Period
to 19 September 2018

The following table provides summary statistics for permanent job vacancies advertised in London with a requirement for Penetration Testing skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Penetration Testing over the 6 months to 19 September 2018 with a comparison to the same period in the previous 2 years.

Penetration Testing
England > London
6 months to
19 Sep 2018
Same period 2017 Same period 2016
Rank 361 373 329
Rank change year-on-year +12 -44 +153
Permanent jobs citing Penetration Testing 571 634 797
As % of all permanent IT jobs advertised in London 0.83% 0.84% 1.01%
As % of the Processes & Methodologies category 0.91% 0.91% 1.09%
Number of salaries quoted 430 551 646
London median annual salary £65,000 £60,000 £65,000
Median salary % change year-on-year +8.33% -7.69% +18.18%
10th Percentile £43,625 £37,500 £42,500
90th Percentile £95,125 £90,000 £86,250
England median annual salary £60,000 £55,000 £57,500
% change year-on-year +9.09% -4.35% +9.52%

Penetration Testing is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies advertised in London with a requirement for process or methodology skills.

All Process and Methodology Skills
London
Permanent vacancies with a requirement for process or methodology skills 63,081 69,729 72,970
As % of all permanent IT jobs advertised in London 91.72% 92.77% 92.21%
Number of salaries quoted 50,512 53,451 63,166
London median annual salary £62,500 £60,000 £57,500
Median salary % change year-on-year +4.17% +4.35% +4.55%
10th Percentile £35,000 £35,000 £33,500
90th Percentile £95,000 £90,000 £87,500
England median annual salary £50,000 £50,000 £50,000

Penetration Testing
Job Vacancy Trend in London

Job postings citing Penetration Testing as a percentage of all IT jobs advertised in London.

Job vacancy trend for Penetration Testing in London

Penetration Testing
Salary Trend in London

This chart provides the 3-month moving average for salaries quoted in permanent IT jobs citing Penetration Testing in London.

Salary trend for Penetration Testing in London

Penetration Testing
Salary Histogram in London

The salary distribution of IT jobs citing Penetration Testing in London over the 6 months to 19 September 2018.

Salary histogram for Penetration Testing in London

Penetration Testing
Job Locations in London

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Penetration Testing within the London region over the 6 months to 19 September 2018. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
Central London +20 117 £70,000 +29.63% 20
West London +40 18 £70,000 - 10
South London +7 15 £55,000 -18.52%
East London -10 6 £42,250 -6.11% 2
North London +7 5 £42,500 - 1
Penetration Testing
England

For the 6 months to 19 September 2018, IT jobs citing Penetration Testing also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads across the London region with a requirement for Penetration Testing.

1 314 (54.99%) Cybersecurity
2 287 (50.26%) Information Security
3 240 (42.03%) CISSP
4 162 (28.37%) Windows
5 156 (27.32%) Firewall
6 139 (24.34%) Linux
7 124 (21.72%) CISM
7 124 (21.72%) SIEM
8 121 (21.19%) Security Testing
9 111 (19.44%) CREST Certified
10 110 (19.26%) Finance
11 106 (18.56%) Ethical Hacking
12 105 (18.39%) Vulnerability Scanning
13 101 (17.69%) TCP/IP
13 101 (17.69%) Degree
14 91 (15.94%) CEH
15 90 (15.76%) ISO/IEC 27001
16 86 (15.06%) Vulnerability Assessment
17 84 (14.71%) Java
18 82 (14.36%) Security Cleared
19 75 (13.13%) OSCP
20 73 (12.78%) Vulnerability Management
21 71 (12.43%) GDPR
22 68 (11.91%) SANS
22 68 (11.91%) Python
23 66 (11.56%) CISA
24 65 (11.38%) Agile Software Development
25 64 (11.21%) Security Architecture
25 64 (11.21%) Security Operations
26 63 (11.03%) Network Security

