Penetration Testing Job Trends

Penetration Testing
UK

The table below provides summary statistics and salary benchmarking for jobs requiring Penetration Testing skills. It covers vacancies from the 6 months leading up to 15 September 2025, with comparisons to the same periods in the previous two years.

6 months to
15 Sep 2025
Same period 2024 Same period 2023
Rank 494 446 440
Rank change year-on-year -48 -6 +140
Permanent jobs citing Penetration Testing 178 374 366
As % of all permanent jobs advertised in the UK 0.36% 0.48% 0.59%
As % of the Processes & Methodologies category 0.41% 0.60% 0.63%
Number of salaries quoted 143 224 331
10th Percentile £47,750 £42,500 £42,500
25th Percentile £54,375 £51,250 £50,375
Median annual salary (50th Percentile) £67,500 £65,000 £61,000
Median % change year-on-year +3.85% +6.56% -12.86%
75th Percentile £80,000 £82,500 £79,500
90th Percentile £90,000 £100,000 £95,000
UK excluding London median annual salary £61,000 £60,000 £55,000
% change year-on-year +1.67% +9.09% -15.38%

All Process and Methodology Skills
UK

Penetration Testing falls under the Processes and Methodologies category. For comparison with the information above, the following table provides summary statistics for all permanent job vacancies requiring process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 43,561 62,745 58,381
As % of all permanent jobs advertised in the UK 88.66% 80.90% 94.42%
Number of salaries quoted 24,438 36,124 43,818
10th Percentile £28,500 £32,000 £32,750
25th Percentile £36,250 £42,500 £45,000
Median annual salary (50th Percentile) £55,000 £57,500 £60,000
Median % change year-on-year -4.35% -4.17% -
75th Percentile £75,000 £76,500 £80,000
90th Percentile £96,250 £95,000 £100,000
UK excluding London median annual salary £47,500 £52,500 £54,000
% change year-on-year -9.52% -2.78% +2.86%

Penetration Testing
Job Vacancy Trend

Job postings citing Penetration Testing as a proportion of all IT jobs advertised.

Job vacancy trend for Penetration Testing in the UK

Penetration Testing
Salary Trend

Salary distribution trend for jobs in the UK citing Penetration Testing.

Salary distribution trend for jobs in the UK citing Penetration Testing

Penetration Testing
Salary Histogram

Salary distribution for jobs citing Penetration Testing over the 6 months to 15 September 2025.

Salary histogram for Penetration Testing in the UK

Penetration Testing
Top 16 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Penetration Testing within the UK over the 6 months to 15 September 2025. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -21 161 £65,000 - 143
London +17 84 £73,750 +5.36% 44
UK excluding London -6 83 £61,000 +1.67% 133
Work from Home -3 58 £69,384 +11.01% 148
North of England +20 28 £57,500 -6.12% 27
South East +18 25 £60,000 +1.69% 30
Yorkshire +31 17 £55,000 +4.76% 9
Midlands +18 14 £59,000 +2.61% 25
West Midlands +33 11 £59,000 +7.27% 17
North West -8 8 £63,000 -1.56% 17
Northern Ireland - 7 £70,000 - 4
South West +50 5 £67,500 +5.47% 18
East Midlands +16 3 £60,000 +4.35% 7
North East - 3 £69,384 - 1
Scotland +30 2 £75,574 +7.96% 16
Wales +20 2 £75,574 -16.03% 4

