ISACA Certified Information Security Manager (CISM)
UK

The table below provides summary statistics for permanent job vacancies with a requirement for CISM qualifications. It includes a benchmarking guide to the salaries offered over the 6 months leading up to 9 May 2026, comparing them to the same period in the previous two years.

6 months to
9 May 2026
Same period 2025 Same period 2024
Rank 367 339 404
Rank change year-on-year -28 +65 -24
Permanent jobs citing CISM 417 363 610
As % of all permanent jobs in the UK 0.46% 0.83% 0.63%
As % of the Qualifications category 1.90% 2.10% 2.35%
Number of salaries quoted 294 246 489
10th Percentile £51,250 £48,165 £47,500
25th Percentile £61,250 £56,250 £58,520
Median annual salary (50th Percentile) £80,000 £72,500 £75,000
Median % change year-on-year +10.34% -3.33% +3.45%
75th Percentile £95,000 £85,000 £87,500
90th Percentile £122,500 £103,750 £101,500
UK excluding London median annual salary £65,000 £65,000 £67,500
% change year-on-year - -3.70% +4.07%

All Academic and Professional Certifications
UK

CISM falls under the Academic Qualifications and Professional Certifications category. For comparison with the information above, the following table provides summary statistics for all permanent job vacancies requiring academic qualifications or professional certifications.

Permanent vacancies requiring academic qualifications or professional certifications 21,916 17,307 25,982
As % of all permanent jobs advertised in the UK 24.18% 39.77% 26.94%
Number of salaries quoted 9,003 7,681 17,212
10th Percentile £29,000 £31,250 £28,250
25th Percentile £41,250 £41,250 £38,356
Median annual salary (50th Percentile) £60,000 £55,000 £54,296
Median % change year-on-year +9.09% +1.30% -7.19%
75th Percentile £77,500 £73,750 £71,000
90th Percentile £92,500 £92,500 £87,500
UK excluding London median annual salary £53,500 £52,000 £50,000
% change year-on-year +2.88% +4.00% -1.96%

CISM
Job Vacancy Trend

Historical trend showing the proportion of permanent IT job postings citing CISM relative to all permanent IT jobs advertised.

CISM job vacancy trend in the UK

CISM
Salary Trend

Salary distribution trend for jobs in the UK citing CISM.

Salary distribution trend for jobs in the UK citing CISM

CISM
Salary Histogram

Salary distribution for jobs citing CISM over the 6 months to 9 May 2026.

Salary histogram for CISM in the UK

CISM
Top 16 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing CISM within the UK over the 6 months to 9 May 2026. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England +8 386 £80,000 +10.34% 110
London +70 236 £87,500 +6.06% 41
UK excluding London -93 163 £65,000 - 74
Work from Home +62 157 £80,000 +23.08% 58
South West -33 39 £60,000 -11.11% 13
North of England -65 39 £62,925 -12.59% 16
South East -55 30 £80,000 +23.08% 20
Midlands -55 25 £77,500 +31.91% 16
West Midlands -48 20 £79,500 +38.26% 12
Yorkshire -41 16 £55,000 -4.35% 3
North West -38 15 £80,637 +7.52% 12
East of England -11 11 £65,000 -8.77% 7
Scotland -15 10 £82,500 -2.94% 6
Wales -22 9 £85,000 +54.55%
North East -40 8 £75,000 -6.25% 1
East Midlands -27 5 £77,500 +24.00% 4

CISM
Co-Occurring Skills & Capabilities by Category

The following tables expand on the one above by listing co-occurrences grouped by category. They cover the same employment type, locality and period, with up to 20 co-occurrences shown in each category:

Application Platforms
1 5 (1.20%) Microsoft Exchange
2 1 (0.24%) Apache Spark
2 1 (0.24%) Confluence
Applications
1 10 (2.40%) Microsoft Office
2 7 (1.68%) Microsoft Excel
2 7 (1.68%) Microsoft PowerPoint
3 6 (1.44%) MS Visio
4 2 (0.48%) Weka
Business Applications
1 8 (1.92%) SAP S/4HANA
2 1 (0.24%) Exchequer
Cloud Services
1 88 (21.10%) Azure
2 78 (18.71%) AWS
3 34 (8.15%) GCP
4 21 (5.04%) Entra ID
5 20 (4.80%) Microsoft 365
6 13 (3.12%) Dynamics 365
7 12 (2.88%) Azure Sentinel
8 10 (2.40%) SaaS
9 9 (2.16%) Nutanix
10 7 (1.68%) Cloud Computing
11 6 (1.44%) Microsoft Purview
12 4 (0.96%) Serverless
13 3 (0.72%) Amazon GuardDuty
13 3 (0.72%) AWS CloudTrail
13 3 (0.72%) AWS KMS
13 3 (0.72%) GitHub
13 3 (0.72%) GitHub Actions
13 3 (0.72%) Vertex AI
14 2 (0.48%) Azure DevOps
14 2 (0.48%) Mimecast
Communications & Networking
1 47 (11.27%) Network Security
2 46 (11.03%) Firewall
3 29 (6.95%) CHAP
4 10 (2.40%) Intrusion Detection
5 8 (1.92%) SD-WAN
5 8 (1.92%) WAN
6 6 (1.44%) VPN
7 4 (0.96%) DNS
7 4 (0.96%) SSL
8 2 (0.48%) DKIM
8 2 (0.48%) DMARC
8 2 (0.48%) TCP/IP
9 1 (0.24%) Cisco ASA
9 1 (0.24%) Internet
9 1 (0.24%) Kerberos
9 1 (0.24%) LAN
9 1 (0.24%) S/MIME
9 1 (0.24%) Wireless
Database & Business Intelligence
1 4 (0.96%) Big Data
2 3 (0.72%) DB2
3 2 (0.48%) Power BI
3 2 (0.48%) Tableau
4 1 (0.24%) MongoDB
4 1 (0.24%) SQL Server
Development Applications
1 5 (1.20%) Jenkins
2 3 (0.72%) GitLab
2 3 (0.72%) Yeoman
3 1 (0.24%) Git
3 1 (0.24%) JIRA
General
1 188 (45.08%) Social Skills
2 179 (42.93%) Finance
3 96 (23.02%) Analytical Skills
4 86 (20.62%) Banking
5 57 (13.67%) Inclusion and Diversity
5 57 (13.67%) Retail
6 50 (11.99%) Legal
7 42 (10.07%) Public Sector
8 32 (7.67%) Financial Institution
9 31 (7.43%) Local Government
10 23 (5.52%) Influencing Skills
11 20 (4.80%) Law
12 15 (3.60%) Telecoms
13 14 (3.36%) Marketing
14 12 (2.88%) Manufacturing
15 10 (2.40%) Pharmaceutical
16 9 (2.16%) Electronics
16 9 (2.16%) Organisational Skills
17 6 (1.44%) Presentation Skills
18 4 (0.96%) Aviation
Job Titles
1 72 (17.27%) Consultant
2 62 (14.87%) Senior
3 54 (12.95%) Security Manager
4 49 (11.75%) Security Consultant
5 41 (9.83%) Architect
6 40 (9.59%) Security Architect
7 39 (9.35%) Lead
8 37 (8.87%) Analyst
9 34 (8.15%) Auditor
10 31 (7.43%) Security Analyst
11 30 (7.19%) Security Auditor
12 28 (6.71%) Cybersecurity Manager
13 26 (6.24%) Internal Auditor
13 26 (6.24%) IT Manager
14 24 (5.76%) Head of Security
15 23 (5.52%) Information Manager
15 23 (5.52%) Information Security Manager
15 23 (5.52%) Senior Manager
16 22 (5.28%) Senior Consultant
17 20 (4.80%) Information Analyst
Libraries, Frameworks & Software Standards
1 9 (2.16%) SAP CAF
2 6 (1.44%) SailPoint
3 4 (0.96%) Middleware
4 2 (0.48%) ModSecurity
4 2 (0.48%) OAuth
5 1 (0.24%) ADO
5 1 (0.24%) JWT
5 1 (0.24%) LDAP
5 1 (0.24%) OAuth2
5 1 (0.24%) OpenID
Miscellaneous
1 90 (21.58%) Management Information System
2 75 (17.99%) Security Posture
3 17 (4.08%) Cyber Threat
4 16 (3.84%) PKI
5 15 (3.60%) Blockchain
5 15 (3.60%) Cloud Native
5 15 (3.60%) Self-Motivation
6 13 (3.12%) Cyber Defence
7 11 (2.64%) Data Protection Act
8 9 (2.16%) Onboarding
8 9 (2.16%) Operational Technology
8 9 (2.16%) Security Operations Centre