Penetration Testing
Co-occurring IT Skills in London by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 14 (2.45%) Apache Pig
1 14 (2.45%) Confluence
2 11 (1.93%) IIS
3 7 (1.23%) CMS
4 4 (0.70%) Sitecore CMS
4 4 (0.70%) WebSphere
5 3 (0.53%) Elasticsearch
5 3 (0.53%) MS Exchange
6 2 (0.35%) Apache
6 2 (0.35%) DNN
6 2 (0.35%) Exchange Server 2013
6 2 (0.35%) Skype for Business
7 1 (0.18%) Apache Spark
7 1 (0.18%) Exchange Server 2007
7 1 (0.18%) Exchange Server 2010
7 1 (0.18%) SharePoint
Applications
1 11 (1.93%) Microsoft Office
2 4 (0.70%) Microsoft Excel
2 4 (0.70%) Microsoft PowerPoint
Business Applications
1 1 (0.18%) Dynamics CRM
1 1 (0.18%) Dynamics NAV
1 1 (0.18%) Remedy ITSM
1 1 (0.18%) SunGard APT
Cloud Services
1 27 (4.73%) Amazon AWS
2 25 (4.38%) Microsoft Azure
3 21 (3.68%) Google Cloud Platform
4 15 (2.63%) SaaS
5 10 (1.75%) Serverless
6 5 (0.88%) GitHub
7 4 (0.70%) Office 365
7 4 (0.70%) PaaS
8 3 (0.53%) Mimecast
9 2 (0.35%) AWS Lambda
9 2 (0.35%) Google Drive
9 2 (0.35%) IaaS
9 2 (0.35%) Virtual Private Cloud
10 1 (0.18%) Amazon CloudWatch
10 1 (0.18%) AWS CodePipeline
10 1 (0.18%) Cloudflare
10 1 (0.18%) Datadog
10 1 (0.18%) OneDrive
10 1 (0.18%) OpenDNS
10 1 (0.18%) Slack
Communications & Networking
1 156 (27.32%) Firewall
2 101 (17.69%) TCP/IP
3 63 (11.03%) Network Security
4 44 (7.71%) Internet
5 42 (7.36%) Intrusion Detection
6 31 (5.43%) Wireless
7 21 (3.68%) HTTP
8 20 (3.50%) SSL
9 15 (2.63%) LAN
9 15 (2.63%) WAN
10 12 (2.10%) DNS
11 7 (1.23%) SMTP
12 6 (1.05%) Cisco IOS
13 5 (0.88%) Cisco ASA
13 5 (0.88%) Wireless Security
14 4 (0.70%) DKIM
14 4 (0.70%) DMARC
15 3 (0.53%) Cisco Firepower
15 3 (0.53%) DHCP
15 3 (0.53%) VLAN
Database & Business Intelligence
1 19 (3.33%) Big Data
2 17 (2.98%) SQL Server
3 14 (2.45%) Apache Hive
3 14 (2.45%) Hadoop
3 14 (2.45%) MySQL
4 12 (2.10%) Blockchain
5 4 (0.70%) NonStop SQL
6 2 (0.35%) Amazon DynamoDB
7 1 (0.18%) Amazon Aurora
7 1 (0.18%) Amazon RDS
7 1 (0.18%) dBASE
7 1 (0.18%) NoSQL
7 1 (0.18%) Redis
Development Applications
1 41 (7.18%) JIRA
2 29 (5.08%) Metasploit
3 28 (4.90%) Selenium
4 19 (3.33%) Git (software)
5 12 (2.10%) Android Studio
5 12 (2.10%) Atlassian Bamboo
5 12 (2.10%) Bitbucket
5 12 (2.10%) CodeSonar
5 12 (2.10%) git-flow
5 12 (2.10%) Robot Framework
5 12 (2.10%) Xcode
6 10 (1.75%) Cucumber
7 7 (1.23%) webpack
8 6 (1.05%) Eclipse
8 6 (1.05%) gulp
8 6 (1.05%) JMeter
8 6 (1.05%) JUnit
8 6 (1.05%) Mocha
8 6 (1.05%) QUnit
8 6 (1.05%) Visual Studio
General
1 110 (19.26%) Finance
2 46 (8.06%) Banking
3 34 (5.95%) Retail
4 31 (5.43%) Legal
5 16 (2.80%) Investment Banking
6 15 (2.63%) Law
7 13 (2.28%) Telecoms
8 6 (1.05%) Advertising
8 6 (1.05%) Games
