Period
to 4 December 2021

The following table provides summary statistics for permanent job vacancies with a requirement for CREST Certified qualifications. Included is a benchmarking guide to the salaries offered over the 6 months to 4 December 2021 with a comparison to the same period in the previous 2 years.

CREST Certification
UK
6 months to
4 Dec 2021
Same period 2020 Same period 2019
Rank 952 669 840
Rank change year-on-year -283 +171 -67
Permanent jobs citing CREST Certified 111 63 240
As % of all permanent jobs advertised in the UK 0.087% 0.11% 0.18%
As % of the Qualifications category 0.39% 0.55% 0.79%
Number of salaries quoted 91 42 173
10th Percentile £42,500 £48,750 £43,750
25th Percentile £52,500 £52,174 £51,250
Median annual salary (50th Percentile) £65,000 £62,500 £67,500
Median % change year-on-year +4.00% -7.41% +17.39%
75th Percentile £75,000 £78,750 £80,000
90th Percentile £87,500 £90,000 £92,000
UK excluding London median annual salary £60,000 £57,000 £70,000
% change year-on-year +5.26% -18.57% +55.56%

CREST Certified is in the Academic Qualifications and Professional Certifications category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for academic qualifications or professional certifications.

All Academic and Professional Certifications
UK
Permanent vacancies requiring academic qualifications or professional certifications 28,152 11,523 30,459
As % of all permanent IT jobs advertised in the UK 22.01% 20.53% 22.43%
Number of salaries quoted 15,728 8,968 23,016
10th Percentile £31,000 £31,250 £27,500
25th Percentile £41,000 £41,250 £35,250
Median annual salary (50th Percentile) £55,000 £55,000 £50,000
Median % change year-on-year - +10.00% -
75th Percentile £72,500 £71,250 £67,500
90th Percentile £90,000 £86,250 £82,500
UK excluding London median annual salary £49,000 £49,000 £45,000
% change year-on-year - +8.89% -

CREST Certified
Job Vacancy Trend

Job postings citing CREST Certified as a proportion of all IT jobs advertised.

Job vacancy trend for CREST Certified in the UK

CREST Certified
Salary Trend

3-month moving average salary quoted in jobs citing CREST Certified.

Salary trend for CREST Certified in the UK

CREST Certified
Salary Histogram

Salary distribution for jobs citing CREST Certified over the 6 months to 4 December 2021.

Salary histogram for CREST Certified in the UK

CREST Certified
Top 12 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing CREST Certified within the UK over the 6 months to 4 December 2021. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England -248 89 £62,500 - 19
UK excluding London -203 43 £60,000 +5.26% 14
London -226 43 £65,000 -27.78% 7
Work from Home -213 34 £65,000 -7.80% 4
South East -119 14 £70,000 +33.33% 2
South West -63 12 £58,750 - 1
West Midlands -91 10 £65,000 +4.00% 2
Midlands -110 10 £65,000 +4.00% 2
North of England -122 6 £51,250 -4.56% 7
Yorkshire -70 5 £47,500 - 5
Scotland -69 1 £90,000 +59.29%
North West -96 1 £55,000 +2.42% 1

For the 6 months to 4 December 2021, IT jobs citing CREST Certified also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads with a requirement for CREST Certified.

1 72 (64.86%) Cybersecurity
2 50 (45.05%) Penetration Testing
3 49 (44.14%) OSCP
4 41 (36.94%) Information Security
5 36 (32.43%) CISSP
6 34 (30.63%) Security Testing
7 27 (24.32%) ISO/IEC 27001
7 27 (24.32%) Security Cleared
7 27 (24.32%) Azure
8 26 (23.42%) Social Skills
9 25 (22.52%) Red Team
10 24 (21.62%) NIST
10 24 (21.62%) CISM
11 22 (19.82%) CISA
11 22 (19.82%) Cisco Certification
11 22 (19.82%) AWS
11 22 (19.82%) DevOps
11 22 (19.82%) Security Operations
12 21 (18.92%) Data Privacy
12 21 (18.92%) Network Security
12 21 (18.92%) Linux
12 21 (18.92%) Python
12 21 (18.92%) Finance
13 20 (18.02%) Degree
13 20 (18.02%) Computer Science
14 19 (17.12%) PCI DSS
15 18 (16.22%) SC Cleared
15 18 (16.22%) Splunk
15 18 (16.22%) SIEM
15 18 (16.22%) Java

