Application Security Contracts

Application Security (AppSec)
UK

The following table provides summary statistics for contract job vacancies with a requirement for Application Security skills. Included is a benchmarking guide to the contractor rates offered in vacancies that have cited Application Security over the 6 months to 29 April 2024 with a comparison to the same period in the previous 2 years.

6 months to
29 Apr 2024
Same period 2023 Same period 2022
Rank 355 282 350
Rank change year-on-year -73 +68 +17
Contract jobs citing Application Security 255 564 678
As % of all contract jobs advertised in the UK 0.58% 0.94% 0.76%
As % of the Processes & Methodologies category 0.68% 1.05% 0.84%
Number of daily rates quoted 157 407 486
10th Percentile £483 £481 £427
25th Percentile £540 £540 £513
Median daily rate (50th Percentile) £600 £640 £600
Median % change year-on-year -6.25% +6.67% +9.09%
75th Percentile £689 £750 £688
90th Percentile £775 £838 £800
UK excluding London median daily rate £634 £602 £575
% change year-on-year +5.36% +4.61% +8.90%
Number of hourly rates quoted 0 2 2
10th Percentile - £40.63 £41.00
25th Percentile - £49.06 £42.50
Median hourly rate - £66.25 £45.00
Median % change year-on-year - +47.22% +46.34%
75th Percentile - £86.56 £47.50
90th Percentile - £96.88 £49.00
UK excluding London median hourly rate - - -

All Process and Methodology Skills
UK

Application Security is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all contract job vacancies with a requirement for process or methodology skills.

Contract vacancies with a requirement for process or methodology skills 37,621 53,662 80,392
As % of all contract IT jobs advertised in the UK 86.30% 89.91% 90.59%
Number of daily rates quoted 24,254 37,244 56,449
10th Percentile £300 £325 £340
25th Percentile £413 £438 £425
Median daily rate (50th Percentile) £525 £550 £525
Median % change year-on-year -4.55% +4.76% +7.69%
75th Percentile £638 £650 £638
90th Percentile £750 £750 £738
UK excluding London median daily rate £500 £500 £475
% change year-on-year - +5.26% +9.20%
Number of hourly rates quoted 2,437 1,746 1,925
10th Percentile £12.75 £11.00 £12.50
25th Percentile £16.00 £16.25 £15.25
Median hourly rate £35.50 £37.30 £25.00
Median % change year-on-year -4.83% +49.20% -
75th Percentile £59.95 £65.00 £49.25
90th Percentile £72.50 £75.00 £64.32
UK excluding London median hourly rate £36.50 £36.00 £20.00
% change year-on-year +1.39% +80.00% -7.24%

Application Security
Job Vacancy Trend

Job postings citing Application Security as a proportion of all IT jobs advertised.

Job vacancy trend for Application Security in the UK

Application Security
Contractor Daily Rate Trend

3-month moving average daily rate quoted in jobs citing Application Security.

Daily rate trend for Application Security in the UK

Application Security
Daily Rate Histogram

Daily rate distribution for jobs citing Application Security over the 6 months to 29 April 2024.

Daily rate histogram for Application Security in the UK

Application Security
Contractor Hourly Rate Trend

3-month moving average hourly rates quoted in jobs citing Application Security.

Hourly rate trend for Application Security in the UK

Application Security
Top 16 Contract Locations

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing Application Security within the UK over the 6 months to 29 April 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Jobs
England -58 210 £600 -11.11% 103
Work from Home +16 123 £600 -9.98% 67
UK excluding London +39 108 £634 +5.36% 49
London -67 108 £600 -14.29% 46
South East +43 58 £513 -26.79% 17
North of England +17 26 £650 +4.00% 15
Yorkshire +24 12 £615 +6.96% 7
North West +18 12 £676 +8.16% 5
Scotland +36 9 £623 +24.50%
Midlands -8 8 £650 +13.04% 7
West Midlands -1 7 £650 +11.11% 7
South West +13 5 £400 -38.46% 6
North East +13 2 £625 -26.23% 3
Wales +11 2 £666 +40.26% 1
East of England +8 2 £850 +21.43% 5
East Midlands +20 1 £567 +8.00%

