MITRE ATT&CK
UK

The following table provides summary statistics for permanent job vacancies with a requirement for MITRE ATT&CK skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited MITRE ATT&CK over the 6 months to 14 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
14 May 2024
Same period 2023 Same period 2022
Rank 759 718 958
Rank change year-on-year -41 +240 -112
Permanent jobs citing MITRE ATT&CK 137 262 280
As % of all permanent jobs advertised in the UK 0.14% 0.26% 0.18%
As % of the Processes & Methodologies category 0.16% 0.27% 0.18%
Number of salaries quoted 106 152 219
10th Percentile £47,000 £39,400 £49,150
25th Percentile £48,438 £55,000 £56,250
Median annual salary (50th Percentile) £65,000 £65,000 £65,000
Median % change year-on-year - - +4.00%
75th Percentile £74,375 £80,313 £83,750
90th Percentile £92,245 £103,750 £100,000
UK excluding London median annual salary £47,000 £60,000 £65,000
% change year-on-year -21.67% -7.69% +4.00%

All Process and Methodology Skills
UK

MITRE ATT&CK is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 84,701 95,929 153,018
As % of all permanent jobs advertised in the UK 85.52% 95.60% 95.73%
Number of salaries quoted 59,701 56,502 82,944
10th Percentile £29,000 £34,000 £33,740
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £61,180 £60,000
Median % change year-on-year -10.10% +1.97% +9.09%
75th Percentile £72,500 £81,250 £80,000
90th Percentile £92,500 £100,000 £96,250
UK excluding London median annual salary £50,000 £55,000 £52,500
% change year-on-year -9.09% +4.76% +9.38%

MITRE ATT&CK
Job Vacancy Trend

Job postings citing MITRE ATT&CK as a proportion of all IT jobs advertised.

Job vacancy trend for MITRE ATT&CK in the UK

MITRE ATT&CK
Salary Trend

3-month moving average salary quoted in jobs citing MITRE ATT&CK.

Salary trend for MITRE ATT&CK in the UK

MITRE ATT&CK
Salary Histogram

Salary distribution for jobs citing MITRE ATT&CK over the 6 months to 14 May 2024.

Salary histogram for MITRE ATT&CK in the UK

MITRE ATT&CK
Top 13 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing MITRE ATT&CK within the UK over the 6 months to 14 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -32 113 £65,000 +4.00% 25
Work from Home +62 72 £59,000 -13.24% 6
UK excluding London -17 68 £47,000 -21.67% 12
London +24 59 £69,250 +1.84% 11
South East +12 19 £52,875 +0.71% 2
Scotland -42 18 £47,000 +16.46% 1
North of England +20 17 £47,000 -21.67% 3
North West -9 16 £47,000 -21.67% 1
South West -17 10 £78,750 +95.14% 3
Midlands -2 3 £70,000 +2.94% 2
West Midlands -2 2 £70,000 +2.94% 2
Yorkshire +87 1 £62,500 +4.17% 2
East of England +2 1 £60,000 -14.29% 1