CREST Certified
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 8 (7.21%) IIS
Business Applications
1 1 (0.90%) Elite 3E
1 1 (0.90%) NetSuite
Cloud Services
1 27 (24.32%) Azure
2 22 (19.82%) AWS
3 8 (7.21%) GCP
4 1 (0.90%) Amazon Cognito
4 1 (0.90%) Amazon SQS
4 1 (0.90%) AWS KMS
4 1 (0.90%) Azure Sentinel
4 1 (0.90%) SaaS
Communications & Networking
1 21 (18.92%) Network Security
2 14 (12.61%) Firewall
3 6 (5.41%) Wireless
4 5 (4.50%) Intrusion Detection
5 3 (2.70%) BGP
5 3 (2.70%) HTTP
5 3 (2.70%) Internet
5 3 (2.70%) OSPF
5 3 (2.70%) TCP/IP
5 3 (2.70%) WAN
6 2 (1.80%) SMTP
7 1 (0.90%) HTTPS
7 1 (0.90%) MQTT
7 1 (0.90%) Wi-Fi
Database & Business Intelligence
1 8 (7.21%) Blockchain
2 1 (0.90%) Amazon DynamoDB
2 1 (0.90%) Big Data
2 1 (0.90%) Maltego
2 1 (0.90%) NoSQL
Development Applications
1 8 (7.21%) JIRA
1 8 (7.21%) Rational DOORS
1 8 (7.21%) SonarQube
1 8 (7.21%) Visual Studio
2 6 (5.41%) Burp Suite
2 6 (5.41%) Metasploit
General
1 26 (23.42%) Social Skills
2 21 (18.92%) Finance
3 15 (13.51%) Analytical Skills
4 11 (9.91%) Organisational Skills
5 7 (6.31%) Banking
6 6 (5.41%) Influencing Skills
6 6 (5.41%) Presentation Skills
7 5 (4.50%) Back Office
7 5 (4.50%) Marketing
8 3 (2.70%) Retail
9 2 (1.80%) Advertising
9 2 (1.80%) Automotive
9 2 (1.80%) Law
9 2 (1.80%) Legal
9 2 (1.80%) Public Sector
9 2 (1.80%) Telecoms
Job Titles
1 28 (25.23%) Penetration Tester
1 28 (25.23%) Tester
2 20 (18.02%) Analyst
2 20 (18.02%) Consultant
3 13 (11.71%) Security Consultant
4 12 (10.81%) Architect
4 12 (10.81%) Security Architect
5 11 (9.91%) Security Manager
6 9 (8.11%) Security Analyst
6 9 (8.11%) SOC Analyst
7 8 (7.21%) Audit Manager
7 8 (7.21%) Cybersecurity Consultant
7 8 (7.21%) Cybersecurity Manager
7 8 (7.21%) IT Audit Manager
7 8 (7.21%) IT Manager
7 8 (7.21%) IT Security Manager
8 5 (4.50%) Senior Consultant
9 4 (3.60%) Lead Security Consultant
9 4 (3.60%) Penetration Test Consultant
9 4 (3.60%) Senior Analyst
Libraries, Frameworks & Software Standards
1 9 (8.11%) Web Services
2 6 (5.41%) .NET
2 6 (5.41%) ASP.NET
3 4 (3.60%) YAML
4 2 (1.80%) ModSecurity
5 1 (0.90%) GraphQL
5 1 (0.90%) JWT
5 1 (0.90%) Kafka
5 1 (0.90%) Middleware
5 1 (0.90%) OpenID
5 1 (0.90%) SAML
Miscellaneous
1 17 (15.32%) Management Information System
1 17 (15.32%) Mobile App
2 14 (12.61%) Self-Motivation
3 12 (10.81%) Cyberattack
4 10 (9.01%) Driving Licence
5 9 (8.11%) Public Cloud
6 8 (7.21%) Mobile Payment
6 8 (7.21%) Robotics
6 8 (7.21%) Smartcard
7 7 (6.31%) Cyberthreat
8 6 (5.41%) Security Operations Centre
9 5 (4.50%) Data Centre
10 4 (3.60%) CESG
11 3 (2.70%) CESG CLAS
12 2 (1.80%) Blog
12 2 (1.80%) Cybercrime
12 2 (1.80%) PKI
12 2 (1.80%) SCADA
12 2 (1.80%) Social Media
12 2 (1.80%) SWIFT
Operating Systems
