Period
to 17 January 2019

The following table provides summary statistics for permanent job vacancies with a requirement for PCI DSS skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited PCI DSS over the 6 months to 17 January 2019 with a comparison to the same period in the previous 2 years.

Payment Card Industry Data Security Standard (PCI DSS)
UK
6 months to
17 Jan 2019
Same period 2018 Same period 2017
Rank 367 351 288
Rank change year-on-year -16 -63 +54
Permanent jobs citing PCI DSS 1,284 1,537 2,062
As % of all permanent IT jobs advertised in the UK 0.85% 0.89% 1.16%
As % of the Quality Assurance & Compliance category 6.17% 7.06% 9.19%
Number of salaries quoted 993 1,241 1,640
UK median annual salary £55,000 £55,000 £55,000
10th Percentile £36,250 £36,250 £36,250
90th Percentile £81,000 £80,000 £75,000
UK excluding London median annual salary £48,500 £50,000 £52,500
% change year-on-year -3.00% -4.76% +5.00%

PCI DSS is in the Quality Assurance and Compliance category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for quality assurance or compliance skills.

All Quality Assurance and Compliance Skills
UK
Permanent vacancies with a requirement for quality assurance or compliance skills 20,823 21,785 22,428
As % of all permanent IT jobs advertised in the UK 13.78% 12.58% 12.61%
Number of salaries quoted 15,310 16,783 17,741
UK median annual salary £50,000 £50,000 £47,500
Median salary % change year-on-year - +5.26% -
10th Percentile £27,500 £27,500 £27,000
90th Percentile £80,000 £78,750 £77,500
UK excluding London median annual salary £45,000 £42,500 £42,500
% change year-on-year +5.88% - -

PCI DSS
Job Vacancy Trend

Job postings citing PCI DSS as a percentage of all IT jobs advertised.

Job vacancy trend for PCI DSS in the UK

PCI DSS
Salary Trend

This chart provides the 3-month moving average for salaries quoted in permanent IT jobs citing PCI DSS.

Salary trend for PCI DSS in the UK

PCI DSS
Salary Histogram

The salary distribution of IT jobs citing PCI DSS over the 6 months to 17 January 2019.

Salary histogram for PCI DSS in the UK

PCI DSS
Top 15 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing PCI DSS within the UK over the 6 months to 17 January 2019. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England -2 1,232 £55,000 - 153
UK excluding London +59 879 £48,500 -3.00% 91
London -114 361 £68,250 +10.98% 64
North of England +49 275 £45,000 - 34
South East +9 226 £57,500 +15.00% 25
North West +83 200 £45,000 -14.29% 23
Midlands +102 170 £50,000 -4.76% 18
West Midlands +88 115 £47,500 -9.52% 11
East of England +48 111 £70,000 +7.69% 7
South West 0 74 £55,000 +22.22% 5
Yorkshire -8 71 £45,000 - 9
East Midlands +37 50 £57,500 +6.98% 6
Scotland +12 12 £59,000 -12.59% 2
Wales +16 11 £43,000 -2.27%
North East +5 4 £65,750 +25.24% 2

For the 6 months to 17 January 2019, IT jobs citing PCI DSS also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads with a requirement for PCI DSS.

1 789 (61.45%) ISO/IEC 27001
2 713 (55.53%) Information Security
3 522 (40.65%) CISSP
4 464 (36.14%) GDPR
5 357 (27.80%) Finance
6 315 (24.53%) Windows
7 311 (24.22%) CISM
8 296 (23.05%) Data Protection
9 293 (22.82%) Management Information System
10 289 (22.51%) Risk Management
11 288 (22.43%) SIEM
12 273 (21.26%) Penetration Testing
13 259 (20.17%) Cybersecurity
14 248 (19.31%) Linux
15 237 (18.46%) VMware
16 221 (17.21%) Network Security
17 212 (16.51%) Microsoft
18 199 (15.50%) Cisco
19 198 (15.42%) ITIL
20 193 (15.03%) VMware Infrastructure
21 181 (14.10%) Vulnerability Management
22 180 (14.02%) Firewall
23 177 (13.79%) Disaster Recovery
24 174 (13.55%) Legal
25 172 (13.40%) CISA
26 161 (12.54%) Business Continuity
27 150 (11.68%) Agile Software Development
28 148 (11.53%) CREST Certified
29 143 (11.14%) SQL
30 132 (10.28%) Retail

