Penetration Testing Job Trends

Penetration Testing
UK

The table below provides summary statistics and salary benchmarking for jobs requiring Penetration Testing skills. It covers permanent job vacancies from the 6 months leading up to 27 November 2025, with comparisons to the same periods in the previous two years.

6 months to
27 Nov 2025
Same period 2024 Same period 2023
Rank 480 416 387
Rank change year-on-year -64 -29 +150
Permanent jobs citing Penetration Testing 183 378 359
As % of all permanent jobs in the UK 0.34% 0.56% 0.71%
As % of the Processes & Methodologies category 0.40% 0.66% 0.75%
Number of salaries quoted 159 216 316
10th Percentile £47,750 £47,500 £42,500
25th Percentile £52,500 £56,250 £52,494
Median annual salary (50th Percentile) £70,000 £65,000 £63,250
Median % change year-on-year +7.69% +2.77% -9.64%
75th Percentile £86,375 £87,500 £77,813
90th Percentile £90,000 £100,000 £90,000
UK excluding London median annual salary £62,500 £60,000 £59,250
% change year-on-year +4.17% +1.27% -8.85%

All Process and Methodology Skills
UK

Penetration Testing falls under the Processes and Methodologies category. For comparison with the information above, the following table provides summary statistics for all permanent job vacancies requiring process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 45,724 57,096 47,568
As % of all permanent jobs advertised in the UK 84.81% 85.02% 93.78%
Number of salaries quoted 27,947 29,808 36,597
10th Percentile £28,250 £34,000 £32,500
25th Percentile £36,250 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £60,000 £60,000
Median % change year-on-year -8.33% - -
75th Percentile £75,000 £80,000 £80,000
90th Percentile £95,000 £97,500 £98,750
UK excluding London median annual salary £47,500 £54,714 £52,500
% change year-on-year -13.18% +4.22% -0.94%

Penetration Testing
Job Vacancy Trend

Historical trend showing the proportion of permanent IT job postings citing Penetration Testing relative to all permanent IT jobs advertised.

Penetration Testing job vacancy trend in the UK

Penetration Testing
Salary Trend

Salary distribution trend for jobs in the UK citing Penetration Testing.

Salary distribution trend for jobs in the UK citing Penetration Testing

Penetration Testing
Salary Histogram

Salary distribution for jobs citing Penetration Testing over the 6 months to 27 November 2025.

Salary histogram for Penetration Testing in the UK

Penetration Testing
Top 15 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Penetration Testing within the UK over the 6 months to 27 November 2025. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -40 163 £67,500 +3.85% 115
UK excluding London -12 88 £62,500 +4.17% 104
London -23 77 £75,000 - 32
Work from Home +12 65 £65,000 - 69
South West +31 27 £80,000 +25.00% 20
South East +22 23 £57,500 -4.17% 28
Midlands +25 18 £53,000 -7.83% 23
West Midlands +41 11 £54,000 +2.86% 21
North of England +30 11 £55,000 -8.33% 22
Yorkshire +8 9 £55,000 +4.76% 6
East Midlands +29 7 £51,058 -11.20% 2
Scotland -21 7 £90,000 +22.87% 6
North West +26 2 £57,500 -8.00% 13
Northern Ireland +4 2 £70,000 +16.67% 1
East of England +32 1 £85,000 +198.25% 5

Penetration Testing
Co-Occurring Skills & Capabilities by Category

The following tables expand on the one above by listing co-occurrences grouped by category. They cover the same employment type, locality and period, with up to 20 co-occurrences shown in each category:

Application Platforms
1 6 (3.28%) Microsoft Exchange
2 3 (1.64%) SharePoint
3 1 (0.55%) Confluence
Applications
1 7 (3.83%) Microsoft Excel
1 7 (3.83%) Microsoft Office
2 1 (0.55%) GNU Octave
2 1 (0.55%) Weka
Cloud Services
1 59 (32.24%) Azure
2 27 (14.75%) AWS
3 17 (9.29%) Entra ID
4 16 (8.74%) GitHub
5 15 (8.20%) Slack
6 13 (7.10%) Azure Sentinel
6 13 (7.10%) Microsoft 365
7 12 (6.56%) GitHub Actions
8 11 (6.01%) Microsoft Purview
9 10 (5.46%) Power Platform
10 6 (3.28%) GCP
11 4 (2.19%) Azure Key Vault
12 3 (1.64%) Azure DevOps
12 3 (1.64%) Azure Logic Apps
12 3 (1.64%) IBM Cloud
12 3 (1.64%) Mimecast
12 3 (1.64%) PaaS
12 3 (1.64%) SaaS
13 2 (1.09%) Rubrik
13 2 (1.09%) SecurityScorecard
Communications & Networking
1 51 (27.87%) Firewall
2 33 (18.03%) Network Security
3 20 (10.93%) TCP/IP
4 13 (7.10%) VPN
5 10 (5.46%) Intrusion Detection
6 8 (4.37%) Wi-Fi
6 8 (4.37%) Wireshark
7 7 (3.83%) Wireless
8 6 (3.28%) VLAN
9 5 (2.73%) HTTP
10 4 (2.19%) BGP
10 4 (2.19%) DNS
10 4 (2.19%) Ethernet
10 4 (2.19%) OSPF
11 3 (1.64%) Cisco ISE
11 3 (1.64%) Modbus
11 3 (1.64%) Spanning Tree
12 2 (1.09%) Cisco Nexus
12 2 (1.09%) ICMP
12 2 (1.09%) SSH
Database & Business Intelligence
1 10 (5.46%) Power BI
2 7 (3.83%) Tableau
3 2 (1.09%) SQL Server
4 1 (0.55%) Elasticsearch
Development Applications
1 19 (10.38%) Burp Suite
1 19 (10.38%) JIRA
2 18 (9.84%) Metasploit
3 12 (6.56%) Jenkins
4 2 (1.09%) Git
4 2 (1.09%) IDA Disassembler
5 1 (0.55%) GitLab
General
1 78 (42.62%) Social Skills
2 31 (16.94%) Finance
3 22 (12.02%) Analytical Skills
4 18 (9.84%) Influencing Skills
5 16 (8.74%) Presentation Skills
6 14 (7.65%) Inclusion and Diversity
7 9 (4.92%) Public Sector
8 7 (3.83%) Law
9 6 (3.28%) Retail
10 5 (2.73%) Banking
10 5 (2.73%) Manufacturing
11 4 (2.19%) Documentation Skills
11 4 (2.19%) Electronics
11 4 (2.19%) Military
12 3 (1.64%) Mandarin Language
12 3 (1.64%) Marketing
13 2 (1.09%) Legal
13 2 (1.09%) Organisational Skills
14 1 (0.55%) Advertising
14 1 (0.55%) Telecoms
Job Titles
1 53 (28.96%) Security Engineer
2 37 (20.22%) Analyst
3 32 (17.49%) Security Analyst
4 23 (12.57%) Senior
5 21 (11.48%) Tester
6 20 (10.93%) Penetration Tester
7 19 (10.38%) Cybersecurity Engineer
8 15 (8.20%) Senior Security Engineer
9 14 (7.65%) Applications Engineer
10 12 (6.56%) IT Manager
11 11 (6.01%) Network Engineer
12 10 (5.46%) Consultant
12 10 (5.46%) Lead
12 10 (5.46%) Security Consultant
13 9 (4.92%) Cybersecurity Analyst
14 8 (4.37%) Cybersecurity Consultant
14 8 (4.37%) Information Analyst
14 8 (4.37%) Information Security Analyst
14 8 (4.37%) Vulnerability Management Engineer
15 7 (3.83%) Auditor
Libraries, Frameworks & Software Standards
1 5 (2.73%) JSON
2 1 (0.55%) Elastic Stack
2 1 (0.55%) ModSecurity
2 1 (0.55%) PyTorch
2 1 (0.55%) TensorFlow
2 1 (0.55%) YAML
Miscellaneous
1 29 (15.85%) Management Information System
2 23 (12.57%) Security Posture
3 16 (8.74%) Cyber Threat
4 15 (8.20%) Security Operations Centre
5 9 (4.92%) Cyber Defence
5 9 (4.92%) Operational Technology
6 7 (3.83%) PKI
6 7 (3.83%) Self-Motivation
7 6 (3.28%) Analytical Mindset
7 6 (3.28%) Cloud Native
7 6 (3.28%) Cyber Kill Chain
7 6 (3.28%) Data Centre
7 6 (3.28%) Mobile App
7 6 (3.28%) SCADA
8 5 (2.73%) Enterprise Software
9 4 (2.19%) Cyberattack
9 4 (2.19%) Linux Command Line
10 3 (1.64%) Insider Threat
10 3 (1.64%) Renewable Energy
10 3 (1.64%) Virtual Team
