Period
to 12 May 2021

The following table provides summary statistics for permanent job vacancies with a requirement for ISO/IEC 27001 skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited ISO/IEC 27001 over the 6 months to 12 May 2021 with a comparison to the same period in the previous 2 years.

ISO/IEC 27001
UK
6 months to
12 May 2021
Same period 2020 Same period 2019
Rank 216 187 196
Rank change year-on-year -29 +9 +23
Permanent jobs citing ISO/IEC 27001 1,394 1,836 2,639
As % of all permanent jobs advertised in the UK 1.57% 1.86% 1.81%
As % of the Quality Assurance & Compliance category 12.69% 15.05% 12.82%
Number of salaries quoted 1,078 1,484 1,942
10th Percentile £36,250 £35,000 £32,500
25th Percentile £42,500 £42,500 £41,250
Median annual salary (50th Percentile) £56,750 £55,000 £54,500
Median % change year-on-year +3.18% +0.92% -0.91%
75th Percentile £72,375 £72,500 £70,000
90th Percentile £87,500 £88,750 £88,750
UK excluding London median annual salary £50,000 £52,500 £50,000
% change year-on-year -4.76% +5.00% -

ISO/IEC 27001 is in the Quality Assurance and Compliance category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for quality assurance or compliance skills.

All Quality Assurance and Compliance Skills
UK
Permanent vacancies with a requirement for quality assurance or compliance skills 10,983 12,200 20,577
As % of all permanent IT jobs advertised in the UK 12.39% 12.38% 14.15%
Number of salaries quoted 7,561 9,439 15,037
10th Percentile £31,250 £29,000 £27,750
25th Percentile £40,500 £37,500 £37,450
Median annual salary (50th Percentile) £52,500 £52,500 £50,000
Median % change year-on-year - +5.00% -
75th Percentile £70,000 £70,000 £67,500
90th Percentile £85,000 £85,000 £82,500
UK excluding London median annual salary £47,500 £47,000 £45,000
% change year-on-year +1.06% +4.44% -

ISO/IEC 27001
Job Vacancy Trend

Job postings citing ISO/IEC 27001 as a proportion of all IT jobs advertised.

Job vacancy trend for ISO/IEC 27001 in the UK

ISO/IEC 27001
Salary Trend

3-month moving average salary quoted in jobs citing ISO/IEC 27001.

Salary trend for ISO/IEC 27001 in the UK

ISO/IEC 27001
Salary Histogram

Salary distribution for jobs citing ISO/IEC 27001 over the 6 months to 12 May 2021.

Salary histogram for ISO/IEC 27001 in the UK

ISO/IEC 27001
Top 17 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing ISO/IEC 27001 within the UK over the 6 months to 12 May 2021. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England -36 1,224 £57,500 +4.55% 228
UK excluding London -28 860 £50,000 -4.76% 189
London -24 428 £67,500 +8.00% 60
South East -13 248 £50,000 -9.09% 53
Work from Home -74 231 £65,000 - 27
North of England -23 211 £55,000 +10.00% 52
Midlands -44 155 £55,000 +4.76% 23
North West +2 131 £55,000 +13.40% 34
West Midlands -67 104 £62,500 +19.05% 12
South West -33 102 £44,039 -16.12% 19
Scotland +42 89 £37,500 -21.05% 13
Yorkshire -41 53 £58,750 +6.82% 12
East Midlands +8 50 £43,500 -13.00% 11
East of England -15 41 £62,500 +25.00% 21
North East +29 31 £53,750 +19.44% 6
Wales +8 12 £48,750 +21.33% 7
Northern Ireland +8 5 £50,000 +25.00% 1

For the 6 months to 12 May 2021, IT jobs citing ISO/IEC 27001 also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads with a requirement for ISO/IEC 27001.

