Period
to 2 April 2020

The following table provides summary statistics for permanent job vacancies with a requirement for HMG Security Policy Framework skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited HMG Security Policy Framework over the 6 months to 2 April 2020 with a comparison to the same period in the previous 2 years.

HMG Security Policy Framework (SPF)
UK
6 months to
2 Apr 2020
Same period 2019 Same period 2018
Rank 819 1004 1128
Rank change year-on-year +185 +124 -40
Permanent jobs citing HMG Security Policy Framework 160 106 86
As % of all permanent jobs advertised in the UK 0.14% 0.072% 0.049%
As % of the Quality Assurance & Compliance category 1.11% 0.51% 0.38%
Number of salaries quoted 152 69 87
Median annual salary £75,000 £65,000 £70,000
Median salary % change year-on-year +15.38% -7.14% +54.63%
10th Percentile £46,250 £39,733 £50,750
90th Percentile £88,375 £77,500 £95,000
UK excluding London median annual salary £65,000 £65,000 £65,000

HMG Security Policy Framework is in the Quality Assurance and Compliance category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for quality assurance or compliance skills.

All Quality Assurance and Compliance Skills
UK
Permanent vacancies with a requirement for quality assurance or compliance skills 14,383 20,731 22,590
As % of all permanent IT jobs advertised in the UK 12.28% 14.00% 12.76%
Number of salaries quoted 11,041 15,053 17,581
Median annual salary £52,500 £50,000 £50,000
Median salary % change year-on-year +5.00% - +5.26%
10th Percentile £28,750 £27,625 £27,500
90th Percentile £85,000 £81,250 £80,000
UK excluding London median annual salary £45,000 £45,000 £43,750
% change year-on-year - +2.86% +6.06%

HMG Security Policy Framework
Job Vacancy Trend

Job postings citing HMG Security Policy Framework as a proportion of all IT jobs advertised.

Job vacancy trend for HMG Security Policy Framework in the UK

HMG Security Policy Framework
Salary Trend

3-month moving average salary quoted in jobs citing HMG Security Policy Framework.

Salary trend for HMG Security Policy Framework in the UK

HMG Security Policy Framework
Salary Histogram

Salary distribution for jobs citing HMG Security Policy Framework over the 6 months to 2 April 2020.

Salary histogram for HMG Security Policy Framework in the UK

HMG Security Policy Framework
Top 13 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing HMG Security Policy Framework within the UK over the 6 months to 2 April 2020. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England +154 123 £69,000 +6.15% 8
UK excluding London +110 96 £65,000 - 9
South East +77 40 £68,750 -1.79% 1
South West +42 37 £69,000 +6.15% 4
London +127 29 £75,000 +83.08% 1
Work from Home +41 29 £80,000 +6.67%
Wales - 8 £40,571 - 2
Midlands +56 7 £55,000 +35.80%
West Midlands +43 5 £57,500 +41.98%
East of England +53 2 £57,500 -11.54% 1
North West - 2 £55,000 - 1
East Midlands - 2 £55,000 -
North of England - 2 £55,000 - 1

For the 6 months to 2 April 2020, IT jobs citing HMG Security Policy Framework also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads with a requirement for HMG Security Policy Framework.

1 116 (72.50%) ISO/IEC 27001
2 106 (66.25%) Information Security
3 85 (53.13%) JSP 440
4 81 (50.63%) Security Cleared
4 81 (50.63%) Cybersecurity
5 66 (41.25%) CESG
6 65 (40.63%) CISSP
7 63 (39.38%) SABSA
7 63 (39.38%) Information Assurance
8 58 (36.25%) Security Architecture
9 57 (35.63%) CESG Certified Professional
10 56 (35.00%) SC Cleared
11 54 (33.75%) Public Sector
12 53 (33.13%) TOGAF
13 44 (27.50%) Service Delivery
14 42 (26.25%) CISM
14 42 (26.25%) PCI DSS
14 42 (26.25%) Azure
15 41 (25.63%) Management Information System
16 36 (22.50%) Firewall
17 35 (21.88%) SIEM
18 34 (21.25%) AWS
19 33 (20.63%) ITIL
20 32 (20.00%) Customer Requirements
21 30 (18.75%) Stakeholder Management
21 30 (18.75%) Sarbanes-Oxley
22 29 (18.13%) Enterprise Architecture
22 29 (18.13%) COBIT
22 29 (18.13%) Risk Analysis
23 28 (17.50%) DV Cleared

