Period
to 18 February 2018

The median annual salary for a Head of Security was £95,000 in advertised job vacancies during the 6 months to 18 February 2018.

The first table below provides salary benchmarking and summary statistics including a comparison to same period in the previous 2 years.

Head of Security
UK
6 months to
18 Feb 2018
Same period 2017 Same period 2016
Rank 1035 998 1188
Rank change year-on-year -37 +190 -43
Permanent jobs requiring a Head of Security 159 180 121
As % of all permanent IT jobs advertised in the UK 0.091% 0.10% 0.057%
As % of the Job Titles category 0.095% 0.11% 0.059%
Number of salaries quoted 125 140 103
UK median annual salary £95,000 £83,750 £87,500
Median salary % change year-on-year +13.43% -4.29% +9.38%
10th Percentile £71,000 £63,666 £55,000
90th Percentile £117,750 £120,000 £125,000
UK excluding London median annual salary £85,000 £75,000 £70,000
% change year-on-year +13.33% +7.14% -3.45%

The following table is for comparison with the above and includes summary statistics for all permanent IT job vacancies. Most job vacancies include a discernible job title that can be normalized. As such, the figures in the second row provide an indication of the number of permanent jobs in our overall sample.

All Permanent IT Job Vacancies
UK
Permanent vacancies in the UK with a recognized job title 167,654 168,474 203,619
% of permanent IT jobs with a recognized job title 96.23% 96.47% 96.64%
Number of salaries quoted 137,274 139,969 170,246
UK median annual salary £50,000 £47,500 £46,000
Median salary % change year-on-year +5.26% +3.26% +2.22%
10th Percentile £27,500 £27,000 £26,750
90th Percentile £80,000 £77,500 £75,000
UK excluding London median annual salary £42,500 £42,500 £42,000
% change year-on-year - +1.19% +5.00%

Head of Security
Job Vacancy Trend

Job postings that featured Head of Security in the job title as a percentage of all IT jobs advertised.

Job vacancy trend for Head of Security in the UK

Head of Security
Salary Trend

This chart provides the 3-month moving average for salaries quoted in permanent IT jobs citing Head of Security.

Salary trend for Head of Security in the UK

Head of Security
Salary Histogram

The salary distribution of IT jobs citing Head of Security over the 6 months to 18 February 2018.

Salary histogram for Head of Security in the UK

Head of Security
Top 15 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Head of Security within the UK over the 6 months to 18 February 2018. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England -10 152 £95,000 +11.76% 14
London +7 98 £105,000 +16.67% 7
UK excluding London -13 58 £85,000 +13.33% 8
South East +15 24 £87,500 +9.38% 3
North of England +15 16 £75,000 -
North West -13 10 £75,000 -
Midlands -17 7 £87,500 +20.69%
East of England +1 4 - - 2
East Midlands +18 3 £100,000 +37.93%
West Midlands -6 3 £85,000 +3.03%
North East -25 3 £55,000 +4.76%
Scotland -43 3 £72,500 -3.33% 1
Yorkshire - 3 £100,000 -
South West - 3 £49,500 - 2
Wales +3 1 - -

Head of Security Skill Set
Top 30 Co-occurring IT Skills

For the 6 months to 18 February 2018, Head of Security job roles required the following IT skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads featuring Head of Security in the job title.

1 111 (69.81%) Information Security
2 78 (49.06%) Cybersecurity
3 76 (47.80%) CISSP
4 74 (46.54%) ISO/IEC 27001
5 66 (41.51%) Finance
6 65 (40.88%) CISM
7 46 (28.93%) SIEM
8 45 (28.30%) Management Information System
9 43 (27.04%) CISA
10 42 (26.42%) Firewall
11 41 (25.79%) Risk Management
12 38 (23.90%) ITIL
13 37 (23.27%) Data Protection
14 33 (20.75%) GDPR
15 32 (20.13%) Security Operations
16 30 (18.87%) Analytics
16 30 (18.87%) Change Management
17 29 (18.24%) Security Management
17 29 (18.24%) Intrusion Detection
18 22 (13.84%) Incident Management
18 22 (13.84%) TCP/IP
19 21 (13.21%) COBIT
19 21 (13.21%) Business Continuity
19 21 (13.21%) Continuous Improvement
19 21 (13.21%) CRISC
19 21 (13.21%) PCI DSS
20 20 (12.58%) Information Security Management
21 19 (11.95%) Security Monitoring
22 18 (11.32%) Legal
22 18 (11.32%) Vulnerability Assessment