Operating Systems
1 31 (16.94%) Windows
2 29 (15.85%) Linux
3 7 (3.83%) Unix
4 6 (3.28%) Kali Linux
4 6 (3.28%) Windows Server
5 3 (1.64%) VMS
6 2 (1.09%) Android
6 2 (1.09%) Apple iOS
7 1 (0.55%) Debian
7 1 (0.55%) Ubuntu
7 1 (0.55%) Windows 10
7 1 (0.55%) Windows Server 2016
7 1 (0.55%) Windows Server 2019
Processes & Methodologies
1 97 (53.01%) Cybersecurity
2 68 (37.16%) Incident Response
3 54 (29.51%) SIEM
4 47 (25.68%) Vulnerability Management
5 37 (20.22%) Vulnerability Assessment
6 33 (18.03%) Security Operations
6 33 (18.03%) Vulnerability Scanning
7 32 (17.49%) Information Security
8 31 (16.94%) DevOps
9 30 (16.39%) Problem-Solving
10 27 (14.75%) Application Security
10 27 (14.75%) Technology Transformation
10 27 (14.75%) Vulnerability Remediation
11 26 (14.21%) Threat Modelling
12 25 (13.66%) Red Team
13 24 (13.11%) Security Testing
14 23 (12.57%) CI/CD
14 23 (12.57%) Cloud Security
15 21 (11.48%) ITIL
16 19 (10.38%) SDLC
Programming Languages
1 61 (33.33%) Python
2 42 (22.95%) PowerShell
3 39 (21.31%) Bash
4 16 (8.74%) Go
5 13 (7.10%) SQL
6 7 (3.83%) R
7 6 (3.28%) C
7 6 (3.28%) C++
8 5 (2.73%) C#
8 5 (2.73%) JavaScript
9 2 (1.09%) Perl
10 1 (0.55%) Java
10 1 (0.55%) Kusto Query Language
10 1 (0.55%) Scala
Qualifications
1 48 (26.23%) CISSP
2 42 (22.95%) Degree
3 36 (19.67%) Security Cleared
4 30 (16.39%) SC Cleared
5 29 (15.85%) CREST Certified
6 23 (12.57%) Cisco Certification
6 23 (12.57%) SANS
7 22 (12.02%) OSCP
8 17 (9.29%) CCNA
9 16 (8.74%) CompTIA Security+
9 16 (8.74%) DV Cleared
10 13 (7.10%) CHECK Team Member
10 13 (7.10%) GIAC
11 12 (6.56%) GCIA
12 11 (6.01%) CCNP
13 10 (5.46%) CISA
14 9 (4.92%) CEH
15 8 (4.37%) CHECK Team Leader
15 8 (4.37%) Computer Science Degree
15 8 (4.37%) GCIH
Quality Assurance & Compliance
1 72 (39.34%) ISO/IEC 27001
2 54 (29.51%) NIST
3 30 (16.39%) Cyber Essentials
4 27 (14.75%) Accessibility
5 17 (9.29%) GDPR
6 8 (4.37%) NCSC
7 5 (2.73%) NIST 800
8 4 (2.19%) GRC
8 4 (2.19%) PCI DSS
8 4 (2.19%) QA
9 3 (1.64%) Actionable Recommendations
9 3 (1.64%) ITGC
9 3 (1.64%) RMADS
10 2 (1.09%) Cyber Essentials PLUS
10 2 (1.09%) ISO/IEC 27005
11 1 (0.55%) COBIT
11 1 (0.55%) GxP
11 1 (0.55%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
11 1 (0.55%) Sarbanes-Oxley
11 1 (0.55%) SOC 2
System Software
1 15 (8.20%) Virtual Machines
2 13 (7.10%) Active Directory
3 6 (3.28%) VMware Infrastructure
4 4 (2.19%) VMware ESXi
5 3 (1.64%) Firmware
5 3 (1.64%) Hyper-V
6 2 (1.09%) EMC RecoverPoint
6 2 (1.09%) pfSense
6 2 (1.09%) Squid
7 1 (0.55%) Docker
7 1 (0.55%) vSphere
Systems Management
1 15 (8.20%) Nessus
1 15 (8.20%) Nmap
2 8 (4.37%) QRadar
3 6 (3.28%) Single Sign-On
4 5 (2.73%) Microsoft Intune
5 4 (2.19%) Kubernetes
6 3 (1.64%) ArcSight ESM
6 3 (1.64%) Proxmox
7 2 (1.09%) Cisco CUCM
7 2 (1.09%) Terraform
7 2 (1.09%) VxRail
8 1 (0.55%) Ansible
8 1 (0.55%) CASB
8 1 (0.55%) Jamf Pro
8 1 (0.55%) Kibana
8 1 (0.55%) Progress Chef
8 1 (0.55%) SCCM
8 1 (0.55%) ZENworks
Vendors
1 56 (30.60%) Microsoft
2 17 (9.29%) Tenable
3 15 (8.20%) ServiceNow
4 14 (7.65%) Cisco
5 11 (6.01%) Splunk
6 8 (4.37%) VMware
7 7 (3.83%) Oracle
8 6 (3.28%) Fortinet
9 5 (2.73%) Palo Alto
10 4 (2.19%) CheckPoint
10 4 (2.19%) Sophos
10 4 (2.19%) Zscaler
11 3 (1.64%) ArcSight
11 3 (1.64%) CyberArk
11 3 (1.64%) IBM
11 3 (1.64%) LogLogic
11 3 (1.64%) LogRhythm
11 3 (1.64%) McAfee
11 3 (1.64%) Qualys
12 2 (1.09%) Meraki