Period
to 20 September 2018

The following table provides summary statistics for permanent job vacancies with a requirement for CISA qualifications. Included is a benchmarking guide to the salaries offered over the 6 months to 20 September 2018 with a comparison to the same period in the previous 2 years.

ISACA Certified Information Systems Auditor (CISA)
UK
6 months to
20 Sep 2018
Same period 2017 Same period 2016
Rank 456 464 428
Rank change year-on-year +8 -36 +141
Permanent jobs citing CISA 1,080 1,087 1,411
As % of all permanent IT jobs advertised in the UK 0.65% 0.61% 0.72%
As % of the Qualifications category 2.74% 2.51% 2.72%
Number of salaries quoted 748 866 1,125
UK median annual salary £65,000 £63,250 £62,500
Median salary % change year-on-year +2.77% +1.20% +8.70%
10th Percentile £42,500 £42,250 £37,500
90th Percentile £96,250 £95,000 £86,250
UK excluding London median annual salary £60,000 £55,000 £55,000
% change year-on-year +9.09% - +4.76%

CISA is in the Academic Qualifications and Professional Certifications category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for academic qualifications or professional certifications.

All Academic and Professional Certifications
UK
Permanent vacancies requiring academic qualifications or professional certifications 39,487 43,279 51,863
As % of all permanent IT jobs advertised in the UK 23.61% 24.46% 26.58%
Number of salaries quoted 29,329 33,202 41,826
UK median annual salary £50,000 £46,000 £45,000
Median salary % change year-on-year +8.70% +2.22% -
10th Percentile £26,250 £26,000 £26,250
90th Percentile £80,000 £77,500 £76,250
UK excluding London median annual salary £45,000 £42,500 £42,500
% change year-on-year +5.88% - +6.25%

CISA
Job Vacancy Trend

Job postings citing CISA as a percentage of all IT jobs advertised.

Job vacancy trend for CISA in the UK

CISA
Salary Trend

This chart provides the 3-month moving average for salaries quoted in permanent IT jobs citing CISA.

Salary trend for CISA in the UK

CISA
Salary Histogram

The salary distribution of IT jobs citing CISA over the 6 months to 20 September 2018.

Salary histogram for CISA in the UK

CISA
Top 16 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing CISA within the UK over the 6 months to 20 September 2018. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England +16 1,047 £65,000 +2.77% 103
UK excluding London +69 555 £60,000 +9.09% 55
London -19 504 £75,000 +11.11% 49
South East +60 186 £60,000 - 20
North of England -18 144 £55,000 +10.00% 16
East of England +69 118 £70,000 +27.27% 8
North West -16 89 £55,000 +4.76% 13
Midlands +31 67 £58,500 +0.43% 3
West Midlands +50 60 £57,500 -1.29% 2
Yorkshire +23 50 £57,500 +27.78% 1
South West +13 20 £63,750 +27.50% 7
Scotland -12 13 £75,000 -22.08%
North East -22 5 £42,500 -10.53% 2
Isle of Man - 5 £55,000 -
East Midlands -1 4 £63,000 -6.67% 1
Wales +6 2 £44,500 +11.25% 1

For the 6 months to 20 September 2018, IT jobs citing CISA also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads with a requirement for CISA.

1 970 (89.81%) CISSP
2 816 (75.56%) CISM
3 739 (68.43%) Information Security
4 428 (39.63%) ISO/IEC 27001
5 405 (37.50%) Cybersecurity
6 380 (35.19%) Risk Management
7 362 (33.52%) Finance
8 248 (22.96%) GDPR
9 247 (22.87%) PCI DSS
10 209 (19.35%) CRISC
11 205 (18.98%) SIEM
12 203 (18.80%) Management Information System
13 201 (18.61%) Degree
14 187 (17.31%) ITIL
15 169 (15.65%) Data Protection
16 163 (15.09%) COBIT
17 155 (14.35%) CEH
18 149 (13.80%) GIAC
19 144 (13.33%) SANS
20 139 (12.87%) Stakeholder Management
21 136 (12.59%) Analytical Skills
22 129 (11.94%) Security Architecture
23 128 (11.85%) SSCP
24 124 (11.48%) Penetration Testing
25 117 (10.83%) Firewall
26 115 (10.65%) Internal Audit
27 111 (10.28%) IT Audit
28 109 (10.09%) Windows
28 109 (10.09%) Security Operations
29 107 (9.91%) Security Management