1 21 (18.92%) Linux
2 17 (15.32%) Windows
3 8 (7.21%) Solaris
3 8 (7.21%) Windows Server
4 5 (4.50%) Kali Linux
5 3 (2.70%) Debian
6 2 (1.80%) Android
6 2 (1.80%) Apple iOS
6 2 (1.80%) Unix
7 1 (0.90%) Mac OS
Processes & Methodologies
1 72 (64.86%) Cybersecurity
2 50 (45.05%) Penetration Testing
3 41 (36.94%) Information Security
4 34 (30.63%) Security Testing
5 25 (22.52%) Red Team
6 22 (19.82%) DevOps
6 22 (19.82%) Security Operations
7 21 (18.92%) Data Privacy
8 20 (18.02%) Computer Science
9 18 (16.22%) SIEM
10 16 (14.41%) OWASP
11 14 (12.61%) Social Engineering
12 13 (11.71%) Security Management
12 13 (11.71%) Vulnerability Management
13 12 (10.81%) Data Protection
13 12 (10.81%) Mentoring
14 11 (9.91%) Mathematics
14 11 (9.91%) Presales
14 11 (9.91%) TOGAF
15 10 (9.01%) Risk Assessment
Programming Languages
1 21 (18.92%) Python
2 18 (16.22%) C#
2 18 (16.22%) Java
3 12 (10.81%) C
4 11 (9.91%) JavaScript
5 9 (8.11%) C++
6 6 (5.41%) Perl
6 6 (5.41%) Shell Script
7 4 (3.60%) Bash Shell
7 4 (3.60%) PowerShell
8 3 (2.70%) Go
9 1 (0.90%) SQL
Qualifications
1 49 (44.14%) OSCP
2 36 (32.43%) CISSP
3 27 (24.32%) Security Cleared
4 24 (21.62%) CISM
5 22 (19.82%) CISA
5 22 (19.82%) Cisco Certification
6 20 (18.02%) Degree
7 18 (16.22%) CEH
7 18 (16.22%) SC Cleared
8 16 (14.41%) (ISC)2 CCSP
9 14 (12.61%) SANS
10 13 (11.71%) GIAC
11 11 (9.91%) CHECK Team Leader
11 11 (9.91%) CLAS
11 11 (9.91%) OSCE
12 10 (9.01%) CompTIA Security+
13 9 (8.11%) CCSP
14 8 (7.21%) IISP
15 7 (6.31%) CHECK Team Member
15 7 (6.31%) Cyber Scheme
Quality Assurance & Compliance
1 27 (24.32%) ISO/IEC 27001
2 24 (21.62%) NIST
3 19 (17.12%) PCI DSS
4 13 (11.71%) ISO/IEC 27005
5 12 (10.81%) GDPR
6 10 (9.01%) GRC
7 8 (7.21%) ISAE 3402
7 8 (7.21%) ISO 31000
7 8 (7.21%) ISO 9001
7 8 (7.21%) Sarbanes-Oxley
8 6 (5.41%) NCSC
9 3 (2.70%) QA
9 3 (2.70%) SLA
10 2 (1.80%) ISO 22301
10 2 (1.80%) JSP 440
11 1 (0.90%) COBIT
11 1 (0.90%) Cyber Essentials
11 1 (0.90%) NIST 800
11 1 (0.90%) RMADS
System Software
1 8 (7.21%) ISA Server
2 4 (3.60%) Active Directory
3 2 (1.80%) BitLocker
Systems Management
1 15 (13.51%) Nessus
2 8 (7.21%) Trend Micro Deep Security
3 5 (4.50%) Nmap
4 3 (2.70%) Ansible
4 3 (2.70%) QRadar
5 2 (1.80%) EnCase
5 2 (1.80%) FTK
5 2 (1.80%) Single Sign-On
6 1 (0.90%) Computer Incident Response Team
6 1 (0.90%) Kubernetes
Vendors
1 18 (16.22%) Splunk
2 11 (9.91%) Cisco
3 10 (9.01%) Microsoft
4 9 (8.11%) CrowdStrike
4 9 (8.11%) Okta
5 8 (7.21%) Centrify
5 8 (7.21%) F5
5 8 (7.21%) Google
5 8 (7.21%) Imperva
5 8 (7.21%) OneTrust
5 8 (7.21%) Oracle
5 8 (7.21%) Trend Micro
5 8 (7.21%) Tripwire
6 5 (4.50%) Cubic Transportation
6 5 (4.50%) Qualys
7 4 (3.60%) AlienVault
7 4 (3.60%) LogRhythm
7 4 (3.60%) Palo Alto
8 3 (2.70%) Sophos
9 2 (1.80%) Cellebrite