Application Security (AppSec)
UK

The following table provides summary statistics for permanent job vacancies with a requirement for Application Security skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Application Security over the 6 months to 19 April 2024 with a comparison to the same period in the previous 2 years.

6 months to
19 Apr 2024
Same period 2023 Same period 2022
Rank 506 463 560
Rank change year-on-year -43 +97 -84
Permanent jobs citing Application Security 447 687 874
As % of all permanent jobs advertised in the UK 0.46% 0.64% 0.57%
As % of the Processes & Methodologies category 0.53% 0.67% 0.60%
Number of salaries quoted 309 399 528
10th Percentile £46,250 £37,500 £37,500
25th Percentile £56,250 £56,250 £51,750
Median annual salary (50th Percentile) £75,000 £77,500 £72,500
Median % change year-on-year -3.23% +6.90% +11.54%
75th Percentile £85,000 £92,500 £88,750
90th Percentile £100,000 £108,250 £110,000
UK excluding London median annual salary £65,000 £60,000 £57,500
% change year-on-year +8.33% +4.35% -4.17%

All Process and Methodology Skills
UK

Application Security is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 83,814 101,905 146,218
As % of all permanent jobs advertised in the UK 86.22% 95.67% 95.49%
Number of salaries quoted 59,590 59,680 83,719
10th Percentile £29,000 £34,000 £33,250
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £61,500 £60,000
Median % change year-on-year -10.57% +2.50% +9.09%
75th Percentile £72,500 £82,500 £80,000
90th Percentile £92,500 £100,000 £96,250
UK excluding London median annual salary £50,000 £54,882 £52,500
% change year-on-year -8.90% +4.54% +9.38%

Application Security
Job Vacancy Trend

Job postings citing Application Security as a proportion of all IT jobs advertised.

Job vacancy trend for Application Security in the UK

Application Security
Salary Trend

3-month moving average salary quoted in jobs citing Application Security.

Salary trend for Application Security in the UK

Application Security
Salary Histogram

Salary distribution for jobs citing Application Security over the 6 months to 19 April 2024.

Salary histogram for Application Security in the UK

Application Security
Top 16 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Application Security within the UK over the 6 months to 19 April 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -2 400 £75,000 -3.23% 85
London +61 233 £75,000 -10.71% 37
Work from Home +26 207 £72,500 -3.33% 55
UK excluding London -66 181 £65,000 +8.33% 42
North of England +37 66 £61,853 +5.28% 13
South East -31 56 £72,500 +26.09% 14
North West 0 39 £60,603 -3.04% 9
Midlands +13 26 £60,000 -9.77% 5
West Midlands +33 25 £60,000 -17.81% 5
Yorkshire +90 19 £79,842 +33.07% 4
South West +1 17 £73,750 -34.44% 2
Scotland -55 16 £50,000 +9.29%
North East 0 8 £64,921 +36.68%
Wales +7 2 £65,000 +74.98% 2
East of England -3 1 £60,000 -25.00% 7
East Midlands -17 1 £65,000 +18.18%

