ISACA Certified in Risk and Information Systems Control (CRISC)
UK

The table below provides summary statistics for permanent job vacancies with a requirement for CRISC qualifications. It includes a benchmarking guide to the salaries offered over the 6 months leading up to 1 May 2025, comparing them to the same period in the previous two years.

6 months to
1 May 2025
Same period 2024 Same period 2023
Rank 551 669 754
Rank change year-on-year +118 +85 +143
Permanent jobs citing CRISC 142 228 235
As % of all permanent jobs advertised in the UK 0.27% 0.23% 0.23%
As % of the Qualifications category 0.56% 0.83% 0.69%
Number of salaries quoted 58 186 192
10th Percentile £50,625 £41,250 £47,750
25th Percentile £62,500 £56,250 £55,000
Median annual salary (50th Percentile) £72,500 £68,500 £70,000
Median % change year-on-year +5.84% -2.14% -
75th Percentile £83,750 £85,000 £81,563
90th Percentile £84,500 £103,125 £97,500
UK excluding London median annual salary £65,000 £65,000 £62,500
% change year-on-year - +4.00% -1.46%

All Academic and Professional Certifications
UK

CRISC falls under the Academic Qualifications and Professional Certifications category. For comparison with the information above, the following table provides summary statistics for all permanent job vacancies requiring academic qualifications or professional certifications.

Permanent vacancies requiring academic qualifications or professional certifications 25,404 27,420 33,991
As % of all permanent jobs advertised in the UK 48.81% 27.84% 32.71%
Number of salaries quoted 11,182 17,336 15,221
10th Percentile £32,500 £28,250 £31,250
25th Percentile £44,000 £38,500 £41,750
Median annual salary (50th Percentile) £55,000 £54,000 £58,000
Median % change year-on-year +1.85% -6.90% +5.45%
75th Percentile £68,568 £71,000 £77,500
90th Percentile £85,000 £87,500 £95,000
UK excluding London median annual salary £52,000 £50,000 £50,500
% change year-on-year +4.00% -0.99% +1.00%

CRISC
Job Vacancy Trend

Job postings citing CRISC as a proportion of all IT jobs advertised.

Job vacancy trend for CRISC in the UK

CRISC
Salary Trend

3-month moving average salary quoted in jobs citing CRISC.

Salary trend for CRISC in the UK

CRISC
Salary Histogram

Salary distribution for jobs citing CRISC over the 6 months to 1 May 2025.

Salary histogram for CRISC in the UK

CRISC
Top 15 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing CRISC within the UK over the 6 months to 1 May 2025. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England +72 117 £73,375 +7.12% 85
UK excluding London +151 82 £65,000 - 52
London +88 60 £75,000 -6.25% 43
Work from Home +143 25 £72,500 +13.73% 24
North of England +79 25 £65,000 +62.50% 14
North West +33 25 £65,000 +62.50% 9
South East +112 24 £71,250 +50.00% 16
Scotland +150 19 - - 4
Midlands +74 5 £55,500 -9.76% 9
West Midlands +44 5 £55,500 -4.31% 6
Northern Ireland +37 3 £35,000 -39.13%
East of England +45 2 £61,961 -20.05% 4
Channel Islands +2 2 £78,750 -21.25%
South West +50 1 £51,422 -24.93% 7
Wales - 1 £55,000 -