HMG Security Policy Framework
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 22 (13.75%) IIS
2 6 (3.75%) Tomcat
2 6 (3.75%) WebSphere
3 1 (0.63%) SharePoint
3 1 (0.63%) Skype for Business
Applications
1 5 (3.13%) Microsoft Excel
1 5 (3.13%) Microsoft PowerPoint
2 4 (2.50%) MS Visio
3 1 (0.63%) Microsoft Office
Business Applications
1 4 (2.50%) Sentinel
2 1 (0.63%) Dynamics CRM
Cloud Services
1 42 (26.25%) Azure
2 34 (21.25%) AWS
3 3 (1.88%) Office 365
4 2 (1.25%) Cloud Computing
4 2 (1.25%) IaaS
4 2 (1.25%) PaaS
4 2 (1.25%) SaaS
Communications & Networking
1 36 (22.50%) Firewall
2 13 (8.13%) Internet
3 4 (2.50%) Intrusion Detection
4 3 (1.88%) DKIM
4 3 (1.88%) DMARC
5 2 (1.25%) DNS
5 2 (1.25%) TCP/IP
5 2 (1.25%) Wireshark
6 1 (0.63%) LAN
6 1 (0.63%) RTP
6 1 (0.63%) WAN
Database & Business Intelligence
1 7 (4.38%) SQL Server
2 6 (3.75%) SQL Server 2012
Development Applications
1 3 (1.88%) Git (software)
2 2 (1.25%) Metasploit
General
1 54 (33.75%) Public Sector
2 12 (7.50%) Finance
2 12 (7.50%) Manufacturing
3 9 (5.63%) Electronics
3 9 (5.63%) Marketing
3 9 (5.63%) Telecoms
4 6 (3.75%) Military
5 5 (3.13%) Aerospace
5 5 (3.13%) Legal
6 1 (0.63%) Law
6 1 (0.63%) Police
6 1 (0.63%) Retail
Job Titles
1 51 (31.88%) Architect
2 50 (31.25%) Security Architect
3 42 (26.25%) Consultant
4 38 (23.75%) Security Consultant
5 31 (19.38%) Security Manager
6 29 (18.13%) Cybersecurity Consultant
7 28 (17.50%) AWS Architect
7 28 (17.50%) Azure Architect
7 28 (17.50%) Cloud Architect
8 20 (12.50%) Information Manager
8 20 (12.50%) Information Security Manager
9 19 (11.88%) Enterprise Architect
9 19 (11.88%) Enterprise Security Architect
10 10 (6.25%) Cybersecurity Architect
10 10 (6.25%) IT Manager
10 10 (6.25%) IT Security Manager
11 9 (5.63%) Principal Architect
11 9 (5.63%) Principal Security Architect
12 8 (5.00%) IT Architect
12 8 (5.00%) IT Security Architect
Libraries, Frameworks & Software Standards
1 8 (5.00%) ModSecurity
1 8 (5.00%) Web Services
2 6 (3.75%) IBM Integration Bus
2 6 (3.75%) Java SE
2 6 (3.75%) Play Framework
2 6 (3.75%) REST
2 6 (3.75%) SOAP
2 6 (3.75%) Spring
3 1 (0.63%) Regular Expression
Miscellaneous
1 66 (41.25%) CESG
2 41 (25.63%) Management Information System
3 22 (13.75%) PKI
4 10 (6.25%) Cyberthreat
5 9 (5.63%) Self-Motivation
6 8 (5.00%) Cyber Kill Chain
6 8 (5.00%) Data Protection Act