1 793 (56.89%) Information Security
2 491 (35.22%) Cybersecurity
3 396 (28.41%) Azure
4 384 (27.55%) Social Skills
5 342 (24.53%) GDPR
6 332 (23.82%) CISSP
7 312 (22.38%) NIST
8 287 (20.59%) Risk Management
9 274 (19.66%) ITIL
10 273 (19.58%) PCI DSS
11 264 (18.94%) Microsoft
12 253 (18.15%) AWS
13 247 (17.72%) Cyber Essentials
14 241 (17.29%) Finance
15 239 (17.14%) Management Information System
15 239 (17.14%) CISM
16 230 (16.50%) Security Management
17 228 (16.36%) Microsoft 365
18 227 (16.28%) Firewall
19 197 (14.13%) Agile Software Development
20 183 (13.13%) Windows
21 179 (12.84%) ISMS
22 170 (12.20%) Security Architecture
23 169 (12.12%) Information Security Management
24 155 (11.12%) SIEM
25 153 (10.98%) Active Directory
26 148 (10.62%) Data Protection
27 145 (10.40%) SaaS
28 136 (9.76%) CISA
29 134 (9.61%) Penetration Testing

ISO/IEC 27001
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 36 (2.58%) IIS
2 35 (2.51%) SharePoint
3 19 (1.36%) Confluence
4 15 (1.08%) Elasticsearch
5 14 (1.00%) Apache
6 10 (0.72%) MS Exchange
7 7 (0.50%) Adobe Experience Manager
8 4 (0.29%) nginx
9 2 (0.14%) Apache Pig
9 2 (0.14%) Apache Spark
9 2 (0.14%) JBoss
10 1 (0.072%) Apache Airflow
10 1 (0.072%) Exchange Server 2003
10 1 (0.072%) Exchange Server 2013
10 1 (0.072%) OpenStack
10 1 (0.072%) Oracle SOA Suite
10 1 (0.072%) Site Server
Applications
1 36 (2.58%) Microsoft Excel
2 30 (2.15%) MS Visio
3 26 (1.87%) Microsoft Office
4 23 (1.65%) Microsoft PowerPoint
5 8 (0.57%) Microsoft Project
6 4 (0.29%) Gliffy
7 1 (0.072%) Revit
Business Applications
1 10 (0.72%) Infor M3
2 7 (0.50%) Sentinel
3 6 (0.43%) SAP Business One
4 3 (0.22%) NetSuite
4 3 (0.22%) SAP GRC
5 2 (0.14%) Oracle Applications
5 2 (0.14%) Oracle EBS
5 2 (0.14%) Relativity
6 1 (0.072%) Distributed Ledger
6 1 (0.072%) Oracle Receivables
6 1 (0.072%) Temenos T24
Cloud Services
1 396 (28.41%) Azure
2 253 (18.15%) AWS
3 228 (16.36%) Microsoft 365
4 145 (10.40%) SaaS
5 78 (5.60%) PaaS
6 70 (5.02%) IaaS
7 51 (3.66%) Azure Active Directory
8 46 (3.30%) GCP
9 39 (2.80%) Cloud Computing
10 22 (1.58%) Power Platform
11 20 (1.43%) Dynamics 365
12 18 (1.29%) Serverless
13 15 (1.08%) BPaaS
14 13 (0.93%) Amazon EC2
14 13 (0.93%) Azure Sentinel
15 12 (0.86%) AWS CloudFormation
16 11 (0.79%) Azure Service Bus
16 11 (0.79%) Mimecast
17 10 (0.72%) Amazon CloudWatch
17 10 (0.72%) Amazon EKS
Communications & Networking
1 227 (16.28%) Firewall
2 130 (9.33%) Network Security
3 60 (4.30%) TCP/IP
3 60 (4.30%) VPN