CRISC
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 3 (2.11%) CMS
2 1 (0.70%) Microsoft Exchange
2 1 (0.70%) Oracle Workflow
2 1 (0.70%) SharePoint
Applications
1 4 (2.82%) Microsoft Office
2 2 (1.41%) Microsoft Excel
3 1 (0.70%) Microsoft PowerPoint
3 1 (0.70%) MS Visio
Cloud Services
1 8 (5.63%) AWS
1 8 (5.63%) Azure
2 4 (2.82%) Cloud Computing
3 3 (2.11%) Microsoft 365
4 2 (1.41%) GCP
4 2 (1.41%) IaaS
4 2 (1.41%) SaaS
5 1 (0.70%) Snowflake
Communications & Networking
1 5 (3.52%) Network Security
2 1 (0.70%) Firewall
2 1 (0.70%) Intranet
2 1 (0.70%) Intrusion Detection
Database & Business Intelligence
1 1 (0.70%) Hadoop
1 1 (0.70%) HBase
1 1 (0.70%) NoSQL
Development Applications
1 1 (0.70%) Subversion
General
1 63 (44.37%) Finance
2 43 (30.28%) Social Skills
3 26 (18.31%) Legal
4 20 (14.08%) Analytical Skills
5 19 (13.38%) Presentation Skills
6 11 (7.75%) Banking
7 5 (3.52%) Inclusion and Diversity
8 4 (2.82%) Public Sector
9 3 (2.11%) Influencing Skills
9 3 (2.11%) Law
9 3 (2.11%) Organisational Skills
9 3 (2.11%) Retail Banking
10 1 (0.70%) Retail
Job Titles
1 31 (21.83%) Risk Manager
2 26 (18.31%) Analyst
3 18 (12.68%) Senior
4 16 (11.27%) Technology Risk Manager
5 12 (8.45%) Security Manager
5 12 (8.45%) Senior Analyst
6 11 (7.75%) Risk Analyst
6 11 (7.75%) Security Analyst
7 10 (7.04%) Information Manager
7 10 (7.04%) Information Security Manager
8 8 (5.63%) Consultant
8 8 (5.63%) Information Officer
8 8 (5.63%) IT Manager
8 8 (5.63%) IT Risk Manager
8 8 (5.63%) Senior Risk Analyst
9 7 (4.93%) Risk Officer
10 6 (4.23%) Information Analyst
10 6 (4.23%) Risk Consultant
10 6 (4.23%) Senior Information Analyst
11 5 (3.52%) Compliance Advisor
Miscellaneous
1 31 (21.83%) Management Information System
2 11 (7.75%) Self-Motivation
3 8 (5.63%) Data Protection Act
4 7 (4.93%) Security Posture
5 5 (3.52%) Analytical Mindset
6 4 (2.82%) Security Operations Centre
7 3 (2.11%) Online Banking
8 2 (1.41%) Cyber Threat
8 2 (1.41%) Hybrid Cloud
8 2 (1.41%) Public Cloud
9 1 (0.70%) CCTV
9 1 (0.70%) Industrial Internet of Things
9 1 (0.70%) Legacy Systems
9 1 (0.70%) Tandem
Operating Systems
1 1 (0.70%) Linux
1 1 (0.70%) Unix
1 1 (0.70%) Windows
Processes & Methodologies
1 117 (82.39%) Risk Management
2 91 (64.08%) Information Security
3 69 (48.59%) Stakeholder Management
4 64 (45.07%) Continuous Improvement
4 64 (45.07%) Cybersecurity
5 61 (42.96%) Coaching
6 49 (34.51%) Decision-Making
7 23 (16.20%) Agile
7 23 (16.20%) Stakeholder Engagement
8 22 (15.49%) OWASP
9 19 (13.38%) Internal Audit
9 19 (13.38%) Mentoring
9 19 (13.38%) Vulnerability Management
10 18 (12.68%) Due Diligence
10 18 (12.68%) Quantitative Risk Management
10 18 (12.68%) Security Operations
11 17 (11.97%) Service Delivery
12 16 (11.27%) Creative Thinking
12 16 (11.27%) Regulatory Compliance
13 15 (10.56%) Risk Assessment
Programming Languages
1 6 (4.23%) R
2 2 (1.41%) Kusto Query Language
2 2 (1.41%) PowerShell
3 1 (0.70%) C#
3 1 (0.70%) C++
3 1 (0.70%) Java
3 1 (0.70%) Python
3 1 (0.70%) SQL
3 1 (0.70%) VBA
Qualifications
1 82 (57.75%) CISM
1 82 (57.75%) CISSP
2 38 (26.76%) Degree
3 24 (16.90%) CISA
4 8 (5.63%) ISO 27001 Lead Auditor
5 5 (3.52%) ISO 27001 Lead Implementer
5 5 (3.52%) SANS
6 3 (2.11%) (ISC)2 CCSP
6 3 (2.11%) Cisco Certification
6 3 (2.11%) CISMP
6 3 (2.11%) ISACA
6 3 (2.11%) Master's Degree
7 2 (1.41%) AWS Certification
7 2 (1.41%) CCSP
7 2 (1.41%) CEH
7 2 (1.41%) CompTIA Security+
7 2 (1.41%) GCIH
7 2 (1.41%) GIAC
7 2 (1.41%) GISF
7 2 (1.41%) SSCP
Quality Assurance & Compliance
1 61 (42.96%) COBIT
2 60 (42.25%) NIST
3 54 (38.03%) ISO/IEC 27001
4 39 (27.46%) GRC
5 21 (14.79%) Sarbanes-Oxley
6 20 (14.08%) Cyber Essentials
7 18 (12.68%) ITGC
8 17 (11.97%) PCI DSS
9 14 (9.86%) GDPR
10 12 (8.45%) SOC 2
11 11 (7.75%) Cyber Essentials PLUS
12 10 (7.04%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
13 4 (2.82%) NIST 800
14 2 (1.41%) Accessibility
14 2 (1.41%) Actionable Recommendations
14 2 (1.41%) NCSC
15 1 (0.70%) COSO
15 1 (0.70%) Data Quality
15 1 (0.70%) ISO/IEC 27005
System Software
1 1 (0.70%) Docker
1 1 (0.70%) HDFS
Systems Management
1 1 (0.70%) Computer Emergency Response Teams
1 1 (0.70%) RSA Archer
Vendors
1 8 (5.63%) Microsoft
2 2 (1.41%) Google
2 2 (1.41%) Oracle
2 2 (1.41%) VMware
3 1 (0.70%) Fortinet
3 1 (0.70%) Sybase
3 1 (0.70%) Veeam