Period
to 16 December 2018

The following table provides summary statistics for permanent job vacancies with a requirement for Vulnerability Scanning skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Vulnerability Scanning over the 6 months to 16 December 2018 with a comparison to the same period in the previous 2 years.

Vulnerability Scanning
UK
6 months to
16 Dec 2018
Same period 2017 Same period 2016
Rank 670 759 690
Rank change year-on-year +89 -69 +227
Permanent jobs citing Vulnerability Scanning 493 455 581
As % of all permanent IT jobs advertised in the UK 0.31% 0.26% 0.31%
As % of the Processes & Methodologies category 0.34% 0.28% 0.34%
Number of salaries quoted 308 388 435
UK median annual salary £60,000 £55,000 £60,000
Median salary % change year-on-year +9.09% -8.33% +20.00%
10th Percentile £40,112 £38,500 £34,250
90th Percentile £85,000 £80,000 £82,500
UK excluding London median annual salary £50,000 £47,500 £45,000
% change year-on-year +5.26% +5.56% -

Vulnerability Scanning is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

All Process and Methodology Skills
UK
Permanent vacancies with a requirement for process or methodology skills 144,874 163,724 169,145
As % of all permanent IT jobs advertised in the UK 91.60% 91.89% 91.31%
Number of salaries quoted 114,516 130,082 140,302
UK median annual salary £52,500 £50,000 £48,500
Median salary % change year-on-year +5.00% +3.09% +2.11%
10th Percentile £29,750 £28,500 £27,750
90th Percentile £85,000 £80,000 £78,750
UK excluding London median annual salary £45,000 £43,500 £42,500
% change year-on-year +3.45% +2.35% -

Vulnerability Scanning
Job Vacancy Trend

Job postings citing Vulnerability Scanning as a percentage of all IT jobs advertised.

Job vacancy trend for Vulnerability Scanning in the UK

Vulnerability Scanning
Salary Trend

This chart provides the 3-month moving average for salaries quoted in permanent IT jobs citing Vulnerability Scanning.

Salary trend for Vulnerability Scanning in the UK

Vulnerability Scanning
Salary Histogram

The salary distribution of IT jobs citing Vulnerability Scanning over the 6 months to 16 December 2018.

Salary histogram for Vulnerability Scanning in the UK

Vulnerability Scanning
Top 14 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Vulnerability Scanning within the UK over the 6 months to 16 December 2018. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Job
Vacancies
England +80 463 £60,000 +9.09% 57
London +17 261 £65,000 +13.04% 24
UK excluding London +112 217 £50,000 +5.26% 37
East of England +92 75 £60,000 +9.09% 4
South East -7 51 £50,000 -4.76% 8
North of England +27 38 £51,500 +14.44% 13
Midlands +21 33 £40,000 -20.00% 5
North West +13 22 £48,000 +6.67% 9
West Midlands +34 18 £40,000 -23.81% 1
Yorkshire +30 16 £60,000 +38.73% 2
East Midlands +30 15 £37,750 -2.58% 4
Wales - 10 £45,000 - 3
South West +13 5 £55,000 +37.50% 3
Northern Ireland - 5 £62,500 -

For the 6 months to 16 December 2018, IT jobs citing Vulnerability Scanning also mentioned the following skills in order of popularity. The figures indicate the absolute number co-occurrences and as a proportion of all permanent job ads with a requirement for Vulnerability Scanning.

1 265 (53.75%) Information Security
2 259 (52.54%) Cybersecurity
3 213 (43.20%) CISSP
4 191 (38.74%) SIEM
5 189 (38.34%) Firewall
6 172 (34.89%) ISO/IEC 27001
7 155 (31.44%) Penetration Testing
8 154 (31.24%) Windows
9 134 (27.18%) Vulnerability Management
10 111 (22.52%) Linux
11 106 (21.50%) Network Security
12 99 (20.08%) Security Operations
13 97 (19.68%) CISM
14 85 (17.24%) TCP/IP
15 77 (15.62%) Stakeholder Management
16 73 (14.81%) Finance
16 73 (14.81%) Management Information System
16 73 (14.81%) ITIL
16 73 (14.81%) Degree
17 72 (14.60%) Security Testing
18 71 (14.40%) Microsoft Azure
19 66 (13.39%) Amazon AWS
19 66 (13.39%) Security Architecture
19 66 (13.39%) Splunk
20 63 (12.78%) PCI DSS
21 59 (11.97%) Continuous Improvement
21 59 (11.97%) Internet
21 59 (11.97%) Intrusion Detection
22 58 (11.76%) Risk Management
23 57 (11.56%) Qualys