9 4 (0.70%) Financial Institution
10 2 (0.35%) Marketing
11 1 (0.18%) Billing
11 1 (0.18%) Czech Language
11 1 (0.18%) Hungarian Language
Job Titles
1 116 (20.32%) Tester
2 103 (18.04%) Penetration Tester
3 102 (17.86%) Analyst
4 88 (15.41%) Security Engineer
5 81 (14.19%) Security Analyst
6 63 (11.03%) Security Manager
7 56 (9.81%) Cybersecurity Analyst
8 46 (8.06%) Consultant
9 41 (7.18%) Security Specialist
10 39 (6.83%) Security Consultant
11 33 (5.78%) Information Manager
11 33 (5.78%) Information Security Manager
12 25 (4.38%) Security Officer
13 23 (4.03%) IT Engineer
13 23 (4.03%) IT Security Engineer
14 22 (3.85%) Infrastructure Engineer
14 22 (3.85%) Senior Security Engineer
15 21 (3.68%) Infrastructure Security Engineer
16 19 (3.33%) Cybersecurity Consultant
17 18 (3.15%) Cybersecurity Engineer
Libraries, Frameworks & Software Standards
1 33 (5.78%) Node.js
2 32 (5.60%) .NET
3 22 (3.85%) Elastic Stack
4 18 (3.15%) .NET Framework
4 18 (3.15%) ASP.NET
5 17 (2.98%) RESTful
6 15 (2.63%) Java EE
7 14 (2.45%) Django
7 14 (2.45%) SOAP
8 13 (2.28%) STL
9 12 (2.10%) CSS
9 12 (2.10%) Dagger
9 12 (2.10%) HTML
9 12 (2.10%) LAMP
9 12 (2.10%) RabbitMQ
9 12 (2.10%) REST
9 12 (2.10%) Spring MVC
10 11 (1.93%) Web Services
11 6 (1.05%) AngularJS
11 6 (1.05%) Entity Framework
Miscellaneous
1 52 (9.11%) Mobile App
2 41 (7.18%) Management Information System
3 40 (7.01%) Computer Science
4 39 (6.83%) Fintech
5 31 (5.43%) Data Protection Act
6 23 (4.03%) Security Operations Centre
7 22 (3.85%) Self-Motivation
8 21 (3.68%) Analytical Skills
9 19 (3.33%) Cyberattack
10 15 (2.63%) Cyber Defence
11 14 (2.45%) Data Centre
12 13 (2.28%) Cyberthreat
13 10 (1.75%) Cyber Kill Chain
14 9 (1.58%) PKI
15 7 (1.23%) BYOD
15 7 (1.23%) NHS
16 6 (1.05%) CESG
16 6 (1.05%) Distributed Denial-of-Service
17 5 (0.88%) Embedded Systems
17 5 (0.88%) Virtual Team
Operating Systems
1 162 (28.37%) Windows
2 139 (24.34%) Linux
3 35 (6.13%) Android
3 35 (6.13%) Apple iOS
4 34 (5.95%) Windows Server
5 29 (5.08%) Unix
6 26 (4.55%) Mac OS X
7 11 (1.93%) Kali Linux
8 7 (1.23%) Solaris
9 6 (1.05%) Windows 7
9 6 (1.05%) Windows Server 2008
10 2 (0.35%) Windows 10
10 2 (0.35%) Windows 8
11 1 (0.18%) DC/OS
11 1 (0.18%) Mac OS
11 1 (0.18%) VMS
11 1 (0.18%) Windows Server 2012
Processes & Methodologies
1 314 (54.99%) Cybersecurity
2 287 (50.26%) Information Security
3 124 (21.72%) SIEM
4 121 (21.19%) Security Testing
5 106 (18.56%) Ethical Hacking
6 105 (18.39%) Vulnerability Scanning
7 86 (15.06%) Vulnerability Assessment
8 73 (12.78%) Vulnerability Management
9 65 (11.38%) Agile Software Development
10 64 (11.21%) Security Architecture
10 64 (11.21%) Security Operations
11 52 (9.11%) Analytics