Penetration Testing
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 4 (2.25%) Microsoft Exchange
2 2 (1.12%) TPMS
3 1 (0.56%) SharePoint
Applications
1 4 (2.25%) Microsoft Excel
1 4 (2.25%) Microsoft Office
2 1 (0.56%) GNU Octave
Cloud Services
1 56 (31.46%) Azure
2 32 (17.98%) AWS
3 23 (12.92%) Microsoft 365
4 17 (9.55%) Entra ID
5 11 (6.18%) Azure Sentinel
6 9 (5.06%) GCP
7 8 (4.49%) Slack
8 6 (3.37%) Google Workspace
9 5 (2.81%) Microsoft Purview
9 5 (2.81%) Power Platform
10 4 (2.25%) Azure Key Vault
10 4 (2.25%) GitHub
10 4 (2.25%) PaaS
10 4 (2.25%) SaaS
11 3 (1.69%) Azure DevOps
11 3 (1.69%) Azure Logic Apps
11 3 (1.69%) Mimecast
12 2 (1.12%) Azure Stack
12 2 (1.12%) Cloud Computing
12 2 (1.12%) IaaS
Communications & Networking
1 62 (34.83%) Firewall
2 48 (26.97%) Network Security
3 13 (7.30%) TCP/IP
4 12 (6.74%) Wireless
5 11 (6.18%) VPN
6 8 (4.49%) BGP
6 8 (4.49%) Intrusion Detection
6 8 (4.49%) OSPF
7 7 (3.93%) SSL
7 7 (3.93%) VLAN
7 7 (3.93%) Wireshark
8 6 (3.37%) Spanning Tree
9 4 (2.25%) HTTP
9 4 (2.25%) HTTPS
9 4 (2.25%) WAN
9 4 (2.25%) Wi-Fi
10 3 (1.69%) Cisco ISE
11 2 (1.12%) Cisco Nexus
11 2 (1.12%) IPsec
11 2 (1.12%) LAN
Database & Business Intelligence
1 5 (2.81%) Power BI
2 4 (2.25%) Tableau
3 2 (1.12%) Elasticsearch
3 2 (1.12%) SQL Server
4 1 (0.56%) Amazon RDS
Development Applications
1 14 (7.87%) Burp Suite
2 13 (7.30%) Metasploit
3 12 (6.74%) JIRA
4 3 (1.69%) AppScan
5 2 (1.12%) Git
5 2 (1.12%) Selenium
6 1 (0.56%) GitLab
6 1 (0.56%) Jenkins
6 1 (0.56%) Postman
6 1 (0.56%) REST Assured
6 1 (0.56%) SoapUI
General
1 77 (43.26%) Social Skills
2 24 (13.48%) Finance
3 21 (11.80%) Inclusion and Diversity
4 17 (9.55%) Influencing Skills
5 15 (8.43%) Analytical Skills
6 12 (6.74%) Legal
7 8 (4.49%) Presentation Skills
8 7 (3.93%) Law
8 7 (3.93%) Mandarin Language
9 4 (2.25%) Banking
10 3 (1.69%) Aerospace
10 3 (1.69%) Manufacturing
10 3 (1.69%) Marketing
10 3 (1.69%) Public Sector
11 2 (1.12%) Documentation Skills
11 2 (1.12%) Military
11 2 (1.12%) Organisational Skills
12 1 (0.56%) Financial Institution
12 1 (0.56%) Retail
12 1 (0.56%) Telecoms
Job Titles
1 43 (24.16%) Security Engineer
2 28 (15.73%) Analyst
3 26 (14.61%) Security Analyst
4 25 (14.04%) Senior
5 20 (11.24%) Lead
6 18 (10.11%) Architect
6 18 (10.11%) Security Architect
7 17 (9.55%) Tester
8 16 (8.99%) Cybersecurity Engineer
8 16 (8.99%) Penetration Tester
9 15 (8.43%) Senior Security Engineer
10 14 (7.87%) Network Engineer
11 12 (6.74%) Infrastructure Engineer
12 9 (5.06%) Cybersecurity Specialist
12 9 (5.06%) Security Specialist
13 8 (4.49%) IT Manager
13 8 (4.49%) Principal Architect
13 8 (4.49%) Principal Security Architect
14 7 (3.93%) IT Security Analyst
14 7 (3.93%) Lead Architect
Libraries, Frameworks & Software Standards
1 3 (1.69%) JSON
2 2 (1.12%) Elastic Stack
3 1 (0.56%) EDI
3 1 (0.56%) JWT
3 1 (0.56%) ModSecurity
3 1 (0.56%) OAuth
3 1 (0.56%) OAuth2
3 1 (0.56%) PyTorch
3 1 (0.56%) REST
3 1 (0.56%) SAML
3 1 (0.56%) TensorFlow
Miscellaneous
1 25 (14.04%) Security Posture
2 21 (11.80%) Management Information System
3 17 (9.55%) Security Operations Centre
4 15 (8.43%) Cyber Threat
5 13 (7.30%) Mobile App
5 13 (7.30%) Self-Motivation
6 8 (4.49%) Data Centre
6 8 (4.49%) Operational Technology
7 6 (3.37%) Cyber Kill Chain
8 5 (2.81%) Cloud Native
8 5 (2.81%) Cyber Defence
8 5 (2.81%) SCADA
9 4 (2.25%) Distributed Systems
10 3 (1.69%) Analytical Mindset
10 3 (1.69%) Cyber Security Posture
10 3 (1.69%) Onboarding