Application Security
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 13 (2.91%) SharePoint
2 10 (2.24%) Microsoft Exchange
3 2 (0.45%) IIS
4 1 (0.22%) Apache
4 1 (0.22%) Blackberry Enterprise Server
4 1 (0.22%) CMS
4 1 (0.22%) Drupal
4 1 (0.22%) nginx
Applications
1 6 (1.34%) Microsoft Excel
1 6 (1.34%) Microsoft Office
Business Applications
1 2 (0.45%) Payment Gateway
1 2 (0.45%) SAP GRC
1 2 (0.45%) SAP S/4HANA
2 1 (0.22%) Aareon QL
2 1 (0.22%) Magento
2 1 (0.22%) MIS ActiveH
2 1 (0.22%) NEC Housing
2 1 (0.22%) OPENHousing
Cloud Services
1 158 (35.35%) Azure
2 112 (25.06%) AWS
3 53 (11.86%) Microsoft 365
4 28 (6.26%) SaaS
5 24 (5.37%) Entra ID
6 23 (5.15%) GCP
7 21 (4.70%) PaaS
8 20 (4.47%) Cloud Computing
9 19 (4.25%) IaaS
10 16 (3.58%) Azure AKS
11 14 (3.13%) Azure DevOps
11 14 (3.13%) Power Platform
12 11 (2.46%) Serverless
13 8 (1.79%) Azure Sentinel
14 6 (1.34%) Azure Service Bus
14 6 (1.34%) Azure Service Fabric
15 4 (0.89%) AWS Lambda
15 4 (0.89%) Azure App Service
15 4 (0.89%) Dynamics 365
15 4 (0.89%) PowerApps
Communications & Networking
1 99 (22.15%) Firewall
2 74 (16.55%) WAN
3 59 (13.20%) Network Security
4 45 (10.07%) VPN
5 41 (9.17%) LAN
6 39 (8.72%) Internet
7 33 (7.38%) SD-WAN
8 14 (3.13%) Wireless
9 12 (2.68%) Intrusion Detection
10 9 (2.01%) HTTP
11 8 (1.79%) Wireshark
12 7 (1.57%) TCP/IP
13 5 (1.12%) IPv4
14 4 (0.89%) BGP
14 4 (0.89%) Ethernet VPN
14 4 (0.89%) MPLS
14 4 (0.89%) OSPF
14 4 (0.89%) tcpdump
14 4 (0.89%) Unified Communications
14 4 (0.89%) VXLAN
Database & Business Intelligence
1 16 (3.58%) SQL Server
2 11 (2.46%) Relational Database
3 10 (2.24%) NoSQL
4 9 (2.01%) Azure SQL Database
5 8 (1.79%) CockroachDB
6 7 (1.57%) SQL Server Integration Services
6 7 (1.57%) SQL Server Reporting Services
7 4 (0.89%) Amazon RDS
7 4 (0.89%) Data Lake
7 4 (0.89%) RDBMS
8 3 (0.67%) Elasticsearch
8 3 (0.67%) Looker
8 3 (0.67%) MySQL
9 1 (0.22%) Amazon Aurora
9 1 (0.22%) Big Data
9 1 (0.22%) Geospatial Data
9 1 (0.22%) MongoDB
9 1 (0.22%) PostgreSQL
9 1 (0.22%) Power BI
Development Applications
1 40 (8.95%) Burp Suite
2 34 (7.61%) Metasploit
3 12 (2.68%) Git
3 12 (2.68%) Jenkins
4 9 (2.01%) Sonatype Nexus
5 8 (1.79%) Jaeger
6 6 (1.34%) Selenium
6 6 (1.34%) SoapUI
7 5 (1.12%) Cypress.io
8 4 (0.89%) Postman
9 3 (0.67%) Moq
9 3 (0.67%) SpecFlow
9 3 (0.67%) Visual Studio
10 2 (0.45%) Bitbucket
10 2 (0.45%) WebDriver
11 1 (0.22%) CircleCI
11 1 (0.22%) Gradle
11 1 (0.22%) Grunt
11 1 (0.22%) gulp
11 1 (0.22%) Robot Framework
General
1 133 (29.75%) Social Skills
2 101 (22.60%) Finance
3 56 (12.53%) Analytical Skills
4 48 (10.74%) Retail
5 30 (6.71%) Inclusion and Diversity
5 30 (6.71%) Law
6 23 (5.15%) Banking
7 19 (4.25%) Telecoms
8 15 (3.36%) Public Sector
9 14 (3.13%) Legal
10 13 (2.91%) Financial Institution