7 6 (3.75%) Analytical Skills
8 5 (3.13%) Cyberattack
9 4 (2.50%) Virtual Team
10 3 (1.88%) Security Operations Centre
11 2 (1.25%) FMCG
12 1 (0.63%) Client/Server
12 1 (0.63%) Cloud Native
Operating Systems
1 3 (1.88%) Windows
2 2 (1.25%) Kali Linux
2 2 (1.25%) Linux
3 1 (0.63%) Apple iOS
3 1 (0.63%) Windows 10
Processes & Methodologies
1 106 (66.25%) Information Security
2 81 (50.63%) Cybersecurity
3 63 (39.38%) Information Assurance
3 63 (39.38%) SABSA
4 58 (36.25%) Security Architecture
5 53 (33.13%) TOGAF
6 44 (27.50%) Service Delivery
7 35 (21.88%) SIEM
8 33 (20.63%) ITIL
9 32 (20.00%) Customer Requirements
10 30 (18.75%) Stakeholder Management
11 29 (18.13%) Enterprise Architecture
11 29 (18.13%) Risk Analysis
12 27 (16.88%) Risk Management
13 23 (14.38%) ISMS
14 22 (13.75%) Project Management
14 22 (13.75%) Vulnerability Scanning
15 20 (12.50%) Cryptography
15 20 (12.50%) Identity Management
15 20 (12.50%) Security Management
Programming Languages
1 19 (11.88%) C
2 6 (3.75%) Java
2 6 (3.75%) Scala
3 4 (2.50%) SQL
4 2 (1.25%) Bash Shell
Qualifications
1 81 (50.63%) Security Cleared
2 65 (40.63%) CISSP
3 57 (35.63%) CESG Certified Professional
4 56 (35.00%) SC Cleared
5 42 (26.25%) CISM
6 28 (17.50%) DV Cleared
7 22 (13.75%) Degree
7 22 (13.75%) IISP
8 15 (9.38%) Master's Degree
9 14 (8.75%) CLAS
10 11 (6.88%) CREST Certified
11 8 (5.00%) CISMP
11 8 (5.00%) CRISC
12 6 (3.75%) CISA
13 4 (2.50%) SANS
14 3 (1.88%) CEH
14 3 (1.88%) GCIA
15 2 (1.25%) CCSP
15 2 (1.25%) Cisco Certification
15 2 (1.25%) GCIH
Quality Assurance & Compliance
1 116 (72.50%) ISO/IEC 27001
2 85 (53.13%) JSP 440
3 42 (26.25%) PCI DSS
4 30 (18.75%) Sarbanes-Oxley
5 29 (18.13%) COBIT
6 27 (16.88%) NCSC
7 23 (14.38%) Cyber Essentials
8 13 (8.13%) RMADS
9 12 (7.50%) CESG Infosec
10 8 (5.00%) NIST
11 6 (3.75%) GDPR
11 6 (3.75%) HMG Infosec
12 4 (2.50%) ISO 22301
12 4 (2.50%) NIST 800
12 4 (2.50%) QA
13 1 (0.63%) BS25999
13 1 (0.63%) Def Stans
13 1 (0.63%) ISO 9001
13 1 (0.63%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
13 1 (0.63%) SLA
System Software
1 6 (3.75%) Docker
2 3 (1.88%) Active Directory
3 2 (1.25%) Snort
Systems Management
1 6 (3.75%) Kubernetes
2 2 (1.25%) QRadar
Vendors
1 9 (5.63%) Capita
1 9 (5.63%) SAP
2 8 (5.00%) Splunk
3 6 (3.75%) IBM
4 4 (2.50%) Microsoft
5 2 (1.25%) Cisco
5 2 (1.25%) Juniper