems
1 27 (24.32%) Windows
2 19 (17.12%) Linux
3 10 (9.01%) Windows Server
4 6 (5.41%) Unix
5 5 (4.50%) Windows 10
Processes & Methodologies
1 72 (64.86%) Incident Response
2 69 (62.16%) Cybersecurity
3 65 (58.56%) SIEM
4 48 (43.24%) Security Operations
5 35 (31.53%) Vulnerability Management
6 33 (29.73%) Threat Intelligence
7 30 (27.03%) Cyber Threat Intelligence
8 29 (26.13%) Information Security
9 28 (25.23%) MITRE ATT&CK
10 27 (24.32%) Cloud Security
11 26 (23.42%) Security Monitoring
12 23 (20.72%) Use Case
13 22 (19.82%) Continuous Improvement
14 19 (17.12%) Problem-Solving
15 18 (16.22%) Analytics
16 17 (15.32%) Incident Management
17 16 (14.41%) Identity Access Management
18 15 (13.51%) Data Loss Prevention
18 15 (13.51%) Stakeholder Engagement
18 15 (13.51%) Threat and Vulnerability Management
Programming Languages
1 22 (19.82%) Python
2 13 (11.71%) PowerShell
3 11 (9.91%) Kusto Query Language
4 9 (8.11%) Bash
5 6 (5.41%) SQL
6 4 (3.60%) Bicep
6 4 (3.60%) Go
7 3 (2.70%) Perl
Qualifications
1 28 (25.23%) CISSP
2 21 (18.92%) Degree
3 13 (11.71%) GCIA
4 12 (10.81%) CISM
4 12 (10.81%) CompTIA Security+
4 12 (10.81%) GCIH
5 11 (9.91%) AWS Certification
5 11 (9.91%) GCFA
6 8 (7.21%) Azure Certification
7 7 (6.31%) Cisco Certification
8 6 (5.41%) CEH
8 6 (5.41%) GIAC
8 6 (5.41%) Security Cleared
9 5 (4.50%) (ISC)2 CCSP
9 5 (4.50%) A+ Certification
9 5 (4.50%) Computer Science Degree
9 5 (4.50%) SSCP
10 4 (3.60%) AWS Certified Solutions Architect
10 4 (3.60%) Master's Degree
10 4 (3.60%) Microsoft Certification
Quality Assurance & Compliance
1 36 (32.43%) ISO/IEC 27001
2 33 (29.73%) NIST
3 28 (25.23%) Cyber Essentials
4 16 (14.41%) GDPR
5 10 (9.01%) Cyber Essentials PLUS
6 6 (5.41%) PCI DSS
7 5 (4.50%) Accessibility
7 5 (4.50%) GRC
8 4 (3.60%) SOC 2
9 3 (2.70%) COBIT
10 1 (0.90%) HIPAA
10 1 (0.90%) QA
System Software
1 9 (8.11%) VMware Infrastructure
2 6 (5.41%) Active Directory
2 6 (5.41%) Docker
3 3 (2.70%) VMware ESXi
3 3 (2.70%) vSphere
4 2 (1.80%) EMC RecoverPoint
4 2 (1.80%) Hyper-V
4 2 (1.80%) pfSense
4 2 (1.80%) Squid
Systems Management
1 15 (13.51%) Terraform
2 13 (11.71%) Kubernetes
3 5 (4.50%) Microsoft Intune
3 5 (4.50%) QRadar
4 4 (3.60%) Cilium
5 3 (2.70%) Ansible
5 3 (2.70%) Grafana
6 2 (1.80%) Cisco CUCM
6 2 (1.80%) Computer Incident Response Team
6 2 (1.80%) Kibana
6 2 (1.80%) Nessus
6 2 (1.80%) Single Sign-On
6 2 (1.80%) Suricata
6 2 (1.80%) vCenter Server
6 2 (1.80%) VxRail
7 1 (0.90%) Argo
7 1 (0.90%) Computer Emergency Response Teams
7 1 (0.90%) CSIRT
7 1 (0.90%) logstash
7 1 (0.90%) PowerCLI
Vendors
1 43 (38.74%) Microsoft
2 18 (16.22%) Splunk
3 11 (9.91%) VMware
4 6 (5.41%) CrowdStrike
4 6 (5.41%) Palo Alto
4 6 (5.41%) Qualys
5 5 (4.50%) Cisco
6 4 (3.60%) Fortinet
6 4 (3.60%) ServiceNow
7 3 (2.70%) Okta
7 3 (2.70%) SolarWinds
7 3 (2.70%) Tenable
7 3 (2.70%) Zscaler
8 2 (1.80%) CheckPoint
8 2 (1.80%) Dell
8 2 (1.80%) LogicMonitor
8 2 (1.80%) Meraki
8 2 (1.80%) Sophos
9 1 (0.90%) Google
9 1 (0.90%) SAP