MITRE ATT&CK
UK

The following table provides summary statistics for permanent job vacancies with a requirement for MITRE ATT&CK skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited MITRE ATT&CK over the 6 months to 12 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
12 May 2024
Same period 2023 Same period 2022
Rank 763 700 945
Rank change year-on-year -63 +245 -112
Permanent jobs citing MITRE ATT&CK 138 265 280
As % of all permanent jobs advertised in the UK 0.14% 0.26% 0.18%
As % of the Processes & Methodologies category 0.16% 0.27% 0.19%
Number of salaries quoted 107 154 219
10th Percentile £47,000 £39,611 £49,150
25th Percentile £49,375 £55,000 £56,250
Median annual salary (50th Percentile) £65,000 £65,000 £65,000
Median % change year-on-year - - +4.00%
75th Percentile £75,000 £81,250 £83,750
90th Percentile £92,194 £103,750 £100,000
UK excluding London median annual salary £47,000 £60,000 £65,000
% change year-on-year -21.67% -7.69% +4.00%

All Process and Methodology Skills
UK

MITRE ATT&CK is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 84,952 96,876 150,957
As % of all permanent jobs advertised in the UK 85.57% 95.60% 95.70%
Number of salaries quoted 59,894 57,115 82,331
10th Percentile £29,002 £34,000 £33,515
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £61,000 £60,000
Median % change year-on-year -9.84% +1.67% +9.09%
75th Percentile £72,500 £81,250 £80,000
90th Percentile £92,500 £100,000 £96,250
UK excluding London median annual salary £50,000 £55,000 £52,500
% change year-on-year -9.09% +4.76% +9.38%

MITRE ATT&CK
Job Vacancy Trend

Job postings citing MITRE ATT&CK as a proportion of all IT jobs advertised.

Job vacancy trend for MITRE ATT&CK in the UK

MITRE ATT&CK
Salary Trend

3-month moving average salary quoted in jobs citing MITRE ATT&CK.

Salary trend for MITRE ATT&CK in the UK

MITRE ATT&CK
Salary Histogram

Salary distribution for jobs citing MITRE ATT&CK over the 6 months to 12 May 2024.

Salary histogram for MITRE ATT&CK in the UK

MITRE ATT&CK
Top 13 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing MITRE ATT&CK within the UK over the 6 months to 12 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -31 113 £65,000 +1.96% 26
Work from Home +74 73 £60,750 -10.66% 6
UK excluding London -11 68 £47,000 -21.67% 12
London +23 59 £69,250 +1.84% 12
South East +13 19 £52,875 +0.71% 2
Scotland -42 18 £47,000 +16.46% 1
North of England +37 17 £47,000 -21.67% 3
North West -9 16 £47,000 -21.67% 1
South West -16 10 £78,750 +95.14% 4
Midlands -11 3 £70,000 +2.94% 1
West Midlands +16 2 £70,000 +2.94% 1
Yorkshire +80 1 £62,500 +4.17% 2
East of England +12 1 £60,000 -14.29% 1