4 53 (3.80%) DNS
5 41 (2.94%) Intrusion Detection
6 35 (2.51%) LAN
7 33 (2.37%) WAN
8 32 (2.30%) DHCP
9 30 (2.15%) Internet
10 21 (1.51%) VLAN
11 20 (1.43%) BGP
11 20 (1.43%) OSPF
12 18 (1.29%) Cisco ASA
13 17 (1.22%) SAN
13 17 (1.22%) VoIP
14 16 (1.15%) Wireless
15 15 (1.08%) MPLS
16 14 (1.00%) WAAS
17 12 (0.86%) NAS
Database & Business Intelligence
1 69 (4.95%) SQL Server
2 25 (1.79%) MySQL
2 25 (1.79%) SQL Server 2008
3 24 (1.72%) PostgreSQL
4 17 (1.22%) Big Data
5 16 (1.15%) Amazon RDS
5 16 (1.15%) Azure SQL Database
6 11 (0.79%) Amazon Redshift
7 10 (0.72%) Blockchain
8 8 (0.57%) Data Warehouse
9 6 (0.43%) Redis
9 6 (0.43%) Relational Database
10 5 (0.36%) Hadoop
11 4 (0.29%) MongoDB
11 4 (0.29%) Power BI
11 4 (0.29%) RDBMS
11 4 (0.29%) SQL Server 2012
11 4 (0.29%) SQL Server 2014
12 3 (0.22%) GIS
12 3 (0.22%) Oracle Database 11g
Development Applications
1 41 (2.94%) JIRA
2 35 (2.51%) Git (software)
3 25 (1.79%) Visual Studio
4 11 (0.79%) Jenkins
5 8 (0.57%) Postman
6 7 (0.50%) JUnit
7 6 (0.43%) Travis CI
8 4 (0.29%) Bitbucket
9 3 (0.22%) Robot Framework
9 3 (0.22%) Subversion
9 3 (0.22%) TestComplete
10 2 (0.14%) GitLab
10 2 (0.14%) Metasploit
10 2 (0.14%) Team Foundation Server
10 2 (0.14%) TeamCity
11 1 (0.072%) Ant
11 1 (0.072%) Cypress.io
11 1 (0.072%) Gerrit
11 1 (0.072%) Selenium
General
1 384 (27.55%) Social Skills
2 241 (17.29%) Finance
3 133 (9.54%) Legal
4 98 (7.03%) Analytical Skills
5 85 (6.10%) Public Sector
6 75 (5.38%) Retail
7 73 (5.24%) Organisational Skills
8 55 (3.95%) Law
9 52 (3.73%) Manufacturing
10 44 (3.16%) Telecoms
11 37 (2.65%) Marketing
12 33 (2.37%) Documentation Skills
13 32 (2.30%) Banking
13 32 (2.30%) Influencing Skills
14 28 (2.01%) Games
14 28 (2.01%) Presentation Skills
15 18 (1.29%) Electronics
16 16 (1.15%) Local Government
17 14 (1.00%) Pharmaceutical
18 13 (0.93%) Digital Economy
Job Titles
1 239 (17.14%) Analyst
2 172 (12.34%) Consultant
3 171 (12.27%) Security Analyst
4 143 (10.26%) Architect
5 128 (9.18%) Security Consultant
6 123 (8.82%) Security Manager
7 118 (8.46%) Security Engineer
8 103 (7.39%) Security Architect
9 91 (6.53%) IT Analyst
10 74 (5.31%) Information Analyst
11 71 (5.09%) Security Specialist
12 70 (5.02%) IT Manager
13 69 (4.95%) Information Security Analyst
14 68 (4.88%) Information Manager
15 62 (4.45%) IT Security Analyst
16 61 (4.38%) Information Security Manager
17 58 (4.16%) Security Officer
18 49 (3.52%) IT Engineer
19 48 (3.44%) Developer
20 47 (3.37%) Information Security Officer
