Period
to 13 December 2017

The following table provides summary statistics for permanent job vacancies advertised in the UK excluding London with a requirement for Information Security skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Information Security over the 6 months to 13 December 2017 with a comparison to the same period in the previous 2 years.

Information Security (InfoSec)
UK > UK excluding London
6 months to
13 Dec 2017
Same period 2016 Same period 2015
Rank 130 124 131
Rank change year-on-year -6 +7 +47
Permanent jobs citing Information Security 2603 2883 2920
As % of all permanent IT jobs advertised in the UK excluding London 2.56% 2.67% 2.39%
As % of the Processes & Methodologies category 2.89% 3.01% 2.71%
Number of salaries quoted 1808 2141 2357
UK excluding London median annual salary £52,000 £52,500 £50,000
Median salary % change year-on-year -0.95% +5.00% -
10th Percentile £32,500 £31,500 £31,250
90th Percentile £77,500 £75,000 £73,250
UK median annual salary £58,000 £60,000 £55,000
% change year-on-year -3.33% +9.09% +4.76%

Information Security is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies advertised in the UK excluding London with a requirement for process or methodology skills.

All Process and Methodology Skills
UK excluding London
Permanent vacancies with a requirement for process or methodology skills 90153 95738 107757
As % of all permanent IT jobs advertised in the UK excluding London 88.77% 88.71% 88.31%
Number of salaries quoted 72978 77998 88186
UK excluding London median annual salary £44,500 £42,500 £42,500
Median salary % change year-on-year +4.71% - +6.25%
10th Percentile £26,250 £26,250 £26,000
90th Percentile £66,250 £66,250 £65,000
UK median annual salary £50,000 £49,500 £47,500
% change year-on-year +1.01% +4.21% +5.56%

Information Security
Job Vacancy Trend in the UK excluding London

Job postings citing Information Security as a percentage of all IT jobs advertised in the UK excluding London.

Job vacancy trend for Information Security in the UK excluding London

Information Security
Salary Trend in the UK excluding London

This chart provides the 3-month moving average for salaries quoted in permanent IT jobs citing Information Security in the UK excluding London.

Salary trend for Information Security in the UK excluding London

Information Security
Salary Histogram in the UK excluding London

The salary distribution of IT jobs citing Information Security in the UK excluding London over the 6 months to 13 December 2017.

Salary histogram for Information Security in the UK excluding London

Information Security
Job Locations in the UK excluding London

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Information Security within the UK excluding London region over the 6 months to 13 December 2017. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
South East -9 885 £55,000 - 52
North of England +7 777 £50,000 - 61
North West +5 440 £52,000 -0.95% 27
Yorkshire -4 288 £46,000 -8.00% 32
Midlands -50 286 £50,000 - 14
South West -2 276 £47,500 -9.52% 25
East of England +25 252 £55,500 +23.33% 40
West Midlands -51 216 £50,000 - 10
Scotland -44 92 £50,000 -4.76% 8
East Midlands +17 73 £45,000 -18.18% 4
North East +14 49 £52,500 +16.67% 2
Wales -11 36 £33,350 -35.87%
Northern Ireland -32 6 £47,500 +18.75% 2
Isle of Man - 3 £25,000 -
South Coast - 2 £95,000 -
Information Security
UK

For the 6 months to 13 December 2017, IT jobs citing Information Security also mentioned the following skills in order of popularity. The figures indicate the number co-occurrences and its proportion to all job ads across the UK excluding London region with a requirement for Information Security.