9 7 (1.68%) Blog
10 6 (1.44%) Public Cloud
11 5 (1.20%) Cyber Security Posture
11 5 (1.20%) Hybrid Cloud
12 4 (0.96%) Analytical Mindset
12 4 (0.96%) Data Centre
12 4 (0.96%) Digital Media
13 3 (0.72%) Cyber Kill Chain
Operating Systems
1 15 (3.60%) Windows
2 9 (2.16%) Linux
3 7 (1.68%) Unix
4 3 (0.72%) AIX
5 2 (0.48%) Windows Server
6 1 (0.24%) Red Hat Enterprise Linux
Processes & Methodologies
1 283 (67.87%) Cybersecurity
2 221 (53.00%) Information Security
3 185 (44.36%) Risk Management
4 129 (30.94%) Incident Response
5 92 (22.06%) Vulnerability Management
6 86 (20.62%) Risk Assessment
6 86 (20.62%) Stakeholder Engagement
7 83 (19.90%) Cloud Security
8 78 (18.71%) Mentoring
9 76 (18.23%) Continuous Improvement
10 74 (17.75%) SIEM
11 73 (17.51%) Project Management
12 70 (16.79%) Data Protection
13 65 (15.59%) Internal Audit
14 64 (15.35%) Agile
14 64 (15.35%) Security Architecture
15 61 (14.63%) Problem-Solving
16 57 (13.67%) Roadmaps
17 49 (11.75%) Identity Access Management
18 47 (11.27%) Threat Modelling
Programming Languages
1 8 (1.92%) PowerShell
1 8 (1.92%) Python
2 6 (1.44%) Bash
3 2 (0.48%) SQL
4 1 (0.24%) Java
4 1 (0.24%) Perl
Qualifications
1 393 (94.24%) CISSP
2 129 (30.94%) CISA
3 91 (21.82%) CRISC
4 88 (21.10%) Degree
5 84 (20.14%) Cisco Certification
6 74 (17.75%) Security Cleared
7 72 (17.27%) (ISC)2 CCSP
8 57 (13.67%) SC Cleared
9 56 (13.43%) CCSP
10 46 (11.03%) SANS
11 34 (8.15%) ISO 27001 Lead Implementer
12 31 (7.43%) CGEIT
12 31 (7.43%) FFIEC
13 30 (7.19%) CEH
13 30 (7.19%) Master's Degree
14 29 (6.95%) ISO 27001 Lead Auditor
15 28 (6.71%) CompTIA Security+
16 23 (5.52%) DV Cleared
17 21 (5.04%) Computer Science Degree
18 19 (4.56%) Azure Certification
Quality Assurance & Compliance
1 284 (68.11%) ISO/IEC 27001
2 279 (66.91%) NIST
3 106 (25.42%) GDPR
4 100 (23.98%) GRC
5 81 (19.42%) Cyber Essentials
6 60 (14.39%) COBIT
7 47 (11.27%) PCI DSS
8 45 (10.79%) Cyber Essentials PLUS
9 37 (8.87%) NCSC
10 36 (8.63%) NIST 800
11 34 (8.15%) QA
12 22 (5.28%) Sarbanes-Oxley
13 19 (4.56%) SOC 2
14 17 (4.08%) ITGC
15 13 (3.12%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
15 13 (3.12%) JSP 440
16 12 (2.88%) HMG Security Policy Framework
17 8 (1.92%) Actionable Recommendations
18 7 (1.68%) Government Security Classifications
19 6 (1.44%) ISO/IEC 27005
System Software
1 7 (1.68%) Active Directory
2 2 (0.48%) Docker
2 2 (0.48%) VMware Infrastructure
2 2 (0.48%) vSphere
3 1 (0.24%) NLBS
3 1 (0.24%) Virtual Machines
Systems Management
1 14 (3.36%) RSA Archer
2 11 (2.64%) CASB
2 11 (2.64%) Computer Emergency Response Teams
3 7 (1.68%) Terraform
4 5 (1.20%) Ansible
4 5 (1.20%) Kubernetes
4 5 (1.20%) Microsoft Intune
4 5 (1.20%) SCCM
5 4 (0.96%) Single Sign-On
6 1 (0.24%) CSIRT
6 1 (0.24%) Nessus
6 1 (0.24%) Red Hat Satellite
Vendors
1 45 (10.79%) Microsoft
2 29 (6.95%) SAP
3 13 (3.12%) Oracle
4 12 (2.88%) IFS
5 11 (2.64%) Google
6 8 (1.92%) Palo Alto
7 7 (1.68%) Cisco
7 7 (1.68%) CrowdStrike
7 7 (1.68%) Tenable
8 5 (1.20%) CheckPoint
8 5 (1.20%) CyberArk
8 5 (1.20%) Fortinet
9 4 (0.96%) Arista
9 4 (0.96%) F5
9 4 (0.96%) Splunk
10 3 (0.72%) Citrix
10 3 (0.72%) Intel
10 3 (0.72%) Varonis
11 2 (0.48%) ServiceNow
11 2 (0.48%) VMware