PCI DSS
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 53 (4.13%) IIS
2 36 (2.80%) Apache
3 27 (2.10%) SharePoint
4 13 (1.01%) Skype for Business
5 12 (0.93%) JBoss
6 10 (0.78%) nginx
7 7 (0.55%) Apache Spark
7 7 (0.55%) CMS
7 7 (0.55%) Confluence
7 7 (0.55%) Elasticsearch
8 6 (0.47%) MS Exchange
9 4 (0.31%) Apache Solr
9 4 (0.31%) Exchange Server 2010
9 4 (0.31%) OpenStack
9 4 (0.31%) SharePoint 2010
10 2 (0.16%) Tomcat
11 1 (0.078%) Oracle SOA Suite
11 1 (0.078%) Oracle Workflow
11 1 (0.078%) WebSphere
11 1 (0.078%) WebSphere Application Server
Applications
1 109 (8.49%) Microsoft PowerPoint
2 16 (1.25%) Microsoft Office
3 5 (0.39%) Microsoft Excel
4 3 (0.23%) MS Visio
5 2 (0.16%) Spreadsheet
6 1 (0.078%) Microsoft Project
Business Applications
1 16 (1.25%) Payment Gateway
2 7 (0.55%) Visualfiles
3 2 (0.16%) assyst
3 2 (0.16%) Dynamics CRM
3 2 (0.16%) SAP ERP
3 2 (0.16%) Shopify
4 1 (0.078%) BASE24
4 1 (0.078%) Sentinel
Cloud Services
1 127 (9.89%) Microsoft Azure
2 125 (9.74%) Amazon AWS
3 54 (4.21%) Office 365
4 43 (3.35%) SaaS
5 25 (1.95%) Google Cloud Platform
6 19 (1.48%) Cloud Computing
7 16 (1.25%) IaaS
8 12 (0.93%) PaaS
9 11 (0.86%) Amazon EC2
10 9 (0.70%) AWS CloudFormation
11 8 (0.62%) Serverless
12 6 (0.47%) AWS Lambda
13 5 (0.39%) GitHub
14 4 (0.31%) Apigee
14 4 (0.31%) G Suite
14 4 (0.31%) Virtual Private Cloud
15 3 (0.23%) Azure Active Directory
15 3 (0.23%) CloudFront
15 3 (0.23%) Datadog
15 3 (0.23%) Mimecast
Communications & Networking
1 221 (17.21%) Network Security
2 180 (14.02%) Firewall
3 124 (9.66%) Wi-Fi
4 70 (5.45%) Intrusion Detection
5 66 (5.14%) TCP/IP
6 57 (4.44%) LAN
7 52 (4.05%) WAN
7 52 (4.05%) Wireless
8 38 (2.96%) DNS
9 36 (2.80%) SAN
10 35 (2.73%) VPN
11 30 (2.34%) VoIP
12 28 (2.18%) Cisco ASA
13 23 (1.79%) VLAN
14 21 (1.64%) Cisco Nexus
14 21 (1.64%) DHCP
15 19 (1.48%) Wireshark
16 18 (1.40%) HTTP
17 17 (1.32%) SSL
18 16 (1.25%) BIG-IP
Database & Business Intelligence
1 66 (5.14%) SQL Server
2 30 (2.34%) SQL Server Integration Services
3 19 (1.48%) MySQL
4 18 (1.40%) Big Data
4 18 (1.40%) NoSQL
5 16 (1.25%) Data Warehouse
6 11 (0.86%) Amazon RDS
6 11 (0.86%) Hadoop
7 10 (0.78%) Oracle Reports
8 8 (0.62%) MongoDB
8 8 (0.62%) Oracle Database
9 7 (0.55%) HBase
9 7 (0.55%) SQL Server 2008
9 7 (0.55%) SQL Server Analysis Services
9 7 (0.55%) SQL Server Reporting Services
10 5 (0.39%) MariaDB
10 5 (0.39%) Oracle Database 11g
10 5 (0.39%) Relational Database
11 4 (0.31%) BigQuery
11 4 (0.31%) InfluxDB
Development Applications
1 44 (3.43%) JIRA
2 29 (2.26%) Jenkins
3 15 (1.17%) Git (software)
4 13 (1.01%) Octopus Deploy
5 12 (0.93%) TeamCity
6 9 (0.70%) Artifactory
6 9 (0.70%) Subversion
7 8 (0.62%) Team Foundation Server
8 7 (0.55%) Gradle
9 6 (0.47%) Hudson
10 5 (0.39%) SonarQube
11 4 (0.31%) Cucumber
11 4 (0.31%) Gerrit
11 4 (0.31%) git-flow
11 4 (0.31%) Metasploit
12 3 (0.23%) Atlassian Bamboo
12 3 (0.23%) Selenium
12 3 (0.23%) Vagrant
13 2 (0.16%) Bitbucket
13 2 (0.16%) Burp Suite
General
1 357 (27.80%) Finance
2 174 (13.55%) Legal
3 132 (10.28%) Retail
4 55 (4.28%) Telecoms
5 49 (3.82%) Marketing