CISA
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 12 (1.11%) IIS
2 6 (0.56%) Confluence
3 3 (0.28%) SharePoint
4 2 (0.19%) MS Exchange
5 1 (0.093%) Apache
5 1 (0.093%) JBoss
5 1 (0.093%) Tomcat
5 1 (0.093%) WebLogic
Applications
1 13 (1.20%) Microsoft Office
2 5 (0.46%) Microsoft Excel
2 5 (0.46%) MS Visio
3 1 (0.093%) Microsoft Project
3 1 (0.093%) Spreadsheet
Business Applications
1 17 (1.57%) SAP GRC
2 9 (0.83%) assyst
3 8 (0.74%) SAP BPC
4 7 (0.65%) Distributed Ledger
4 7 (0.65%) Sentinel
5 6 (0.56%) Oracle Financials
6 5 (0.46%) SAP S/4HANA
7 4 (0.37%) SAP Oil and Gas
8 3 (0.28%) Infor M3
8 3 (0.28%) Oracle Assets
8 3 (0.28%) Oracle General Ledger
8 3 (0.28%) Oracle Payables
8 3 (0.28%) Oracle Receivables
9 2 (0.19%) Oracle EBS R12
10 1 (0.093%) Oracle ERP
Cloud Services
1 47 (4.35%) Amazon AWS
2 41 (3.80%) Microsoft Azure
3 23 (2.13%) Office 365
4 18 (1.67%) Mimecast
5 14 (1.30%) SaaS
6 4 (0.37%) Cloud Computing
7 3 (0.28%) OneDrive
8 2 (0.19%) Virtual Private Cloud
9 1 (0.093%) Akamai
9 1 (0.093%) GitHub
9 1 (0.093%) Google Cloud Platform
9 1 (0.093%) IaaS
9 1 (0.093%) PaaS
Communications & Networking
1 117 (10.83%) Firewall
2 88 (8.15%) Network Security
3 39 (3.61%) Intrusion Detection
4 29 (2.69%) Internet
5 20 (1.85%) TCP/IP
6 17 (1.57%) VPN
7 15 (1.39%) DKIM
7 15 (1.39%) DMARC
8 13 (1.20%) LAN
9 12 (1.11%) Broadband
10 11 (1.02%) SSL
10 11 (1.02%) WAN
11 10 (0.93%) IPsec
11 10 (0.93%) Wireless
12 7 (0.65%) SAN
13 6 (0.56%) Cisco Firepower
13 6 (0.56%) SMS
13 6 (0.56%) Wireless Security
14 5 (0.46%) ATM
14 5 (0.46%) Remote Desktop
Database & Business Intelligence
1 8 (0.74%) Big Data
1 8 (0.74%) SAP HANA
2 7 (0.65%) Blockchain
3 5 (0.46%) SAP BW
4 2 (0.19%) Data Warehouse
4 2 (0.19%) DB2
4 2 (0.19%) GIS
4 2 (0.19%) Hadoop
4 2 (0.19%) MySQL
4 2 (0.19%) SQL Server
5 1 (0.093%) NoSQL
5 1 (0.093%) Power BI
5 1 (0.093%) QlikView
5 1 (0.093%) Spotfire
Development Applications
1 14 (1.30%) Metasploit
2 6 (0.56%) JIRA
3 5 (0.46%) AppScan
3 5 (0.46%) Burp Suite
4 2 (0.19%) SonarQube
5 1 (0.093%) Git (software)
5 1 (0.093%) Jenkins
5 1 (0.093%) Maven
General
1 362 (33.52%) Finance
2 98 (9.07%) Legal
3 63 (5.83%) Banking
4 62 (5.74%) Retail
5 34 (3.15%) Telecoms
6 24 (2.22%) Investment Banking
7 21 (1.94%) Law
8 12 (1.11%) Games
9 10 (0.93%) Manufacturing
10 8 (0.74%) Local Government
10 8 (0.74%) Publishing
11 7 (0.65%) Marketing
12 6 (0.56%) Billing
13 4 (0.37%) French Language
13 4 (0.37%) Front Office
13 4 (0.37%) Online Betting
14 3 (0.28%) Advertising
14 3 (0.28%) Financial Institution
14 3 (0.28%) Mandarin Language