Application Security
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 3 (1.18%) Microsoft Exchange
2 2 (0.78%) SharePoint
3 1 (0.39%) Confluence
3 1 (0.39%) IBM Notes
3 1 (0.39%) nginx
3 1 (0.39%) SAS
Applications
1 12 (4.71%) Microsoft Office
2 5 (1.96%) Microsoft Project
Business Applications
1 1 (0.39%) Oracle EBS
1 1 (0.39%) SAP S/4HANA
Cloud Services
1 64 (25.10%) Azure
2 61 (23.92%) AWS
3 51 (20.00%) SaaS
4 45 (17.65%) PaaS
5 44 (17.25%) IaaS
6 35 (13.73%) GCP
7 21 (8.24%) Serverless
8 15 (5.88%) AWS CloudFormation
9 10 (3.92%) Entra ID
10 9 (3.53%) GitHub
11 8 (3.14%) Azure DevOps
12 7 (2.75%) OpenShift
13 6 (2.35%) Amazon EKS
13 6 (2.35%) Azure API Management
13 6 (2.35%) Azure Key Vault
13 6 (2.35%) Azure Monitor
13 6 (2.35%) Virtual Private Cloud
14 5 (1.96%) Azure Data Factory
14 5 (1.96%) Azure Functions
14 5 (1.96%) Azure Logic Apps
Communications & Networking
1 36 (14.12%) Firewall
2 31 (12.16%) 5G
2 31 (12.16%) Broadband
3 27 (10.59%) Network Security
4 10 (3.92%) DNS
4 10 (3.92%) Wireless
5 8 (3.14%) HTTPS
6 6 (2.35%) Intrusion Detection
6 6 (2.35%) VPN
7 5 (1.96%) DHCP
7 5 (1.96%) SD-WAN
7 5 (1.96%) WAN
8 4 (1.57%) Cisco ISE
8 4 (1.57%) IPv4
9 3 (1.18%) NGFW
10 2 (0.78%) HTTP
10 2 (0.78%) Internet
10 2 (0.78%) TCP/IP
11 1 (0.39%) FTP
11 1 (0.39%) Kerberos
Database & Business Intelligence
1 14 (5.49%) SQL Server
2 8 (3.14%) MySQL
3 5 (1.96%) Azure SQL Database
4 4 (1.57%) Metadata
4 4 (1.57%) RDBMS
4 4 (1.57%) Relational Database
5 3 (1.18%) Amazon Athena
5 3 (1.18%) Data Warehouse
5 3 (1.18%) NoSQL
5 3 (1.18%) SQL Server Integration Services
6 2 (0.78%) Data Vault
7 1 (0.39%) Data Lake
7 1 (0.39%) DB2
7 1 (0.39%) Oracle Reports
7 1 (0.39%) SAP HANA
Development Applications
1 12 (4.71%) Jenkins
2 11 (4.31%) Git
3 9 (3.53%) Burp Suite
3 9 (3.53%) GitLab
3 9 (3.53%) Sonatype Nexus
4 8 (3.14%) Robot Framework
5 7 (2.75%) JIRA
5 7 (2.75%) Visual Studio
6 6 (2.35%) Gradle
6 6 (2.35%) Maven
7 4 (1.57%) Browser DevTools
8 3 (1.18%) SonarQube
9 2 (0.78%) Appium
9 2 (0.78%) AppScan
9 2 (0.78%) git-flow
9 2 (0.78%) Subversion
9 2 (0.78%) XCTest
9 2 (0.78%) XCUITest
10 1 (0.39%) MSI
10 1 (0.39%) Selenium
General
1 43 (16.86%) Finance
2 38 (14.90%) Social Skills
3 31 (12.16%) Law
3 31 (12.16%) Organisational Skills
4 21 (8.24%) Analytical Skills
5 20 (7.84%) Banking
6 16 (6.27%) Public Sector
7 15 (5.88%) Documentation Skills
8 7 (2.75%) Retail
9 5 (1.96%) Legal
10 4 (1.57%) Automotive
10 4 (1.57%) Electronics
10 4 (1.57%) Presentation Skills
11 3 (1.18%) Financial Institution
11 3 (1.18%) Telecoms