6 26 (2.02%) Banking
7 18 (1.40%) Law
8 15 (1.17%) Manufacturing
9 7 (0.55%) Electronics
9 7 (0.55%) Publishing
10 6 (0.47%) Back Office
10 6 (0.47%) Local Government
11 5 (0.39%) Financial Institution
12 3 (0.23%) Advertising
12 3 (0.23%) Games
12 3 (0.23%) Multimedia
12 3 (0.23%) Pharmaceutical
13 2 (0.16%) Mandarin Language
14 1 (0.078%) Investment Banking
14 1 (0.078%) Retail Banking
Job Titles
1 279 (21.73%) Analyst
2 237 (18.46%) Security Analyst
3 202 (15.73%) Security Manager
4 161 (12.54%) Information Manager
4 161 (12.54%) Information Security Manager
5 142 (11.06%) IT Analyst
6 138 (10.75%) Consultant
7 131 (10.20%) IT Security Analyst
8 130 (10.12%) Senior Analyst
9 126 (9.81%) Senior Security Analyst
10 110 (8.57%) Architect
10 110 (8.57%) Security Consultant
11 108 (8.41%) Senior IT Security Analyst
12 92 (7.17%) Security Engineer
13 75 (5.84%) Information Analyst
13 75 (5.84%) Information Security Analyst
14 74 (5.76%) Security Architect
15 53 (4.13%) Information Security Consultant
16 49 (3.82%) Security Specialist
17 38 (2.96%) Compliance Manager
Libraries, Frameworks & Software Standards
1 59 (4.60%) .NET
2 46 (3.58%) Web Services
3 31 (2.41%) CSS
4 27 (2.10%) Ajax
5 23 (1.79%) WinForms
6 20 (1.56%) LDAP
7 16 (1.25%) HTML
7 16 (1.25%) Middleware
8 14 (1.09%) LAMP
8 14 (1.09%) OAuth
9 13 (1.01%) Node.js
9 13 (1.01%) OAuth2
9 13 (1.01%) OpenID
9 13 (1.01%) XACML
10 11 (0.86%) Laravel
10 11 (0.86%) Spring
10 11 (0.86%) Symfony
10 11 (0.86%) XML
11 9 (0.70%) .NET Framework
12 7 (0.55%) jQuery
Miscellaneous
1 293 (22.82%) Management Information System
2 110 (8.57%) Analytical Skills
2 110 (8.57%) Cyber Kill Chain
3 65 (5.06%) Data Centre
4 62 (4.83%) Data Protection Act
5 53 (4.13%) Self-Motivation
6 34 (2.65%) Mobile App
6 34 (2.65%) Security Operations Centre
7 25 (1.95%) Driving Licence
7 25 (1.95%) PKI
8 22 (1.71%) Fintech
9 21 (1.64%) Cyberthreat
9 21 (1.64%) Hybrid Cloud
10 19 (1.48%) CESG
11 17 (1.32%) Distributed Denial-of-Service
12 16 (1.25%) Private Cloud
12 16 (1.25%) Replication
13 14 (1.09%) Public Cloud
14 13 (1.01%) Enterprise Software
14 13 (1.01%) User Experience
Operating Systems
1 315 (24.53%) Windows
2 248 (19.31%) Linux
3 77 (6.00%) Windows Server
4 48 (3.74%) Unix
5 22 (1.71%) Red Hat Enterprise Linux
6 21 (1.64%) Android
7 19 (1.48%) Windows Server 2012
8 17 (1.32%) Apple iOS
9 16 (1.25%) Windows Server 2008
10 13 (1.01%) Windows 10
10 13 (1.01%) Windows 7
11 11 (0.86%) Ubuntu
12 10 (0.78%) CentOS
12 10 (0.78%) Mac OS X
13 8 (0.62%) Kali Linux
14 6 (0.47%) Windows 8
15 5 (0.39%) Debian
16 4 (0.31%) Windows Server 2003
17 3 (0.23%) Mac OS
18 2 (0.16%) OS/400
Processes & Methodologies
1 713 (55.53%) Information Security
2 296 (23.05%) Data Protection
3 289 (22.51%) Risk Management
4 288 (22.43%) SIEM
5 273 (21.26%) Penetration Testing
6 259 (20.17%) Cybersecurity
7 198 (15.42%) ITIL
8 181 (14.10%) Vulnerability Management
9 177 (13.79%) Disaster Recovery
10 161 (12.54%) Business Continuity
11 150 (11.68%) Agile Software Development
12 132 (10.28%) Due Diligence
12 132 (10.28%) Mentoring