1 1003 (38.53%) ISO/IEC 27001
2 893 (34.31%) CISSP
3 658 (25.28%) Finance
4 639 (24.55%) CISM
5 614 (23.59%) Management Information System
6 595 (22.86%) Cybersecurity
7 574 (22.05%) Risk Management
8 496 (19.05%) Firewall
9 485 (18.63%) ITIL
10 463 (17.79%) PCI DSS
11 417 (16.02%) Degree
12 416 (15.98%) Penetration Testing
13 359 (13.79%) Data Protection
14 356 (13.68%) Windows
15 317 (12.18%) Agile Software Development
16 315 (12.10%) Project Management
17 309 (11.87%) Security Management
17 309 (11.87%) SIEM
18 305 (11.72%) CISA
19 300 (11.53%) GDPR
20 281 (10.80%) Microsoft
21 280 (10.76%) Linux
22 273 (10.49%) Security Cleared
23 266 (10.22%) Information Security Management
24 254 (9.76%) Analytical Skills
25 250 (9.60%) Network Security
26 235 (9.03%) Security Architecture
27 234 (8.99%) Security Operations
28 215 (8.26%) Risk Assessment
29 212 (8.14%) ISMS

Information Security
Co-occurring IT Skills in the UK excluding London by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 65 (2.50%) MS Exchange
2 43 (1.65%) SharePoint
3 42 (1.61%) IIS
4 34 (1.31%) Exchange Server 2010
5 32 (1.23%) Exchange Server 2013
6 22 (0.85%) Apache
7 20 (0.77%) Confluence
8 17 (0.65%) Skype for Business
9 15 (0.58%) Exchange Server 2007
10 13 (0.50%) WebSphere
11 12 (0.46%) SAS
12 10 (0.38%) JBoss
12 10 (0.38%) Tomcat
13 9 (0.35%) Elasticsearch
13 9 (0.35%) WebSphere Application Server
14 4 (0.15%) IBM HTTP Server
14 4 (0.15%) Oracle SOA Suite
14 4 (0.15%) WordPress
15 3 (0.12%) nginx
15 3 (0.12%) WebSphere Portal
Applications
1 73 (2.80%) Microsoft Office
2 22 (0.85%) Microsoft Excel
3 20 (0.77%) Microsoft Project
4 15 (0.58%) Spreadsheet
5 12 (0.46%) MS Visio
6 7 (0.27%) Microsoft PowerPoint
7 1 (0.038%) Revit
Business Applications
1 12 (0.46%) Dynamics CRM
2 11 (0.42%) Magento
3 5 (0.19%) assyst
3 5 (0.19%) Payment Gateway
4 4 (0.15%) Dynamics AX
4 4 (0.15%) Dynamics NAV
4 4 (0.15%) Sage 200
4 4 (0.15%) SAP Business One
4 4 (0.15%) Unit4 Business World
5 3 (0.12%) Workfront
6 2 (0.077%) BASE24
6 2 (0.077%) BusinessWorks
6 2 (0.077%) Primavera
6 2 (0.077%) SAP Hybris
7 1 (0.038%) Infor M3
7 1 (0.038%) Oracle ERP
7 1 (0.038%) Remedy ITSM
Cloud Services
1 114 (4.38%) Amazon AWS
2 99 (3.80%) SaaS
3 91 (3.50%) Microsoft Azure
4 83 (3.19%) IaaS
5 76 (2.92%) Office 365
6 41 (1.58%) PaaS
7 30 (1.15%) Cloud Computing
8 13 (0.50%) Azure Active Directory
9 9 (0.35%) OneDrive
10 5 (0.19%) Amazon SQS
10 5 (0.19%) Google Cloud Platform
10 5 (0.19%) IBM Cloud
10 5 (0.19%) SoftLayer
11 3 (0.12%) Amazon EC2
11 3 (0.12%) OpenShift
11 3 (0.12%) Virtual Private Cloud
12 2 (0.077%) Akamai
12 2 (0.077%) BrowserStack
13 1 (0.038%) Amazon Glacier