10 13 (2.91%) Marketing
11 12 (2.68%) Health Technology
12 10 (2.24%) Documentation Skills
12 10 (2.24%) Tech for Good
13 7 (1.57%) Manufacturing
13 7 (1.57%) Presentation Skills
14 5 (1.12%) Influencing Skills
15 4 (0.89%) Investment Banking
16 1 (0.22%) Private Banking
Job Titles
1 145 (32.44%) Architect
2 110 (24.61%) Senior
3 83 (18.57%) Security Architect
4 47 (10.51%) Analyst
4 47 (10.51%) Tester
5 46 (10.29%) Penetration Tester
6 45 (10.07%) Lead
7 44 (9.84%) Security Analyst
8 38 (8.50%) Security Engineer
9 36 (8.05%) Lead Architect
10 30 (6.71%) Lead Security Architect
11 28 (6.26%) Developer
12 26 (5.82%) Consultant
13 24 (5.37%) Infrastructure Architect
14 21 (4.70%) Cybersecurity Analyst
14 21 (4.70%) Senior Analyst
15 20 (4.47%) CISSP Analyst
15 20 (4.47%) Senior Security Analyst
16 16 (3.58%) Cybersecurity Engineer
16 16 (3.58%) Security Manager
Libraries, Frameworks & Software Standards
1 25 (5.59%) OAuth
2 18 (4.03%) HTML
3 17 (3.80%) .NET
4 16 (3.58%) React
4 16 (3.58%) REST
4 16 (3.58%) Web Services
5 15 (3.36%) RESTful
5 15 (3.36%) SAML
6 12 (2.68%) CSS
6 12 (2.68%) Middleware
6 12 (2.68%) SailPoint
7 11 (2.46%) HTML5
8 10 (2.24%) Vue
9 9 (2.01%) .NET Framework
9 9 (2.01%) Entity Framework
9 9 (2.01%) Spring Boot
10 8 (1.79%) AngularJS
10 8 (1.79%) Kafka
10 8 (1.79%) OAuth2
10 8 (1.79%) OpenTelemetry
Miscellaneous
1 75 (16.78%) Management Information System
2 52 (11.63%) Distributed Denial-of-Service
3 21 (4.70%) PKI
4 19 (4.25%) Cyber Threat
4 19 (4.25%) Security Posture
4 19 (4.25%) Self-Motivation
5 15 (3.36%) Public Cloud
6 14 (3.13%) Distributed Systems
6 14 (3.13%) Greenfield Project
7 13 (2.91%) Mobile App
8 12 (2.68%) Data Centre
9 10 (2.24%) Product Ownership
9 10 (2.24%) Robotics
10 9 (2.01%) Cloud Native
11 7 (1.57%) Blockchain
11 7 (1.57%) Replication
11 7 (1.57%) Web3
12 5 (1.12%) Hybrid Cloud
13 4 (0.89%) IoT
14 3 (0.67%) Data Structures
Operating Systems
1 84 (18.79%) Linux
2 67 (14.99%) Windows
3 34 (7.61%) Ubuntu
3 34 (7.61%) VMS
4 30 (6.71%) Kali Linux
5 18 (4.03%) Windows Server
6 9 (2.01%) Android
6 9 (2.01%) Apple iOS
7 2 (0.45%) Unix
8 1 (0.22%) Mac OS X
8 1 (0.22%) Red Hat Enterprise Linux
8 1 (0.22%) Windows 10
8 1 (0.22%) Windows Server 2019
Processes & Methodologies
1 175 (39.15%) Cybersecurity
2 146 (32.66%) Information Security
3 102 (22.82%) OWASP
4 98 (21.92%) Penetration Testing
5 97 (21.70%) DevSecOps
6 88 (19.69%) Problem-Solving
7 84 (18.79%) CI/CD
8 83 (18.57%) Computer Science
9 80 (17.90%) Cloud Security
10 75 (16.78%) Security Architecture
11 71 (15.88%) Agile
12 67 (14.99%) DevOps
13 65 (14.54%) Security Testing
14 58 (12.98%) SIEM
15 54 (12.08%) Secure Coding
16 53 (11.86%) Vulnerability Management
17 52 (11.63%) Security Operations
18 50 (11.19%) Identity Access Management