15 2 (0.19%) Pharmaceutical
Job Titles
1 204 (18.89%) Security Manager
2 182 (16.85%) Analyst
3 130 (12.04%) Security Analyst
4 115 (10.65%) Consultant
5 110 (10.19%) Information Manager
6 105 (9.72%) Information Security Manager
7 100 (9.26%) Security Engineer
8 99 (9.17%) Security Consultant
9 96 (8.89%) Security Officer
10 92 (8.52%) IT Manager
11 86 (7.96%) Risk Manager
12 72 (6.67%) Information Security Officer
13 71 (6.57%) Information Analyst
13 71 (6.57%) Information Security Analyst
14 69 (6.39%) Architect
14 69 (6.39%) Security Architect
15 58 (5.37%) Information Officer
16 50 (4.63%) IT Risk Manager
17 44 (4.07%) Head of Security
18 43 (3.98%) Cybersecurity Consultant
Libraries, Frameworks & Software Standards
1 26 (2.41%) SailPoint
2 9 (0.83%) .NET
3 6 (0.56%) Middleware
4 5 (0.46%) SAP Fiori
5 4 (0.37%) Oracle Fusion
6 2 (0.19%) OLE
6 2 (0.19%) Web Services
7 1 (0.093%) LDAP
7 1 (0.093%) OAuth
7 1 (0.093%) SAML
7 1 (0.093%) SPNEGO
7 1 (0.093%) XACML
Miscellaneous
1 203 (18.80%) Management Information System
2 136 (12.59%) Analytical Skills
3 64 (5.93%) Computer Science
4 55 (5.09%) Security Operations Centre
5 41 (3.80%) Data Protection Act
6 40 (3.70%) Data Centre
7 39 (3.61%) Self-Motivation
8 37 (3.43%) PKI
9 29 (2.69%) Cyberthreat
10 28 (2.59%) CESG
11 27 (2.50%) Distributed Denial-of-Service
12 26 (2.41%) Fintech
13 15 (1.39%) Enterprise Software
13 15 (1.39%) Life Science
14 14 (1.30%) Mobile App
15 13 (1.20%) Freedom of Information
16 11 (1.02%) Cyberattack
16 11 (1.02%) FMCG
17 9 (0.83%) Private Cloud
17 9 (0.83%) Video Conferencing
Operating Systems
1 109 (10.09%) Windows
2 81 (7.50%) Unix
3 64 (5.93%) Linux
4 13 (1.20%) Windows Server
5 12 (1.11%) Kali Linux
6 5 (0.46%) Windows Server 2008
6 5 (0.46%) Windows Server 2012
7 4 (0.37%) Red Hat Enterprise Linux
8 2 (0.19%) HPUX
8 2 (0.19%) Solaris
8 2 (0.19%) zOS
9 1 (0.093%) VMS
Processes & Methodologies
1 739 (68.43%) Information Security
2 405 (37.50%) Cybersecurity
3 380 (35.19%) Risk Management
4 205 (18.98%) SIEM
5 187 (17.31%) ITIL
6 169 (15.65%) Data Protection
7 139 (12.87%) Stakeholder Management
8 129 (11.94%) Security Architecture
9 124 (11.48%) Penetration Testing
10 115 (10.65%) Internal Audit
11 111 (10.28%) IT Audit
12 109 (10.09%) Security Operations
13 107 (9.91%) Security Management
14 105 (9.72%) Identity Access Management
15 103 (9.54%) Continuous Improvement
16 97 (8.98%) Agile Software Development
17 90 (8.33%) Business Continuity
18 89 (8.24%) Vulnerability Management
19 83 (7.69%) Incident Management