Libraries, Frameworks & Software Standards
1 42 (3.01%) .NET
2 39 (2.80%) XML
3 36 (2.58%) CSS
3 36 (2.58%) Web Services
4 35 (2.51%) jQuery
5 34 (2.44%) HTML
6 32 (2.30%) HTML5
7 28 (2.01%) Middleware
8 25 (1.79%) ASP.NET
8 25 (1.79%) EDI
9 20 (1.43%) Node.js
10 14 (1.00%) RESTful
10 14 (1.00%) SAML
11 11 (0.79%) SOAP
12 10 (0.72%) REST
13 9 (0.65%) Sass
14 8 (0.57%) .NET Core
14 8 (0.57%) JSON
15 7 (0.50%) CSS3
15 7 (0.50%) JSP
Miscellaneous
1 239 (17.14%) Management Information System
2 57 (4.09%) Cyberthreat
3 44 (3.16%) CESG
4 42 (3.01%) Data Protection Act
5 39 (2.80%) Public Cloud
6 38 (2.73%) Cloud Native
6 38 (2.73%) User Experience
7 26 (1.87%) Self-Motivation
8 23 (1.65%) NHS
9 20 (1.43%) Data Centre
10 18 (1.29%) Private Cloud
11 17 (1.22%) Driving Licence
12 16 (1.15%) Distributed Denial-of-Service
12 16 (1.15%) Enterprise Software
13 14 (1.00%) IPTV
13 14 (1.00%) Security Operations Centre
14 13 (0.93%) Hybrid Cloud
14 13 (0.93%) Mobile App
15 12 (0.86%) BYOD
16 10 (0.72%) Clustering
Operating Systems
1 183 (13.13%) Windows
2 121 (8.68%) Linux
3 84 (6.03%) Windows Server
4 44 (3.16%) Windows 10
5 43 (3.08%) Unix
6 32 (2.30%) Windows Server 2012
7 20 (1.43%) Android
7 20 (1.43%) Windows Server 2019
8 18 (1.29%) Mac OS
9 16 (1.15%) Apple iOS
9 16 (1.15%) Windows Server 2016
10 14 (1.00%) Red Hat Enterprise Linux
11 11 (0.79%) Windows Server 2008
12 7 (0.50%) Ubuntu
13 5 (0.36%) CentOS
13 5 (0.36%) Debian
13 5 (0.36%) SUSE
13 5 (0.36%) Windows 7
14 4 (0.29%) Solaris
14 4 (0.29%) VMS
Processes & Methodologies
1 793 (56.89%) Information Security
2 491 (35.22%) Cybersecurity
3 287 (20.59%) Risk Management
4 274 (19.66%) ITIL
5 230 (16.50%) Security Management
6 197 (14.13%) Agile Software Development
7 179 (12.84%) ISMS
8 170 (12.20%) Security Architecture
9 169 (12.12%) Information Security Management
10 155 (11.12%) SIEM
11 148 (10.62%) Data Protection
12 134 (9.61%) Penetration Testing
13 130 (9.33%) Security Operations
14 125 (8.97%) DevOps
15 119 (8.54%) Incident Management
16 96 (6.89%) TOGAF
17 95 (6.81%) Vulnerability Management
18 93 (6.67%) Risk Analysis
19 92 (6.60%) Problem-Solving
20 91 (6.53%) Continuous Improvement
Programming Languages
1 75 (5.38%) Python
2 68 (4.88%) PowerShell
3 67 (4.81%) SQL
4 51 (3.66%) Java
5 45 (3.23%) JavaScript
6 39 (2.80%) C#
7 36 (2.58%) Bash Shell
8 14 (1.00%) C
9 10 (0.72%) Ruby
10 8 (0.57%) TypeScript
11 7 (0.50%) Go
11 7 (0.50%) PHP
12 6 (0.43%) Perl
13 5 (0.36%) Apex Code
13 5 (0.36%) C++