Vulnerability Scanning
Co-occurring IT Skills by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same job type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 7 (1.42%) Apache
2 5 (1.01%) Confluence
3 4 (0.81%) IIS
4 3 (0.61%) Apache Spark
4 3 (0.61%) MS Exchange
4 3 (0.61%) Site Server
5 2 (0.41%) Elasticsearch
5 2 (0.41%) nginx
5 2 (0.41%) SharePoint
Applications
1 8 (1.62%) Microsoft Office
Cloud Services
1 71 (14.40%) Microsoft Azure
2 66 (13.39%) Amazon AWS
3 12 (2.43%) Office 365
4 9 (1.83%) Google Cloud Platform
5 8 (1.62%) SaaS
6 7 (1.42%) Cloud Computing
7 5 (1.01%) AWS CloudFormation
7 5 (1.01%) IaaS
7 5 (1.01%) PaaS
8 2 (0.41%) Amazon EC2
8 2 (0.41%) Datadog
9 1 (0.20%) Mimecast
Communications & Networking
1 189 (38.34%) Firewall
2 106 (21.50%) Network Security
3 85 (17.24%) TCP/IP
4 59 (11.97%) Internet
4 59 (11.97%) Intrusion Detection
5 48 (9.74%) LAN
6 47 (9.53%) WAN
7 32 (6.49%) SSL
8 31 (6.29%) DNS
9 29 (5.88%) VPN
9 29 (5.88%) Wireless
10 23 (4.67%) SMTP
11 18 (3.65%) Wi-Fi
12 17 (3.45%) HTTP
13 14 (2.84%) DKIM
13 14 (2.84%) DMARC
14 10 (2.03%) DMZ
14 10 (2.03%) IPsec
14 10 (2.03%) SAN
14 10 (2.03%) Wireless Security
Database & Business Intelligence
1 11 (2.23%) SQL Server
2 6 (1.22%) MySQL
2 6 (1.22%) SQL Server 2008
3 5 (1.01%) Big Data
3 5 (1.01%) Blockchain
4 3 (0.61%) GIS
4 3 (0.61%) Hadoop
5 2 (0.41%) Amazon RDS
5 2 (0.41%) Data Warehouse
5 2 (0.41%) MariaDB
5 2 (0.41%) Redis
Development Applications
1 19 (3.85%) Metasploit
2 16 (3.25%) JIRA
3 12 (2.43%) Burp Suite
4 5 (1.01%) Git (software)
4 5 (1.01%) Hudson
4 5 (1.01%) Jenkins
4 5 (1.01%) Subversion
5 4 (0.81%) MSI
5 4 (0.81%) SonarQube
6 3 (0.61%) AppScan
7 2 (0.41%) Selenium
8 1 (0.20%) Ant
8 1 (0.20%) sqlmap
General
1 73 (14.81%) Finance
2 42 (8.52%) Retail
3 26 (5.27%) Banking
4 14 (2.84%) Investment Banking
5 8 (1.62%) Telecoms
6 7 (1.42%) Legal
7 4 (0.81%) Back Office
7 4 (0.81%) Billing
7 4 (0.81%) International Banking
8 3 (0.61%) Financial Institution
9 2 (0.41%) Advertising
9 2 (0.41%) Front Office
9 2 (0.41%) Law
10 1 (0.20%) Marketing
Job Titles
1 169 (34.28%) Security Engineer
2 112 (22.72%) Analyst
3 98 (19.88%) Security Analyst
4 53 (10.75%) Infrastructure Engineer
5 48 (9.74%) Security Manager
6 46 (9.33%) Cybersecurity Engineer
6 46 (9.33%) Infrastructure Security Engineer
7 44 (8.92%) Consultant
8 42 (8.52%) Security Consultant
9 41 (8.32%) Cybersecurity Analyst
10 37 (7.51%) Information Security Engineer
11 29 (5.88%) Information Manager