13 1 (0.038%) npm
Communications & Networking
1 496 (19.05%) Firewall
2 250 (9.60%) Network Security
3 155 (5.95%) TCP/IP
4 128 (4.92%) Internet
5 118 (4.53%) LAN
6 109 (4.19%) VPN
7 107 (4.11%) WAN
8 81 (3.11%) DNS
9 78 (3.00%) Intrusion Detection
10 74 (2.84%) SAN
11 58 (2.23%) HTTP
12 54 (2.07%) DHCP
13 49 (1.88%) Wireless
14 45 (1.73%) VLAN
15 43 (1.65%) SSL
16 37 (1.42%) VoIP
17 35 (1.34%) SMTP
18 34 (1.31%) LDAP
19 31 (1.19%) MPLS
19 31 (1.19%) Wi-Fi
Database & Business Intelligence
1 100 (3.84%) SQL Server
2 37 (1.42%) MySQL
3 31 (1.19%) Relational Database
4 21 (0.81%) Oracle Database
5 19 (0.73%) GIS
6 16 (0.61%) Big Data
7 15 (0.58%) PostgreSQL
7 15 (0.58%) SQL Server 2008
8 13 (0.50%) NoSQL
9 11 (0.42%) SQL Server Reporting Services
10 9 (0.35%) Apache Cassandra
10 9 (0.35%) MongoDB
10 9 (0.35%) RDBMS
11 8 (0.31%) SQL Server Integration Services
12 7 (0.27%) Data Mining
13 6 (0.23%) Data Warehouse
13 6 (0.23%) DB2
13 6 (0.23%) Hadoop
13 6 (0.23%) SQL Server 2012
14 5 (0.19%) CouchDB
Development Applications
1 32 (1.23%) JIRA
2 24 (0.92%) Selenium
3 21 (0.81%) Git (software)
4 13 (0.50%) Cucumber
4 13 (0.50%) Metasploit
5 12 (0.46%) Jenkins
5 12 (0.46%) Maven
6 11 (0.42%) Burp Suite
7 10 (0.38%) Rational DOORS
7 10 (0.38%) Team Foundation Server
8 7 (0.27%) Bower
8 7 (0.27%) Grunt
9 6 (0.23%) Bitbucket
10 5 (0.19%) Gradle
11 4 (0.15%) Subversion
12 3 (0.12%) HP UFT
12 3 (0.12%) SoapUI
12 3 (0.12%) Visual Studio
12 3 (0.12%) Visual Studio Team System
13 2 (0.077%) WebDriver
General
1 658 (25.28%) Finance
2 175 (6.72%) Legal
3 151 (5.80%) Banking
4 110 (4.23%) Law
4 110 (4.23%) Retail
5 102 (3.92%) Telecoms
6 79 (3.03%) Investment Banking
7 77 (2.96%) Marketing
8 64 (2.46%) Manufacturing
9 45 (1.73%) Electronics
10 34 (1.31%) Financial Institution
11 28 (1.08%) Military
12 24 (0.92%) Games
13 23 (0.88%) Corporate Banking
14 17 (0.65%) Retail Banking
15 12 (0.46%) Advertising
15 12 (0.46%) Front Office
16 11 (0.42%) Publishing
17 10 (0.38%) Local Government
18 9 (0.35%) Spanish Language
Job Titles
1 583 (22.40%) Analyst
2 435 (16.71%) Security Analyst
3 350 (13.45%) Security Manager
4 302 (11.60%) Consultant
5 253 (9.72%) Information Manager
6 249 (9.57%) Information Security Manager
7 230 (8.84%) Security Consultant
8 229 (8.80%) Information Analyst
9 222 (8.53%) Information Security Analyst
10 199 (7.65%) Architect
11 140 (5.38%) Security Engineer
12 120 (4.61%) Information Security Consultant
12 120 (4.61%) Security Specialist
13 119 (4.57%) IT Manager
14 106 (4.07%) Security Officer
15 98 (3.76%) IT Analyst
16 96 (3.69%) Information Security Officer
17 92 (3.53%) Information Officer