19 47 (10.51%) Identity Management
19 47 (10.51%) Security Management
Programming Languages
1 53 (11.86%) SQL
2 33 (7.38%) JavaScript
3 32 (7.16%) Python
4 25 (5.59%) Java
4 25 (5.59%) PowerShell
5 19 (4.25%) C#
6 11 (2.46%) TypeScript
7 10 (2.24%) Kusto Query Language
8 9 (2.01%) Go
9 7 (1.57%) T-SQL
10 6 (1.34%) PHP
11 4 (0.89%) Bash
11 4 (0.89%) C++
11 4 (0.89%) Ruby
12 3 (0.67%) R
13 2 (0.45%) Dart
13 2 (0.45%) Kotlin
13 2 (0.45%) Lua
13 2 (0.45%) Rust
13 2 (0.45%) Swift
Qualifications
1 124 (27.74%) CISSP
2 110 (24.61%) Degree
3 76 (17.00%) CISM
4 60 (13.42%) Cisco Certification
5 58 (12.98%) (ISC)2 CCSP
6 57 (12.75%) CCSP
7 56 (12.53%) Security Cleared
8 54 (12.08%) Computer Science Degree
9 47 (10.51%) Azure Certification
10 42 (9.40%) AWS Certification
11 39 (8.72%) DV Cleared
12 33 (7.38%) CCSK
13 22 (4.92%) AWS Certified Cloud Practitioner
14 20 (4.47%) CREST Certified
15 19 (4.25%) OSCP
16 18 (4.03%) CompTIA CySA+
16 18 (4.03%) SC Cleared
17 17 (3.80%) CompTIA Security+
18 16 (3.58%) GIAC
18 16 (3.58%) Network+ Certification
Quality Assurance & Compliance
1 98 (21.92%) NIST
2 39 (8.72%) ISO/IEC 27001
3 24 (5.37%) GRC
4 23 (5.15%) SOC 2
5 21 (4.70%) PCI DSS
6 20 (4.47%) GDPR
7 15 (3.36%) Cyber Essentials
8 11 (2.46%) COBIT
9 9 (2.01%) NIST 800
10 8 (1.79%) NCSC
11 6 (1.34%) Accessibility
11 6 (1.34%) Actionable Recommendations
11 6 (1.34%) QA
11 6 (1.34%) Web Application Security Consortium
12 5 (1.12%) Cyber Essentials PLUS
12 5 (1.12%) SLA
13 4 (0.89%) WCAG
14 3 (0.67%) HIPAA
15 2 (0.45%) ISO 31000
15 2 (0.45%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
System Software
1 64 (14.32%) Docker
2 61 (13.65%) Active Directory
3 13 (2.91%) VMware Infrastructure
4 9 (2.01%) Hyper-V
5 4 (0.89%) Microsoft Virtual Server
5 4 (0.89%) Virtual Servers
6 3 (0.67%) VMware ESXi
7 2 (0.45%) Virtual Machines
7 2 (0.45%) vSphere
Systems Management
1 88 (19.69%) Kubernetes
2 56 (12.53%) Terraform
3 46 (10.29%) Ansible
3 46 (10.29%) Single Sign-On
4 12 (2.68%) Computer Emergency Response Teams
5 8 (1.79%) Kiali
5 8 (1.79%) Microsoft Intune
5 8 (1.79%) Nessus
6 6 (1.34%) Nmap
7 4 (0.89%) CSIRT
8 3 (0.67%) HP Fortify
8 3 (0.67%) QRadar
8 3 (0.67%) vCenter Server
9 2 (0.45%) Suricata
10 1 (0.22%) Cacti
10 1 (0.22%) CASB
10 1 (0.22%) Grafana
10 1 (0.22%) WMI
10 1 (0.22%) WSUS
10 1 (0.22%) ZABBIX
Vendors
1 88 (19.69%) Microsoft
2 15 (3.36%) Splunk
2 15 (3.36%) VMware
3 11 (2.46%) BeyondTrust
3 11 (2.46%) CyberArk
3 11 (2.46%) ServiceNow
4 10 (2.24%) Qualys
5 8 (1.79%) AppDynamics
6 5 (1.12%) F5
6 5 (1.12%) Juniper
7 4 (0.89%) OpenAI
8 3 (0.67%) IBM
8 3 (0.67%) Oracle
8 3 (0.67%) Veracode
9 2 (0.45%) Cisco
9 2 (0.45%) Citrix
9 2 (0.45%) Palo Alto
9 2 (0.45%) SAP
10 1 (0.22%) Civica
10 1 (0.22%) Databricks