Head of Security Skill Set
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 3 (1.89%) IIS
Cloud Services
1 6 (3.77%) Amazon AWS
1 6 (3.77%) Microsoft Azure
1 6 (3.77%) SaaS
2 3 (1.89%) IaaS
3 2 (1.26%) PaaS
4 1 (0.63%) Cloud Computing
4 1 (0.63%) Google Cloud Platform
Communications & Networking
1 42 (26.42%) Firewall
2 29 (18.24%) Intrusion Detection
3 22 (13.84%) TCP/IP
4 18 (11.32%) Network Security
5 16 (10.06%) VPN
6 15 (9.43%) IPsec
6 15 (9.43%) SSL
7 7 (4.40%) Internet
8 1 (0.63%) DHCP
8 1 (0.63%) DMZ
8 1 (0.63%) LAN
8 1 (0.63%) VLAN
8 1 (0.63%) Wi-Fi
Database & Business Intelligence
1 1 (0.63%) Big Data
1 1 (0.63%) Hadoop
1 1 (0.63%) MongoDB
General
1 66 (41.51%) Finance
2 18 (11.32%) Legal
3 9 (5.66%) Games
4 8 (5.03%) Banking
5 7 (4.40%) Law
6 6 (3.77%) Retail
7 3 (1.89%) Investment Banking
8 2 (1.26%) Marketing
9 1 (0.63%) Aerospace
9 1 (0.63%) Automotive
9 1 (0.63%) Corporate Banking
9 1 (0.63%) Financial Institution
9 1 (0.63%) Front Office
9 1 (0.63%) Publishing
Libraries, Frameworks & Software Standards
1 1 (0.63%) .NET
1 1 (0.63%) SailPoint
1 1 (0.63%) Web Services
Miscellaneous
1 45 (28.30%) Management Information System
2 10 (6.29%) Data Protection Act
3 8 (5.03%) Cyberattack
4 5 (3.14%) Analytical Skills
5 4 (2.52%) Fintech
5 4 (2.52%) Security Operations Centre
6 3 (1.89%) Computer Science
7 2 (1.26%) Greenfield Project
7 2 (1.26%) Taxonomies
8 1 (0.63%) Algorithms
8 1 (0.63%) CESG
8 1 (0.63%) Mainframe
8 1 (0.63%) Public Cloud
8 1 (0.63%) Virtual Team
Operating Systems
1 6 (3.77%) Linux
1 6 (3.77%) Windows
2 1 (0.63%) Android
2 1 (0.63%) Apple iOS
2 1 (0.63%) Ubuntu
2 1 (0.63%) Unix
2 1 (0.63%) Windows Server
Processes & Methodologies
1 111 (69.81%) Information Security
2 78 (49.06%) Cybersecurity
3 46 (28.93%) SIEM
4 41 (25.79%) Risk Management
5 38 (23.90%) ITIL
6 37 (23.27%) Data Protection
7 32 (20.13%) Security Operations
8 30 (18.87%) Analytics
8 30 (18.87%) Change Management
9 29 (18.24%) Security Management
10 22 (13.84%) Incident Management
11 21 (13.21%) Business Continuity
11 21 (13.21%) Continuous Improvement
12 20 (12.58%) Information Security Management
13 19 (11.95%) Security Monitoring
14 18 (11.32%) Vulnerability Assessment
15 17 (10.69%) Agile Software Development
16 15 (9.43%) OWASP
16 15 (9.43%) Penetration Testing
16 15 (9.43%) Stakeholder Management
Programming Languages
1 6 (3.77%) C
2 2 (1.26%) Java
2 2 (1.26%) Python
3 1 (0.63%) Bash Shell
3 1 (0.63%) C#
3 1 (0.63%) C++
3 1 (0.63%) Perl
3 1 (0.63%) Ruby
Qualifications
1 76 (47.80%) CISSP
2 65 (40.88%) CISM
3 43 (27.04%) CISA
4 21 (13.21%) CRISC
5 13 (8.18%) GIAC
6 12 (7.55%) SANS
7 11 (6.92%) CLAS
8 10 (6.29%) CEH
8 10 (6.29%) Degree
9 5 (3.14%) OSCP
10 4 (2.52%) CCNA
10 4 (2.52%) Cisco Certification
10 4 (2.52%) CISMP
10 4 (2.52%) IISP
10 4 (2.52%) Security Cleared
11 3 (1.89%) CESG Certified Professional
11 3 (1.89%) CGEIT
11 3 (1.89%) GWAPT
11 3 (1.89%) ISSAP
12 2 (1.26%) DV Cleared
Quality Assurance & Compliance
1 74 (46.54%) ISO/IEC 27001
2 33 (20.75%) GDPR
3 21 (13.21%) COBIT
3 21 (13.21%) PCI DSS
4 16 (10.06%) Cyber Essentials
5 6 (3.77%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
6 5 (3.14%) Cyber Essentials PLUS
6 5 (3.14%) GPG13
6 5 (3.14%) ISO 9001
7 4 (2.52%) MiFID
8 3 (1.89%) RMADS
8 3 (1.89%) Web Application Security Consortium
9 2 (1.26%) COSO
9 2 (1.26%) ISO 22301
10 1 (0.63%) Data Quality
10 1 (0.63%) ISO 31000
10 1 (0.63%) ISO/IEC 27005
10 1 (0.63%) PMO
10 1 (0.63%) SLA
System Software
1 3 (1.89%) VMware Infrastructure
2 1 (0.63%) Active Directory
Systems Management
1 6 (3.77%) FTK
2 5 (3.14%) Single Sign-On
3 1 (0.63%) Ansible
3 1 (0.63%) Computer Emergency Response Teams
3 1 (0.63%) CSIRT
3 1 (0.63%) McAfee ePO
3 1 (0.63%) Nessus
3 1 (0.63%) Network Intrusion Detection System
3 1 (0.63%) Opscode Chef
3 1 (0.63%) Puppet
3 1 (0.63%) Salt
3 1 (0.63%) SCCM
Vendors
1 5 (3.14%) VMware
2 3 (1.89%) CyberArk
2 3 (1.89%) Salesforce.com
3 2 (1.26%) Palo Alto
4 1 (0.63%) Aveksa
4 1 (0.63%) Blue Coat
4 1 (0.63%) CheckPoint
4 1 (0.63%) Cisco
4 1 (0.63%) F5
4 1 (0.63%) ForeScout
4 1 (0.63%) Fortinet
4 1 (0.63%) Google
4 1 (0.63%) McAfee
4 1 (0.63%) Microsoft
4 1 (0.63%) Splunk
4 1 (0.63%) Symantec
4 1 (0.63%) Trend Micro