12 132 (10.28%) Risk Analysis
13 120 (9.35%) Security Management
13 120 (9.35%) Web Development
14 118 (9.19%) Threat Analysis
15 112 (8.72%) OWASP
16 107 (8.33%) Security Operations
17 105 (8.18%) Scenario Testing
Programming Languages
1 143 (11.14%) SQL
2 72 (5.61%) PowerShell
3 62 (4.83%) Python
4 55 (4.28%) Java
5 42 (3.27%) JavaScript
5 42 (3.27%) Perl
6 30 (2.34%) Bash Shell
6 30 (2.34%) PHP
7 24 (1.87%) Ruby
8 23 (1.79%) VB.NET
9 15 (1.17%) C#
10 9 (0.70%) VBScript
11 7 (0.55%) C
11 7 (0.55%) Shell Script
12 6 (0.47%) VB
13 5 (0.39%) Scala
14 3 (0.23%) T-SQL
15 2 (0.16%) Apple Swift
15 2 (0.16%) Clojure
15 2 (0.16%) VBA
Qualifications
1 522 (40.65%) CISSP
2 311 (24.22%) CISM
3 172 (13.40%) CISA
4 148 (11.53%) CREST Certified
5 127 (9.89%) SANS
6 113 (8.80%) Degree
7 93 (7.24%) Security Cleared
8 86 (6.70%) CRISC
9 69 (5.37%) Cisco Certification
10 60 (4.67%) SC Cleared
11 52 (4.05%) CEH
12 36 (2.80%) CCNA
13 33 (2.57%) Computer Science Degree
13 33 (2.57%) Microsoft Certification
14 31 (2.41%) PCI QSA
15 21 (1.64%) CISMP
15 21 (1.64%) SSCP
16 20 (1.56%) GIAC
17 17 (1.32%) CCNP
17 17 (1.32%) ISO 27001 Lead Auditor
Quality Assurance & Compliance
1 789 (61.45%) ISO/IEC 27001
2 464 (36.14%) GDPR
3 108 (8.41%) Cyber Essentials
4 76 (5.92%) COBIT
5 73 (5.69%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
6 70 (5.45%) Sarbanes-Oxley
7 36 (2.80%) SLA
8 35 (2.73%) ISO 9001
9 31 (2.41%) Cyber Essentials PLUS
10 24 (1.87%) ISO 22301
11 18 (1.40%) QA
12 16 (1.25%) PA-DSS
13 13 (1.01%) ISO/IEC 20000
13 13 (1.01%) NIST 800
14 12 (0.93%) ISO 14001
15 11 (0.86%) SAS 70
16 10 (0.78%) HMG Security Policy Framework
17 9 (0.70%) ISO/IEC 27005
18 8 (0.62%) RMADS
19 7 (0.55%) ISAE 3402
System Software
1 193 (15.03%) VMware Infrastructure
2 119 (9.27%) Active Directory
3 23 (1.79%) vSphere
4 21 (1.64%) Hyper-V
4 21 (1.64%) Snort
5 20 (1.56%) Docker
6 12 (0.93%) Terminal Services
7 10 (0.78%) NFS
8 8 (0.62%) VMware NSX
9 7 (0.55%) Microsoft App-V
9 7 (0.55%) Virtual Servers
10 5 (0.39%) Virtual Desktop
11 4 (0.31%) HDFS
11 4 (0.31%) ProxySG
12 3 (0.23%) iptables
12 3 (0.23%) LXC
12 3 (0.23%) Virtual Machines
12 3 (0.23%) Xen
12 3 (0.23%) XenApp
13 2 (0.16%) VMware ESXi
Systems Management
1 41 (3.19%) Nessus
2 35 (2.73%) Ansible
3 26 (2.02%) Opscode Chef
3 26 (2.02%) Puppet
4 18 (1.40%) Terraform
5 17 (1.32%) Nagios
6 16 (1.25%) SCCM
6 16 (1.25%) SCOM
7 15 (1.17%) Nmap
8 12 (0.93%) vRealize
9 10 (0.78%) Kubernetes
10 9 (0.70%) vRealize Orchestrator
11 8 (0.62%) Single Sign-On
12 7 (0.55%) Grafana
13 6 (0.47%) Docker Swarm
13 6 (0.47%) QRadar
13 6 (0.47%) vCenter Server
14 5 (0.39%) AirWatch
14 5 (0.39%) Cisco Prime
14 5 (0.39%) Jamf Pro
Vendors
1 237 (18.46%) VMware
2 212 (16.51%) Microsoft
3 199 (15.50%) Cisco
4 37 (2.88%) HP
4 37 (2.88%) Splunk
5 36 (2.80%) LogRhythm
6 35 (2.73%) CheckPoint
7 33 (2.57%) Dell
8 32 (2.49%) Google
9 29 (2.26%) Palo Alto
10 28 (2.18%) Citrix
10 28 (2.18%) F5
10 28 (2.18%) Juniper
11 27 (2.10%) Qualys
12 25 (1.95%) Oracle
13 24 (1.87%) SolarWinds
14 20 (1.56%) WorldPay
15 16 (1.25%) Tripwire
16 15 (1.17%) Red Hat
16 15 (1.17%) SAP