18 90 (3.46%) IT Security Analyst
19 84 (3.23%) Security Architect
Libraries, Frameworks & Software Standards
1 91 (3.50%) .NET
2 63 (2.42%) Middleware
3 56 (2.15%) Web Services
4 51 (1.96%) HTML
5 34 (1.31%) CSS
6 18 (0.69%) ASP.NET Web API
7 17 (0.65%) .NET Framework
8 16 (0.61%) ASP.NET
9 15 (0.58%) J2EE
9 15 (0.58%) XML
10 13 (0.50%) AngularJS
10 13 (0.50%) Hibernate
10 13 (0.50%) jQuery
10 13 (0.50%) REST
11 12 (0.46%) Spring
12 11 (0.42%) HTML5
13 10 (0.38%) JSON
13 10 (0.38%) RESTful
13 10 (0.38%) SOAP
14 9 (0.35%) React
Miscellaneous
1 614 (23.59%) Management Information System
2 254 (9.76%) Analytical Skills
3 167 (6.42%) Computer Science
4 157 (6.03%) Data Centre
5 107 (4.11%) Cyberthreat
6 103 (3.96%) Data Protection Act
7 75 (2.88%) Security Operations Centre
8 70 (2.69%) CESG
9 58 (2.23%) Mobile App
10 46 (1.77%) Algorithms
11 43 (1.65%) NHS
12 37 (1.42%) PMI
13 36 (1.38%) PKI
14 35 (1.34%) Distributed Denial-of-Service
15 31 (1.19%) Cyber Attack
15 31 (1.19%) Java Card
16 29 (1.11%) iPad
17 28 (1.08%) User Experience
18 27 (1.04%) Hybrid Cloud
19 26 (1.00%) Mobile Computing
Operating Systems
1 356 (13.68%) Windows
2 280 (10.76%) Linux
3 166 (6.38%) Unix
4 137 (5.26%) Windows Server
5 56 (2.15%) Windows Server 2008
6 41 (1.58%) Windows Server 2012
7 31 (1.19%) Apple iOS
8 26 (1.00%) Windows 7
9 23 (0.88%) Solaris
10 22 (0.85%) Red Hat Enterprise Linux
11 21 (0.81%) Android
12 18 (0.69%) CentOS
12 18 (0.69%) Windows 10
13 15 (0.58%) Kali Linux
13 15 (0.58%) Ubuntu
14 14 (0.54%) Windows Server 2003
15 11 (0.42%) AIX
15 11 (0.42%) Mac OS X
16 8 (0.31%) Mac OS
16 8 (0.31%) Windows 8
Processes & Methodologies
1 595 (22.86%) Cybersecurity
2 574 (22.05%) Risk Management
3 485 (18.63%) ITIL
4 416 (15.98%) Penetration Testing
5 359 (13.79%) Data Protection
6 317 (12.18%) Agile Software Development
7 315 (12.10%) Project Management
8 309 (11.87%) Security Management
8 309 (11.87%) SIEM
9 266 (10.22%) Information Security Management
10 235 (9.03%) Security Architecture
11 234 (8.99%) Security Operations
12 215 (8.26%) Risk Assessment
13 212 (8.14%) ISMS
14 187 (7.18%) Service Management
14 187 (7.18%) Stakeholder Management
15 172 (6.61%) PRINCE2
16 161 (6.19%) Incident Management
17 160 (6.15%) TOGAF
18 145 (5.57%) Continuous Improvement
Programming Languages
1 155 (5.95%) SQL
2 145 (5.57%) Java
3 110 (4.23%) C
4 79 (3.03%) Python
5 52 (2.00%) PowerShell
6 51 (1.96%) JavaScript
7 46 (1.77%) C#
8 43 (1.65%) Perl
9 34 (1.31%) Shell Script
10 32 (1.23%) PHP
11 27 (1.04%) Bash Shell
11 27 (1.04%) C++
12 21 (0.81%) Ruby
13 14 (0.54%) VB.NET
14 13 (0.50%) VBScript
15 11 (0.42%) PHP 5
16 9 (0.35%) PHP 7
16 9 (0.35%) VB
17 5 (0.19%) COBOL