12 2 (0.78%) Publishing
13 1 (0.39%) Arabic Language
13 1 (0.39%) Back Office
13 1 (0.39%) Health Technology
13 1 (0.39%) Retail Banking
Job Titles
1 70 (27.45%) Architect
2 43 (16.86%) Security Architect
3 40 (15.69%) Penetration Tester
3 40 (15.69%) Tester
4 34 (13.33%) Consultant
5 33 (12.94%) Security Consultant
5 33 (12.94%) Security Specialist
6 31 (12.16%) Security Penetration Tester
6 31 (12.16%) Security Tester
6 31 (12.16%) Testing Specialist
7 29 (11.37%) Security Engineer
8 22 (8.63%) Solutions Architect
9 21 (8.24%) Senior
10 20 (7.84%) Applications Engineer
11 13 (5.10%) Analyst
11 13 (5.10%) Cloud Engineer
12 12 (4.71%) Cloud Architect
12 12 (4.71%) Senior Architect
13 11 (4.31%) Senior Security Architect
14 10 (3.92%) Security Manager
Libraries, Frameworks & Software Standards
1 31 (12.16%) Web Services
2 24 (9.41%) SailPoint
3 11 (4.31%) OAuth
4 8 (3.14%) SAML
5 6 (2.35%) CSS
5 6 (2.35%) OpenID
6 5 (1.96%) .NET
6 5 (1.96%) ARM Templates
6 5 (1.96%) HTML
6 5 (1.96%) OAuth2
6 5 (1.96%) REST
7 4 (1.57%) FIX Protocol
7 4 (1.57%) HTML5
7 4 (1.57%) JSON
7 4 (1.57%) RESTful
8 3 (1.18%) Elastic Stack
8 3 (1.18%) SOAP
8 3 (1.18%) XML
9 2 (0.78%) SwiftUI
9 2 (0.78%) UIKit
Miscellaneous
1 56 (21.96%) Mobile App
2 18 (7.06%) Data Centre
3 16 (6.27%) PKI
4 15 (5.88%) Cloud Native
4 15 (5.88%) Security Posture
5 14 (5.49%) IoT
6 8 (3.14%) Operational Technology
7 6 (2.35%) Cyber Threat
7 6 (2.35%) Management Information System
7 6 (2.35%) Public Cloud
8 5 (1.96%) Security Operations Centre
9 3 (1.18%) Cyberattack
10 2 (0.78%) Cyber Security Posture
10 2 (0.78%) Data Protection Act
10 2 (0.78%) Hedge funds
10 2 (0.78%) Hybrid Cloud
10 2 (0.78%) W3C
11 1 (0.39%) Product Ownership
11 1 (0.39%) Team-Oriented Environment
11 1 (0.39%) Web3
Operating Systems
1 44 (17.25%) Windows
2 30 (11.76%) Linux
3 15 (5.88%) Windows Server
4 14 (5.49%) Unix
5 12 (4.71%) Windows Server 2019
6 4 (1.57%) CentOS
6 4 (1.57%) Windows Server 2016
7 2 (0.78%) Android
7 2 (0.78%) Apple iOS
8 1 (0.39%) Windows 10
Processes & Methodologies
1 98 (38.43%) Cybersecurity
2 81 (31.76%) Security Testing
3 78 (30.59%) Cloud Security
4 69 (27.06%) Penetration Testing
5 68 (26.67%) CI/CD
6 66 (25.88%) OWASP
7 61 (23.92%) DevOps
8 46 (18.04%) Stakeholder Management
9 45 (17.65%) Information Security
10 43 (16.86%) Deployment Automation
10 43 (16.86%) Identity Access Management
11 42 (16.47%) Vulnerability Management
12 41 (16.08%) DevSecOps
13 40 (15.69%) Agile
14 38 (14.90%) Static Application Security Testing
15 36 (14.12%) SDLC
16 35 (13.73%) Security Architecture