12 51 (8.93%) ITIL
13 50 (8.76%) Risk Management
14 49 (8.58%) OWASP
15 48 (8.41%) Risk Assessment
16 44 (7.71%) Data Protection
17 41 (7.18%) Data Loss Prevention
17 41 (7.18%) DevOps
18 38 (6.65%) Open Source
Programming Languages
1 84 (14.71%) Java
2 68 (11.91%) Python
3 49 (8.58%) PowerShell
4 41 (7.18%) C#
5 40 (7.01%) C++
6 31 (5.43%) C
7 30 (5.25%) PHP
8 25 (4.38%) Ruby
9 22 (3.85%) Bash Shell
9 22 (3.85%) JavaScript
10 21 (3.68%) Perl
11 17 (2.98%) Objective-C
12 14 (2.45%) Go
12 14 (2.45%) SQL
13 8 (1.40%) Shell Script
14 2 (0.35%) T-SQL
15 1 (0.18%) VB
15 1 (0.18%) VB.NET
Qualifications
1 240 (42.03%) CISSP
2 124 (21.72%) CISM
3 111 (19.44%) CREST Certified
4 101 (17.69%) Degree
5 91 (15.94%) CEH
6 82 (14.36%) Security Cleared
7 75 (13.13%) OSCP
8 68 (11.91%) SANS
9 66 (11.56%) CISA
10 41 (7.18%) Cisco Certification
10 41 (7.18%) GIAC
11 35 (6.13%) CCNA
12 30 (5.25%) SC Cleared
13 26 (4.55%) Computer Science Degree
14 25 (4.38%) DV Cleared
15 20 (3.50%) MCSE
15 20 (3.50%) Microsoft Certification
15 20 (3.50%) SSCP
16 18 (3.15%) Network+ Certification
17 16 (2.80%) CHECK Team Member
Quality Assurance & Compliance
1 90 (15.76%) ISO/IEC 27001
2 71 (12.43%) GDPR
3 38 (6.65%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
4 34 (5.95%) PCI DSS
5 19 (3.33%) QA
6 18 (3.15%) COBIT
6 18 (3.15%) MiFID
7 15 (2.63%) Cyber Essentials
7 15 (2.63%) GCP
8 6 (1.05%) HIPAA
9 5 (0.88%) Sarbanes-Oxley
10 4 (0.70%) ISO 22301
11 1 (0.18%) COSO
11 1 (0.18%) FINRA
11 1 (0.18%) PMBOK
System Software
1 30 (5.25%) Docker
2 21 (3.68%) Snort
3 14 (2.45%) vSphere
4 11 (1.93%) Active Directory
5 10 (1.75%) VMware Infrastructure
6 7 (1.23%) Hyper-V
7 4 (0.70%) KVM
8 3 (0.53%) ProxySG
9 2 (0.35%) Firmware
9 2 (0.35%) Virtual Servers
10 1 (0.18%) VMware ESXi
10 1 (0.18%) VMware Server
Systems Management
1 20 (3.50%) Nessus
2 18 (3.15%) OSSEC
3 13 (2.28%) Network Intrusion Detection System
3 13 (2.28%) Puppet
3 13 (2.28%) Salt
4 11 (1.93%) Kubernetes
5 10 (1.75%) QRadar
5 10 (1.75%) SCCM
6 9 (1.58%) Nmap
7 6 (1.05%) HP ALM
8 5 (0.88%) Single Sign-On
8 5 (0.88%) Terraform
8 5 (0.88%) WSUS
9 4 (0.70%) OpenVAS
9 4 (0.70%) RSA Archer
9 4 (0.70%) SCOM
10 3 (0.53%) CASB
10 3 (0.53%) Nexpose
10 3 (0.53%) Prometheus
10 3 (0.53%) Suricata
Vendors
1 46 (8.06%) Microsoft
2 25 (4.38%) Cisco
3 24 (4.20%) Qualys
4 17 (2.98%) Splunk
5 15 (2.63%) Google
6 12 (2.10%) ArcSight
6 12 (2.10%) HP
6 12 (2.10%) VMware
7 10 (1.75%) LogRhythm
8 8 (1.40%) CheckPoint
9 7 (1.23%) Palo Alto
9 7 (1.23%) Rapid7
10 6 (1.05%) IBM
10 6 (1.05%) Juniper
11 5 (0.88%) Darktrace
11 5 (0.88%) SolarWinds
11 5 (0.88%) Sophos
12 4 (0.70%) ATG
12 4 (0.70%) hybris
12 4 (0.70%) Tripwire