MITRE ATT&CK
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 6 (4.35%) Microsoft Exchange
2 1 (0.72%) SharePoint
Applications
1 7 (5.07%) Microsoft Office
2 1 (0.72%) Microsoft Excel
2 1 (0.72%) MS Visio
Cloud Services
1 75 (54.35%) Azure
2 43 (31.16%) Microsoft 365
3 16 (11.59%) AWS
3 16 (11.59%) IaaS
3 16 (11.59%) SaaS
4 14 (10.14%) PaaS
5 11 (7.97%) Entra ID
6 8 (5.80%) GCP
7 7 (5.07%) Azure Sentinel
8 6 (4.35%) Azure Service Fabric
9 4 (2.90%) Amazon S3
10 3 (2.17%) Azure AKS
10 3 (2.17%) Google Kubernetes Engine
11 2 (1.45%) Power Platform
12 1 (0.72%) Cloud Computing
Communications & Networking
1 32 (23.19%) Firewall
2 28 (20.29%) DNS
3 26 (18.84%) DKIM
3 26 (18.84%) DMARC
3 26 (18.84%) Internet
4 10 (7.25%) Wireshark
5 9 (6.52%) Intrusion Detection
6 8 (5.80%) Network Security
7 7 (5.07%) TCP/IP
8 4 (2.90%) HTTP
8 4 (2.90%) SMTP
8 4 (2.90%) SSL
9 2 (1.45%) 802.11
9 2 (1.45%) Bluetooth
9 2 (1.45%) LAN
9 2 (1.45%) WAN
9 2 (1.45%) ZigBee
10 1 (0.72%) Cisco IPT
10 1 (0.72%) tcpdump
Database & Business Intelligence
1 6 (4.35%) Azure SQL Database
2 4 (2.90%) SQL Server
3 2 (1.45%) Power BI
4 1 (0.72%) Hadoop
Development Applications
1 9 (6.52%) Metasploit
2 6 (4.35%) Burp Suite
General
1 41 (29.71%) Finance
2 37 (26.81%) Social Skills
3 11 (7.97%) Law
4 10 (7.25%) Analytical Skills
4 10 (7.25%) Inclusion and Diversity
5 9 (6.52%) Banking
5 9 (6.52%) Legal
6 7 (5.07%) Marketing
7 6 (4.35%) Games
8 4 (2.90%) Presentation Skills
9 3 (2.17%) Manufacturing
9 3 (2.17%) Public Sector
9 3 (2.17%) Retail Banking
10 2 (1.45%) Cyber-Physical System
10 2 (1.45%) Organisational Skills
10 2 (1.45%) Retail
11 1 (0.72%) Automotive
11 1 (0.72%) Financial Institution
11 1 (0.72%) Investment Banking
11 1 (0.72%) Telecoms
Job Titles
1 69 (50.00%) Analyst
2 61 (44.20%) Security Analyst
3 27 (19.57%) Information Analyst
3 27 (19.57%) Information Security Analyst
4 23 (16.67%) Senior
5 22 (15.94%) Cybersecurity Analyst
6 16 (11.59%) Architect
7 15 (10.87%) Lead
8 12 (8.70%) Senior Analyst
9 11 (7.97%) Security Engineer
9 11 (7.97%) Senior Security Analyst
10 10 (7.25%) Security Manager
11 7 (5.07%) IT Analyst
11 7 (5.07%) IT Security Analyst
11 7 (5.07%) Lead Architect
11 7 (5.07%) SOC Manager
12 6 (4.35%) Email Analyst
12 6 (4.35%) SOC Engineer
12 6 (4.35%) Vulnerability Analyst
12 6 (4.35%) Vulnerability Management Analyst
Libraries, Frameworks & Software Standards
1 13 (9.42%) REST
2 10 (7.25%) OAuth
2 10 (7.25%) SAML
3 6 (4.35%) SOAP
3 6 (4.35%) Web Services
4 4 (2.90%) Kafka
5 2 (1.45%) 802.1X
Miscellaneous
1 51 (36.96%) Cyberattack
2 32 (23.19%) Cyber Threat
3 30 (21.74%) Cyber Kill Chain
4 20 (14.49%) Cyber Defence
4 20 (14.49%) Security Operations Centre
5 15 (10.87%) Management Information System
6 11 (7.97%) Public Cloud
7 9 (6.52%) Security Posture
8 6 (4.35%) Distributed Systems
9 5 (3.62%) Operational Technology
10 4 (2.90%) Insider Threat
10 4 (2.90%) SCADA