17 34 (13.33%) Infrastructure as Code
18 31 (12.16%) MITRE ATT&CK
18 31 (12.16%) Threat Modelling
Programming Languages
1 37 (14.51%) Python
2 27 (10.59%) PowerShell
3 14 (5.49%) JavaScript
4 13 (5.10%) C++
4 13 (5.10%) Shell Script
5 12 (4.71%) Bash
5 12 (4.71%) SQL
6 8 (3.14%) Ruby
7 7 (2.75%) C#
8 6 (2.35%) Groovy
8 6 (2.35%) Java
8 6 (2.35%) PHP
9 4 (1.57%) C
9 4 (1.57%) Go
9 4 (1.57%) T-SQL
9 4 (1.57%) VBScript
10 3 (1.18%) Perl
11 2 (0.78%) Swift
12 1 (0.39%) PL/SQL
12 1 (0.39%) Scala
Qualifications
1 56 (21.96%) Security Cleared
2 43 (16.86%) OSCP
3 41 (16.08%) GIAC
4 40 (15.69%) CREST Certified
5 39 (15.29%) GPEN
6 35 (13.73%) SANS
7 22 (8.63%) CISSP
8 17 (6.67%) SC Cleared
9 16 (6.27%) CISM
9 16 (6.27%) Degree
10 11 (4.31%) CEH
11 8 (3.14%) AWS Certification
11 8 (3.14%) ISACA
12 7 (2.75%) CISA
12 7 (2.75%) Master's Degree
12 7 (2.75%) MBA
13 5 (1.96%) DV Cleared
14 3 (1.18%) Azure Certification
14 3 (1.18%) Cisco Certification
14 3 (1.18%) CRISC
Quality Assurance & Compliance
1 45 (17.65%) NIST
2 42 (16.47%) GDPR
3 34 (13.33%) PCI DSS
4 32 (12.55%) NCSC
5 11 (4.31%) COBIT
5 11 (4.31%) ISO/IEC 27001
6 8 (3.14%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
7 7 (2.75%) RMADS
8 6 (2.35%) QA
9 4 (1.57%) Accessibility
10 2 (0.78%) Automotive SPICE
10 2 (0.78%) AUTOSAR
11 1 (0.39%) GLBA
11 1 (0.39%) GRC
11 1 (0.39%) HIPAA
11 1 (0.39%) HMG Security Policy Framework
11 1 (0.39%) ISO 31000
11 1 (0.39%) ISO 9001
11 1 (0.39%) Sarbanes-Oxley
11 1 (0.39%) WCAG
System Software
1 26 (10.20%) Active Directory
2 17 (6.67%) Docker
3 8 (3.14%) VMware Infrastructure
4 2 (0.78%) Virtual Desktop
5 1 (0.39%) IAG
5 1 (0.39%) Virtual Machines
Systems Management
1 38 (14.90%) Terraform
2 24 (9.41%) Ansible
3 16 (6.27%) Kubernetes
4 4 (1.57%) Nessus
5 3 (1.18%) Grafana
5 3 (1.18%) Graylog
5 3 (1.18%) HP Fortify
5 3 (1.18%) Nagios
5 3 (1.18%) Prometheus
5 3 (1.18%) Puppet
5 3 (1.18%) Single Sign-On
6 2 (0.78%) Progress Chef
6 2 (0.78%) SCCM
6 2 (0.78%) Thomson Reuters DACS
6 2 (0.78%) WebInspect
7 1 (0.39%) CASB
7 1 (0.39%) McAfee ePO
7 1 (0.39%) Nmap
7 1 (0.39%) Trend Micro Deep Security
7 1 (0.39%) WMI
Vendors
1 31 (12.16%) Virgin Media
2 27 (10.59%) Microsoft
3 23 (9.02%) CyberArk
4 22 (8.63%) BeyondTrust
4 22 (8.63%) ServiceNow
5 9 (3.53%) Splunk
5 9 (3.53%) VMware
6 7 (2.75%) Cisco
7 6 (2.35%) Checkmarx
7 6 (2.35%) Veracode
8 5 (1.96%) F5
8 5 (1.96%) Red Hat
9 4 (1.57%) CheckPoint
10 3 (1.18%) Oracle
10 3 (1.18%) Qualys
10 3 (1.18%) SAP
10 3 (1.18%) Tufin
10 3 (1.18%) Zscaler
11 2 (0.78%) CrowdStrike
11 2 (0.78%) Okta