11 29 (5.88%) Information Security Manager
12 26 (5.27%) Cybersecurity Consultant
13 24 (4.87%) IT Engineer
13 24 (4.87%) IT Security Engineer
13 24 (4.87%) Senior Analyst
14 21 (4.26%) Security Specialist
15 20 (4.06%) Senior Security Analyst
16 17 (3.45%) IT Manager
Libraries, Frameworks & Software Standards
1 16 (3.25%) .NET
2 9 (1.83%) SOAP
3 8 (1.62%) Elastic Stack
4 6 (1.22%) CSS
4 6 (1.22%) HTML
4 6 (1.22%) JSON
4 6 (1.22%) SAML
5 5 (1.01%) Regular Expression
5 5 (1.01%) REST
6 4 (0.81%) Middleware
6 4 (0.81%) Node.js
7 3 (0.61%) SailPoint
7 3 (0.61%) Web Services
8 2 (0.41%) LEMP Stack
8 2 (0.41%) PHP-FPM
8 2 (0.41%) RabbitMQ
9 1 (0.20%) ASP.NET
9 1 (0.20%) OAuth
9 1 (0.20%) OpenID
9 1 (0.20%) RESTful
Miscellaneous
1 73 (14.81%) Management Information System
2 45 (9.13%) Analytical Skills
3 40 (8.11%) Security Operations Centre
4 24 (4.87%) Data Protection Act
4 24 (4.87%) PKI
5 23 (4.67%) Fintech
5 23 (4.67%) Self-Motivation
6 17 (3.45%) Data Centre
7 15 (3.04%) Mobile App
8 12 (2.43%) Hybrid Cloud
9 11 (2.23%) NHS
10 10 (2.03%) Distributed Denial-of-Service
11 9 (1.83%) Cyberattack
12 8 (1.62%) Cyberthreat
13 7 (1.42%) Cyber Defence
14 6 (1.22%) Analytical Mindset
14 6 (1.22%) iPad
15 5 (1.01%) BYOD
15 5 (1.01%) Enterprise Cloud
15 5 (1.01%) Replication
Operating Systems
1 154 (31.24%) Windows
2 111 (22.52%) Linux
3 49 (9.94%) Windows Server
4 34 (6.90%) Unix
5 21 (4.26%) Red Hat Enterprise Linux
6 20 (4.06%) Debian
7 14 (2.84%) Windows 10
8 9 (1.83%) Kali Linux
9 8 (1.62%) Android
9 8 (1.62%) Windows 7
9 8 (1.62%) Windows Server 2008
10 6 (1.22%) Solaris
10 6 (1.22%) VMS
11 4 (0.81%) Mac OS X
12 2 (0.41%) Apple iOS
12 2 (0.41%) Windows Server 2012
13 1 (0.20%) CentOS
13 1 (0.20%) Mac OS
13 1 (0.20%) Ubuntu
Processes & Methodologies
1 265 (53.75%) Information Security
2 259 (52.54%) Cybersecurity
3 191 (38.74%) SIEM
4 155 (31.44%) Penetration Testing
5 134 (27.18%) Vulnerability Management
6 99 (20.08%) Security Operations
7 77 (15.62%) Stakeholder Management
8 73 (14.81%) ITIL
9 72 (14.60%) Security Testing
10 66 (13.39%) Security Architecture
11 59 (11.97%) Continuous Improvement
12 58 (11.76%) Risk Management
13 57 (11.56%) Infrastructure Engineering
14 54 (10.95%) Agile Software Development
15 48 (9.74%) Ethical Hacking
16 47 (9.53%) OWASP
17 45 (9.13%) Risk Assessment
18 44 (8.92%) Data Protection
19 42 (8.52%) Incident Management
20 40 (8.11%) Security Monitoring
Programming Languages
1 56 (11.36%) PowerShell