MITRE ATT&CK
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 6 (4.38%) Microsoft Exchange
2 1 (0.73%) SharePoint
Applications
1 7 (5.11%) Microsoft Office
2 1 (0.73%) Microsoft Excel
2 1 (0.73%) MS Visio
Cloud Services
1 74 (54.01%) Azure
2 43 (31.39%) Microsoft 365
3 16 (11.68%) IaaS
3 16 (11.68%) SaaS
4 15 (10.95%) AWS
5 14 (10.22%) PaaS
6 11 (8.03%) Entra ID
7 8 (5.84%) GCP
8 7 (5.11%) Azure Sentinel
9 6 (4.38%) Azure Service Fabric
10 4 (2.92%) Amazon S3
11 3 (2.19%) Azure AKS
11 3 (2.19%) Google Kubernetes Engine
12 2 (1.46%) Power Platform
13 1 (0.73%) Cloud Computing
Communications & Networking
1 32 (23.36%) Firewall
2 27 (19.71%) DNS
3 26 (18.98%) DKIM
3 26 (18.98%) DMARC
3 26 (18.98%) Internet
4 10 (7.30%) Wireshark
5 9 (6.57%) Intrusion Detection
6 7 (5.11%) Network Security
7 6 (4.38%) TCP/IP
8 4 (2.92%) HTTP
8 4 (2.92%) SMTP
8 4 (2.92%) SSL
9 2 (1.46%) 802.11
9 2 (1.46%) Bluetooth
9 2 (1.46%) LAN
9 2 (1.46%) WAN
9 2 (1.46%) ZigBee
10 1 (0.73%) Cisco IPT
10 1 (0.73%) tcpdump
Database & Business Intelligence
1 6 (4.38%) Azure SQL Database
2 4 (2.92%) SQL Server
3 2 (1.46%) Power BI
4 1 (0.73%) Hadoop
Development Applications
1 9 (6.57%) Metasploit
2 6 (4.38%) Burp Suite
General
1 40 (29.20%) Finance
2 37 (27.01%) Social Skills
3 11 (8.03%) Law
4 10 (7.30%) Inclusion and Diversity
5 9 (6.57%) Analytical Skills
5 9 (6.57%) Banking
5 9 (6.57%) Legal
6 7 (5.11%) Marketing
7 6 (4.38%) Games
8 4 (2.92%) Presentation Skills
9 3 (2.19%) Manufacturing
9 3 (2.19%) Public Sector
9 3 (2.19%) Retail Banking
10 2 (1.46%) Cyber-Physical System
10 2 (1.46%) Organisational Skills
10 2 (1.46%) Retail
11 1 (0.73%) Automotive
11 1 (0.73%) Financial Institution
11 1 (0.73%) Investment Banking
11 1 (0.73%) Telecoms
Job Titles
1 68 (49.64%) Analyst
2 60 (43.80%) Security Analyst
3 27 (19.71%) Information Analyst
3 27 (19.71%) Information Security Analyst
4 22 (16.06%) Cybersecurity Analyst
4 22 (16.06%) Senior
5 16 (11.68%) Architect
6 15 (10.95%) Lead
7 11 (8.03%) Security Engineer
7 11 (8.03%) Senior Analyst
8 10 (7.30%) Security Manager
8 10 (7.30%) Senior Security Analyst
9 7 (5.11%) IT Analyst
9 7 (5.11%) IT Security Analyst
9 7 (5.11%) Lead Architect
9 7 (5.11%) SOC Manager
10 6 (4.38%) Email Analyst
10 6 (4.38%) SOC Engineer
10 6 (4.38%) Vulnerability Analyst
10 6 (4.38%) Vulnerability Management Analyst
Libraries, Frameworks & Software Standards
1 13 (9.49%) REST
2 10 (7.30%) OAuth
2 10 (7.30%) SAML
3 6 (4.38%) SOAP
3 6 (4.38%) Web Services
4 4 (2.92%) Kafka
5 2 (1.46%) 802.1X
Miscellaneous
1 51 (37.23%) Cyberattack
2 32 (23.36%) Cyber Threat
3 30 (21.90%) Cyber Kill Chain
4 20 (14.60%) Cyber Defence
5 19 (13.87%) Security Operations Centre
6 15 (10.95%) Management Information System
7 11 (8.03%) Public Cloud
8 8 (5.84%) Security Posture
9 6 (4.38%) Distributed Systems
10 5 (3.65%) Operational Technology
11 4 (2.92%) SCADA
12 3 (2.19%) Cloud Native