11 3 (2.17%) Cloud Native
11 3 (2.17%) Self-Motivation
12 2 (1.45%) CAN bus
12 2 (1.45%) IoT
12 2 (1.45%) NHS
13 1 (0.72%) Mobile App
13 1 (0.72%) PKI
13 1 (0.72%) Tandem
Operating Systems
1 12 (8.70%) Windows
2 7 (5.07%) Linux
3 6 (4.35%) Unix
4 4 (2.90%) CentOS
4 4 (2.90%) Solaris
4 4 (2.90%) Ubuntu
4 4 (2.90%) zOS
5 1 (0.72%) Mac OS X
5 1 (0.72%) Windows Server
5 1 (0.72%) Windows XP
Processes & Methodologies
1 80 (57.97%) Cybersecurity
2 78 (56.52%) SIEM
3 61 (44.20%) Information Security
4 59 (42.75%) Incident Response
5 57 (41.30%) Security Operations
6 48 (34.78%) Cloud Security
7 45 (32.61%) SOAR
8 42 (30.43%) Cyber Threat Intelligence
8 42 (30.43%) Threat Intelligence
9 41 (29.71%) Vulnerability Management
10 32 (23.19%) Vulnerability Remediation
11 28 (20.29%) Application Security
12 24 (17.39%) OWASP
13 22 (15.94%) Threat Modelling
14 19 (13.77%) Cyber Intelligence
15 18 (13.04%) Identity Access Management
16 17 (12.32%) Problem Management
17 16 (11.59%) Continuous Improvement
18 15 (10.87%) Change Management
19 14 (10.14%) Actionable Insight
Programming Languages
1 7 (5.07%) SQL
2 3 (2.17%) Kusto Query Language
3 2 (1.45%) Python
4 1 (0.72%) Bash
4 1 (0.72%) C
4 1 (0.72%) Java
4 1 (0.72%) PowerShell
4 1 (0.72%) R
4 1 (0.72%) Scala
Qualifications
1 36 (26.09%) CISSP
2 28 (20.29%) CISM
3 24 (17.39%) GIAC
4 14 (10.14%) Degree
4 14 (10.14%) Security Cleared
5 11 (7.97%) SC Cleared
6 9 (6.52%) SANS
7 8 (5.80%) Computer Science Degree
8 7 (5.07%) CEH
8 7 (5.07%) DV Cleared
9 6 (4.35%) AWS Certified Cloud Practitioner
9 6 (4.35%) Master's Degree
10 5 (3.62%) (ISC)2 CCSP
10 5 (3.62%) CCSP
10 5 (3.62%) Cisco Certification
10 5 (3.62%) CREST Certified
10 5 (3.62%) CRISC
10 5 (3.62%) GCIH
10 5 (3.62%) GPEN
11 4 (2.90%) OSCP
Quality Assurance & Compliance
1 60 (43.48%) NIST
2 31 (22.46%) ISO/IEC 27001
3 20 (14.49%) NCSC
4 17 (12.32%) PCI DSS
5 14 (10.14%) GDPR
6 9 (6.52%) GRC
7 7 (5.07%) COBIT
8 6 (4.35%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
8 6 (4.35%) Web Application Security Consortium
9 4 (2.90%) Cyber Essentials
9 4 (2.90%) Cyber Essentials PLUS
9 4 (2.90%) ISO 9001
10 3 (2.17%) SOC 2
11 2 (1.45%) ISO 31000
11 2 (1.45%) NIST 800
12 1 (0.72%) Actionable Recommendations
12 1 (0.72%) California Consumer Privacy Act
12 1 (0.72%) HIPAA
12 1 (0.72%) PSD2
12 1 (0.72%) Sarbanes-Oxley
System Software
1 4 (2.90%) Active Directory
2 3 (2.17%) Docker
3 2 (1.45%) Virtual Machines
4 1 (0.72%) Hyper-V
Systems Management
1 26 (18.84%) CASB
2 6 (4.35%) Computer Emergency Response Teams
2 6 (4.35%) CSIRT
2 6 (4.35%) Kubernetes
2 6 (4.35%) Nmap
3 4 (2.90%) Nessus
3 4 (2.90%) QRadar
3 4 (2.90%) Terraform
4 1 (0.72%) Microsoft Intune
Vendors
1 29 (21.01%) Microsoft
2 14 (10.14%) Qualys
3 10 (7.25%) Splunk
4 3 (2.17%) IBM
4 3 (2.17%) Intel
5 1 (0.72%) CrowdStrike
5 1 (0.72%) Darktrace
5 1 (0.72%) Netskope
5 1 (0.72%) Palo Alto
5 1 (0.72%) VMware
5 1 (0.72%) Zscaler