2 39 (7.91%) SQL
3 31 (6.29%) Python
4 28 (5.68%) Perl
5 27 (5.48%) Java
6 20 (4.06%) VBScript
7 18 (3.65%) Bash Shell
7 18 (3.65%) C
8 10 (2.03%) C#
8 10 (2.03%) C++
9 8 (1.62%) VB
10 6 (1.22%) JavaScript
11 5 (1.01%) Ruby
12 4 (0.81%) PHP
13 2 (0.41%) VB.NET
14 1 (0.20%) Shell Script
Qualifications
1 213 (43.20%) CISSP
2 97 (19.68%) CISM
3 73 (14.81%) Degree
4 52 (10.55%) GIAC
5 48 (9.74%) CEH
6 38 (7.71%) SANS
7 29 (5.88%) CISA
8 26 (5.27%) Security Cleared
9 24 (4.87%) Computer Science Degree
10 21 (4.26%) Cisco Certification
11 19 (3.85%) CREST Certified
11 19 (3.85%) TOGAF Certification
12 18 (3.65%) GCIA
12 18 (3.65%) GCIH
12 18 (3.65%) Master's Degree
12 18 (3.65%) OSCP
13 15 (3.04%) CESG Certified Professional
13 15 (3.04%) SSCP
14 14 (2.84%) CRISC
14 14 (2.84%) GSEC
Quality Assurance & Compliance
1 172 (34.89%) ISO/IEC 27001
2 63 (12.78%) PCI DSS
3 57 (11.56%) GDPR
4 28 (5.68%) Sarbanes-Oxley
5 23 (4.67%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
6 18 (3.65%) HMG Security Policy Framework
7 16 (3.25%) SAS 70
8 14 (2.84%) Cyber Essentials
9 9 (1.83%) HIPAA
10 8 (1.62%) COBIT
10 8 (1.62%) PMO
11 6 (1.22%) ISAE 3402
12 3 (0.61%) GPG13
13 2 (0.41%) QA
13 2 (0.41%) SLA
System Software
1 44 (8.92%) Active Directory
2 19 (3.85%) Hyper-V
2 19 (3.85%) VMware Infrastructure
3 15 (3.04%) Snort
4 11 (2.23%) vSphere
5 7 (1.42%) ProxySG
6 5 (1.01%) KVM
7 4 (0.81%) BitLocker
8 3 (0.61%) HDFS
8 3 (0.61%) Virtual Machines
9 2 (0.41%) iptables
9 2 (0.41%) LXC
9 2 (0.41%) XenDesktop
10 1 (0.20%) Terminal Services
Systems Management
1 56 (11.36%) Nessus
2 22 (4.46%) QRadar
3 19 (3.85%) SCCM
4 17 (3.45%) OpenVAS
5 14 (2.84%) WSUS
6 9 (1.83%) SCOM
7 8 (1.62%) Nmap
8 7 (1.42%) CSIRT
8 7 (1.42%) Norton AntiVirus
8 7 (1.42%) Puppet
9 5 (1.01%) AirWatch
9 5 (1.01%) Ansible
9 5 (1.01%) Computer Incident Response Team
9 5 (1.01%) Network Intrusion Detection System
9 5 (1.01%) Opscode Chef
10 4 (0.81%) Backup Exec
10 4 (0.81%) Host Intrusion Detection System
10 4 (0.81%) IBM BigFix
10 4 (0.81%) Nagios
11 3 (0.61%) Suricata
Vendors
1 66 (13.39%) Splunk
2 57 (11.56%) Qualys
3 38 (7.71%) Microsoft
4 30 (6.09%) Cisco
5 27 (5.48%) LogRhythm
6 25 (5.07%) CheckPoint
6 25 (5.07%) VMware
7 23 (4.67%) Citrix
8 20 (4.06%) Rapid7
9 19 (3.85%) Sophos
10 18 (3.65%) Palo Alto
11 16 (3.25%) Google
12 15 (3.04%) ArcSight
12 15 (3.04%) Symantec
13 14 (2.84%) AlienVault
14 10 (2.03%) Fortinet
14 10 (2.03%) Red Hat
15 9 (1.83%) F5
16 8 (1.62%) FireEye
16 8 (1.62%) Juniper