10 3 (1.69%) PKI
10 3 (1.69%) Public Cloud
10 3 (1.69%) Virtual Team
11 2 (1.12%) Cyberattack
Operating Systems
1 36 (20.22%) Windows
2 24 (13.48%) Linux
3 9 (5.06%) Kali Linux
4 6 (3.37%) Android
4 6 (3.37%) Apple iOS
5 5 (2.81%) Windows Server
6 4 (2.25%) Unix
7 3 (1.69%) VMS
8 2 (1.12%) Windows Server 2019
9 1 (0.56%) Debian
9 1 (0.56%) Ubuntu
9 1 (0.56%) Windows 10
9 1 (0.56%) Windows Server 2016
Processes & Methodologies
1 114 (64.04%) Cybersecurity
2 72 (40.45%) Incident Response
3 58 (32.58%) Vulnerability Management
4 57 (32.02%) SIEM
5 47 (26.40%) Information Security
6 43 (24.16%) Vulnerability Assessment
7 34 (19.10%) Security Operations
8 30 (16.85%) Vulnerability Scanning
9 29 (16.29%) Cloud Security
9 29 (16.29%) Risk Management
10 26 (14.61%) Security Testing
11 25 (14.04%) Security Architecture
12 23 (12.92%) Computer Science
12 23 (12.92%) DevOps
13 21 (11.80%) Problem-Solving
14 20 (11.24%) Risk Assessment
15 19 (10.67%) Mentoring
15 19 (10.67%) Security Management
16 18 (10.11%) Information Security Management
17 17 (9.55%) Information Assurance
Programming Languages
1 38 (21.35%) Python
2 30 (16.85%) PowerShell
3 23 (12.92%) Bash
4 11 (6.18%) Go
5 9 (5.06%) SQL
6 7 (3.93%) Java
7 5 (2.81%) JavaScript
8 4 (2.25%) C
8 4 (2.25%) C#
8 4 (2.25%) C++
8 4 (2.25%) Kotlin
8 4 (2.25%) Objective-C
8 4 (2.25%) R
9 3 (1.69%) Perl
10 1 (0.56%) Kusto Query Language
Qualifications
1 42 (23.60%) Degree
2 30 (16.85%) CISSP
2 30 (16.85%) Security Cleared
3 29 (16.29%) SC Cleared
4 18 (10.11%) OSCP
5 12 (6.74%) Cisco Certification
6 11 (6.18%) CCNA
6 11 (6.18%) CCNP
6 11 (6.18%) CEH
6 11 (6.18%) CompTIA Security+
6 11 (6.18%) GCIA
7 9 (5.06%) CISM
7 9 (5.06%) CREST Certified
8 8 (4.49%) GIAC
8 8 (4.49%) SANS
9 7 (3.93%) CHECK Team Leader
9 7 (3.93%) CISA
10 6 (3.37%) Computer Science Degree
10 6 (3.37%) Master's Degree
11 5 (2.81%) CHECK Team Member
Quality Assurance & Compliance
1 71 (39.89%) ISO/IEC 27001
2 54 (30.34%) NIST
3 25 (14.04%) Cyber Essentials
4 19 (10.67%) NCSC
5 14 (7.87%) GDPR
6 11 (6.18%) QA
7 9 (5.06%) Accessibility
8 4 (2.25%) SOC 2
9 3 (1.69%) Cyber Essentials PLUS
9 3 (1.69%) GRC
9 3 (1.69%) NIST 800
10 2 (1.12%) COBIT
10 2 (1.12%) PCI DSS
11 1 (0.56%) Actionable Recommendations
11 1 (0.56%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
System Software
1 22 (12.36%) Active Directory
2 8 (4.49%) Virtual Machines
3 4 (2.25%) Firmware
4 3 (1.69%) VMware Infrastructure
5 2 (1.12%) EMC RecoverPoint
5 2 (1.12%) Hyper-V
5 2 (1.12%) pfSense
5 2 (1.12%) Squid
5 2 (1.12%) VMware ESXi
6 1 (0.56%) Docker
Systems Management
1 12 (6.74%) Microsoft Intune
2 11 (6.18%) Single Sign-On
3 10 (5.62%) Nessus
4 6 (3.37%) Jamf Pro
4 6 (3.37%) Kubernetes
4 6 (3.37%) Nmap
5 5 (2.81%) QRadar
6 3 (1.69%) Terraform
7 2 (1.12%) Cisco CUCM
7 2 (1.12%) Kibana
7 2 (1.12%) VxRail
8 1 (0.56%) Active Directory Federation Services
8 1 (0.56%) Ansible
8 1 (0.56%) Argo
8 1 (0.56%) CASB
8 1 (0.56%) Grafana
8 1 (0.56%) Progress Chef
8 1 (0.56%) Prometheus
8 1 (0.56%) Proxmox
8 1 (0.56%) SCCM
Vendors
1 57 (32.02%) Microsoft
2 20 (11.24%) Cisco
3 10 (5.62%) Splunk
3 10 (5.62%) Tenable
4 8 (4.49%) Google
4 8 (4.49%) ServiceNow
5 7 (3.93%) Meraki
6 5 (2.81%) Fortinet
6 5 (2.81%) Oracle
6 5 (2.81%) Palo Alto
6 5 (2.81%) VMware
7 4 (2.25%) Sophos
8 3 (1.69%) CheckPoint
8 3 (1.69%) Dell
8 3 (1.69%) Juniper
8 3 (1.69%) Trustwave
8 3 (1.69%) Zscaler
9 2 (1.12%) CrowdStrike
9 2 (1.12%) LogicMonitor
9 2 (1.12%) Okta