13 5 (0.36%) Groovy
13 5 (0.36%) T-SQL
13 5 (0.36%) VBA
14 4 (0.29%) Apple Swift
15 3 (0.22%) VB
Qualifications
1 332 (23.82%) CISSP
2 239 (17.14%) CISM
3 136 (9.76%) CISA
4 134 (9.61%) Degree
5 128 (9.18%) Security Cleared
6 79 (5.67%) Cisco Certification
7 71 (5.09%) SC Cleared
8 67 (4.81%) CRISC
9 50 (3.59%) CESG Certified Professional
10 49 (3.52%) CEH
11 48 (3.44%) ISO 27001 Lead Auditor
12 43 (3.08%) CCNP
13 33 (2.37%) CompTIA Security+
14 28 (2.01%) DV Cleared
15 27 (1.94%) SSCP
16 25 (1.79%) GIAC
17 24 (1.72%) DBS Check
18 22 (1.58%) ITIL Certification
19 21 (1.51%) BPSS Clearance
19 21 (1.51%) CCNA
Quality Assurance & Compliance
1 342 (24.53%) GDPR
2 312 (22.38%) NIST
3 273 (19.58%) PCI DSS
4 247 (17.72%) Cyber Essentials
5 118 (8.46%) NCSC
6 114 (8.18%) ISO 9001
7 110 (7.89%) GRC
8 82 (5.88%) SLA
9 79 (5.67%) COBIT
10 76 (5.45%) HMG Security Policy Framework
11 75 (5.38%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
12 57 (4.09%) Cyber Essentials PLUS
13 51 (3.66%) ISO/IEC 20000
13 51 (3.66%) JSP 440
14 42 (3.01%) Sarbanes-Oxley
14 42 (3.01%) SOC 2
15 37 (2.65%) BS25999
15 37 (2.65%) ISO/IEC 27005
16 36 (2.58%) NIST 800
17 33 (2.37%) QA
System Software
1 153 (10.98%) Active Directory
2 47 (3.37%) VMware Infrastructure
3 32 (2.30%) Hyper-V
4 31 (2.22%) Docker
5 13 (0.93%) Virtual Machines
6 9 (0.65%) vSphere
7 8 (0.57%) Virtual Desktop
8 7 (0.50%) VMware ESXi
9 5 (0.36%) BitLocker
9 5 (0.36%) XenDesktop
10 4 (0.29%) Sendmail
11 3 (0.22%) Microsoft App-V
12 2 (0.14%) Firmware
12 2 (0.14%) iptables
12 2 (0.14%) Postfix
12 2 (0.14%) Snort
12 2 (0.14%) XenApp
Systems Management
1 79 (5.67%) Terraform
2 49 (3.52%) Ansible
3 37 (2.65%) Microsoft Intune
4 33 (2.37%) Kubernetes
5 23 (1.65%) Nessus
5 23 (1.65%) SCCM
6 20 (1.43%) FortiGate
7 19 (1.36%) Puppet
8 11 (0.79%) Opscode Chef
9 9 (0.65%) Consul
10 8 (0.57%) CASB
10 8 (0.57%) Prometheus
10 8 (0.57%) Single Sign-On
11 7 (0.50%) Jamf Pro
11 7 (0.50%) OpenVAS
12 6 (0.43%) EMC NetWorker
12 6 (0.43%) linkerd
12 6 (0.43%) Rundeck
12 6 (0.43%) SCOM
12 6 (0.43%) WSUS
Vendors
1 264 (18.94%) Microsoft
2 103 (7.39%) Cisco
3 98 (7.03%) VMware
4 50 (3.59%) Google
5 42 (3.01%) SAP
6 39 (2.80%) CheckPoint
7 33 (2.37%) Oracle
8 27 (1.94%) ServiceNow
9 26 (1.87%) Apple
10 23 (1.65%) HP
10 23 (1.65%) Palo Alto
11 19 (1.36%) Salesforce.com
12 17 (1.22%) Citrix
12 17 (1.22%) Meraki
13 14 (1.00%) Splunk
13 14 (1.00%) Zscaler
14 13 (0.93%) Veeam
15 12 (0.86%) Aruba
16 11 (0.79%) F5
16 11 (0.79%) Northgate