12 3 (2.19%) Insider Threat
12 3 (2.19%) Self-Motivation
13 2 (1.46%) CAN bus
13 2 (1.46%) IoT
13 2 (1.46%) NHS
14 1 (0.73%) Cybercrime
14 1 (0.73%) Data Centre
14 1 (0.73%) Mobile App
Operating Systems
1 12 (8.76%) Windows
2 7 (5.11%) Linux
3 6 (4.38%) Unix
4 4 (2.92%) CentOS
4 4 (2.92%) Solaris
4 4 (2.92%) Ubuntu
4 4 (2.92%) zOS
5 1 (0.73%) Mac OS X
5 1 (0.73%) Windows Server
5 1 (0.73%) Windows XP
Processes & Methodologies
1 79 (57.66%) Cybersecurity
2 77 (56.20%) SIEM
3 61 (44.53%) Information Security
4 58 (42.34%) Incident Response
5 56 (40.88%) Security Operations
6 47 (34.31%) Cloud Security
7 45 (32.85%) SOAR
8 41 (29.93%) Cyber Threat Intelligence
8 41 (29.93%) Threat Intelligence
9 40 (29.20%) Vulnerability Management
10 32 (23.36%) Vulnerability Remediation
11 28 (20.44%) Application Security
12 24 (17.52%) OWASP
13 22 (16.06%) Threat Modelling
14 19 (13.87%) Cyber Intelligence
15 18 (13.14%) Identity Access Management
16 17 (12.41%) Problem Management
17 16 (11.68%) Continuous Improvement
18 15 (10.95%) Change Management
19 14 (10.22%) Decision-Making
Programming Languages
1 7 (5.11%) SQL
2 3 (2.19%) Kusto Query Language
3 2 (1.46%) Python
4 1 (0.73%) Bash
4 1 (0.73%) C
4 1 (0.73%) Java
4 1 (0.73%) PowerShell
4 1 (0.73%) R
4 1 (0.73%) Scala
Qualifications
1 36 (26.28%) CISSP
2 28 (20.44%) CISM
3 24 (17.52%) GIAC
4 14 (10.22%) Degree
4 14 (10.22%) Security Cleared
5 11 (8.03%) SC Cleared
6 9 (6.57%) SANS
7 8 (5.84%) Computer Science Degree
8 7 (5.11%) CEH
8 7 (5.11%) DV Cleared
9 6 (4.38%) AWS Certified Cloud Practitioner
9 6 (4.38%) Master's Degree
10 5 (3.65%) (ISC)2 CCSP
10 5 (3.65%) CCSP
10 5 (3.65%) Cisco Certification
10 5 (3.65%) CREST Certified
10 5 (3.65%) CRISC
10 5 (3.65%) GCIH
10 5 (3.65%) GPEN
11 4 (2.92%) OSCP
Quality Assurance & Compliance
1 60 (43.80%) NIST
2 31 (22.63%) ISO/IEC 27001
3 20 (14.60%) NCSC
4 17 (12.41%) PCI DSS
5 14 (10.22%) GDPR
6 9 (6.57%) GRC
7 7 (5.11%) COBIT
8 6 (4.38%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
8 6 (4.38%) Web Application Security Consortium
9 4 (2.92%) Cyber Essentials
9 4 (2.92%) Cyber Essentials PLUS
9 4 (2.92%) ISO 9001
10 3 (2.19%) SOC 2
11 2 (1.46%) ISO 31000
11 2 (1.46%) NIST 800
12 1 (0.73%) Actionable Recommendations
12 1 (0.73%) California Consumer Privacy Act
12 1 (0.73%) HIPAA
12 1 (0.73%) PSD2
12 1 (0.73%) Sarbanes-Oxley
System Software
1 4 (2.92%) Active Directory
2 3 (2.19%) Docker
3 2 (1.46%) Virtual Machines
4 1 (0.73%) Hyper-V
Systems Management
1 26 (18.98%) CASB
2 6 (4.38%) Computer Emergency Response Teams
2 6 (4.38%) CSIRT
2 6 (4.38%) Kubernetes
2 6 (4.38%) Nmap
3 4 (2.92%) Nessus
3 4 (2.92%) QRadar
3 4 (2.92%) Terraform
4 1 (0.73%) Microsoft Intune
Vendors
1 29 (21.17%) Microsoft
2 14 (10.22%) Qualys
3 9 (6.57%) Splunk
4 3 (2.19%) IBM
4 3 (2.19%) Intel
5 1 (0.73%) CrowdStrike
5 1 (0.73%) Darktrace
5 1 (0.73%) Netskope
5 1 (0.73%) Palo Alto
5 1 (0.73%) VMware
5 1 (0.73%) Zscaler