17 5 (0.19%) T-SQL
Qualifications
1 893 (34.31%) CISSP
2 639 (24.55%) CISM
3 417 (16.02%) Degree
4 305 (11.72%) CISA
5 273 (10.49%) Security Cleared
6 161 (6.19%) SC Cleared
7 151 (5.80%) CRISC
8 146 (5.61%) CEH
9 121 (4.65%) GIAC
10 115 (4.42%) DV Cleared
11 107 (4.11%) Cisco Certification
12 90 (3.46%) Computer Science Degree
13 80 (3.07%) SANS
13 80 (3.07%) SSCP
14 74 (2.84%) CREST Certified
15 65 (2.50%) CESG Certified Professional
16 64 (2.46%) CCNA
17 55 (2.11%) Microsoft Certification
18 53 (2.04%) ISO 27001 Lead Auditor
19 50 (1.92%) GCIH
Quality Assurance & Compliance
1 1003 (38.53%) ISO/IEC 27001
2 463 (17.79%) PCI DSS
3 300 (11.53%) GDPR
4 151 (5.80%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
5 110 (4.23%) Cyber Essentials
6 91 (3.50%) COBIT
7 65 (2.50%) SLA
8 58 (2.23%) ISO/IEC 27005
9 55 (2.11%) ISO 22301
10 53 (2.04%) QA
11 48 (1.84%) ISO 9001
11 48 (1.84%) Sarbanes-Oxley
12 41 (1.58%) RMADS
13 35 (1.34%) Data Quality
14 32 (1.23%) HMG Security Policy Framework
15 31 (1.19%) Cyber Essentials PLUS
16 30 (1.15%) PMO
17 27 (1.04%) ISO/IEC 20000
18 24 (0.92%) GPG13
19 21 (0.81%) ISO 31000
System Software
1 209 (8.03%) Active Directory
2 117 (4.49%) VMware Infrastructure
3 67 (2.57%) Hyper-V
4 36 (1.38%) VMware ESXi
5 32 (1.23%) vSphere
6 30 (1.15%) Snort
7 14 (0.54%) Docker
8 11 (0.42%) Virtual Machines
9 7 (0.27%) Firmware
9 7 (0.27%) Terminal Services
9 7 (0.27%) VMware Workstation
9 7 (0.27%) XenServer
10 6 (0.23%) Virtual Servers
11 4 (0.15%) Apache Flume
11 4 (0.15%) GlusterFS
11 4 (0.15%) Veritas Cluster Server
12 3 (0.12%) Xen
12 3 (0.12%) XenApp
13 2 (0.077%) BitLocker
13 2 (0.077%) Microsoft App-V
Systems Management
1 27 (1.04%) Nessus
1 27 (1.04%) SCCM
2 20 (0.77%) vCenter Server
3 19 (0.73%) Host Intrusion Detection System
4 13 (0.50%) QRadar
5 12 (0.46%) FortiGate
5 12 (0.46%) RSA enVision
6 11 (0.42%) Ansible
6 11 (0.42%) CSIRT
6 11 (0.42%) Kubernetes
6 11 (0.42%) RSA Security Analytics
7 10 (0.38%) Computer Emergency Response Teams
7 10 (0.38%) Nagios
8 9 (0.35%) Nmap
8 9 (0.35%) Opscode Chef
8 9 (0.35%) Symantec Endpoint Protection
9 8 (0.31%) RSA Archer
10 7 (0.27%) ArcSight ESM
10 7 (0.27%) HP Quality Center
10 7 (0.27%) Network Intrusion Detection System
Vendors
1 281 (10.80%) Microsoft
2 172 (6.61%) VMware
3 159 (6.11%) Cisco
4 67 (2.57%) Oracle
5 59 (2.27%) SAP
6 52 (2.00%) CheckPoint
7 41 (1.58%) Splunk
8 36 (1.38%) Citrix
9 34 (1.31%) Red Hat
10 31 (1.19%) ArcSight
11 29 (1.11%) F5
11 29 (1.11%) IBM
11 29 (1.11%) Juniper
12 27 (1.04%) Google
12 27 (1.04%) LogRhythm
12 27 (1.04%) Palo Alto
13 26 (1.00%) HP
14 24 (0.92%) McAfee
15 23 (0.88%) Apple
16 21 (0.81%) CA