19 83 (7.69%) Security Monitoring
Programming Languages
1 28 (2.59%) Python
2 20 (1.85%) Perl
3 17 (1.57%) C
3 17 (1.57%) PHP
4 15 (1.39%) Java
4 15 (1.39%) Ruby
5 12 (1.11%) SQL
6 10 (0.93%) Go
7 7 (0.65%) C++
8 5 (0.46%) PowerShell
8 5 (0.46%) Shell Script
9 4 (0.37%) Assembly Language
9 4 (0.37%) Bash Shell
10 3 (0.28%) C#
11 2 (0.19%) R
12 1 (0.093%) JavaScript
Qualifications
1 970 (89.81%) CISSP
2 816 (75.56%) CISM
3 209 (19.35%) CRISC
4 201 (18.61%) Degree
5 155 (14.35%) CEH
6 149 (13.80%) GIAC
7 144 (13.33%) SANS
8 128 (11.85%) SSCP
9 87 (8.06%) CompTIA Security+
10 75 (6.94%) CSSLP
11 40 (3.70%) Security Cleared
12 36 (3.33%) CISMP
13 33 (3.06%) CGEIT
13 33 (3.06%) Computer Science Degree
14 31 (2.87%) ISO 27001 Lead Auditor
15 30 (2.78%) PCI QSA
16 27 (2.50%) Cisco Certification
17 25 (2.31%) CREST Certified
18 21 (1.94%) SC Cleared
19 18 (1.67%) ISACA
Quality Assurance & Compliance
1 428 (39.63%) ISO/IEC 27001
2 248 (22.96%) GDPR
3 247 (22.87%) PCI DSS
4 163 (15.09%) COBIT
5 76 (7.04%) Cyber Essentials
6 62 (5.74%) Sarbanes-Oxley
7 39 (3.61%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
8 28 (2.59%) QA
9 27 (2.50%) ISO 9001
10 23 (2.13%) Cyber Essentials PLUS
11 21 (1.94%) HIPAA
12 14 (1.30%) ISO 22301
12 14 (1.30%) ISO/IEC 20000
13 12 (1.11%) IASME
14 11 (1.02%) SLA
15 10 (0.93%) ISAE 3402
16 8 (0.74%) GPG13
16 8 (0.74%) HMG Security Policy Framework
16 8 (0.74%) ISO 31000
17 7 (0.65%) PMO
System Software
1 22 (2.04%) Active Directory
2 8 (0.74%) Hyper-V
3 6 (0.56%) VMware Infrastructure
4 5 (0.46%) vSphere
5 3 (0.28%) Docker
6 1 (0.093%) ProxySG
Systems Management
1 51 (4.72%) Nessus
2 22 (2.04%) QRadar
3 18 (1.67%) Core Impact
3 18 (1.67%) Nexpose
3 18 (1.67%) OpenVAS
4 13 (1.20%) Single Sign-On
5 12 (1.11%) Nmap
6 9 (0.83%) McAfee ePO
6 9 (0.83%) RSA Archer
7 8 (0.74%) CASB
7 8 (0.74%) Norton AntiVirus
8 5 (0.46%) CSIRT
8 5 (0.46%) Host Intrusion Detection System
8 5 (0.46%) HP Fortify
9 4 (0.37%) Ansible
10 3 (0.28%) Microsoft Intune
11 2 (0.19%) OSSEC
11 2 (0.19%) Trend Micro Deep Security
12 1 (0.093%) Network Intrusion Detection System
12 1 (0.093%) Oracle Identity Manager
Vendors
1 79 (7.31%) Microsoft
2 66 (6.11%) Symantec
3 54 (5.00%) Cisco
4 52 (4.81%) Sophos
4 52 (4.81%) Splunk
5 46 (4.26%) Qualys
6 36 (3.33%) LogRhythm
7 30 (2.78%) CyberArk
8 28 (2.59%) ArcSight
9 26 (2.41%) Aveksa
10 25 (2.31%) McAfee
11 24 (2.22%) Forcepoint
12 23 (2.13%) CheckPoint
13 20 (1.85%) SolarWinds
14 19 (1.76%) AlienVault
14 19 (1.76%) SAP
15 18 (1.67%) Bomgar
16 17 (1.57%) Fortinet
16 17 (1.57%) Palo Alto
17 15 (1.39%) Oracle