Static Application Security Testing Contracts

Static Application Security Testing (SAST)
UK

The following table provides summary statistics for contract job vacancies with a requirement for Static Application Security Testing skills. Included is a benchmarking guide to the contractor rates offered in vacancies that have cited Static Application Security Testing over the 6 months to 15 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
15 May 2024
Same period 2023 Same period 2022
Rank 471 612 779
Rank change year-on-year +141 +167 -123
Contract jobs citing Static Application Security Testing 102 88 78
As % of all contract jobs advertised in the UK 0.24% 0.15% 0.089%
As % of the Processes & Methodologies category 0.28% 0.17% 0.098%
Number of daily rates quoted 83 60 55
10th Percentile £478 £461 £463
25th Percentile £600 £541 £556
Median daily rate (50th Percentile) £650 £625 £650
Median % change year-on-year +4.00% -3.85% +23.81%
75th Percentile £700 £738 £700
90th Percentile £823 £800 £738
UK excluding London median daily rate £613 £625 £427
% change year-on-year -2.00% +46.37% +5.43%
Number of hourly rates quoted 0 0 2
10th Percentile - - £41.00
25th Percentile - - £42.50
Median hourly rate - - £45.00
75th Percentile - - £47.50
90th Percentile - - £49.00
UK excluding London median hourly rate - - -

All Process and Methodology Skills
UK

Static Application Security Testing is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all contract job vacancies with a requirement for process or methodology skills.

Contract vacancies with a requirement for process or methodology skills 36,687 51,295 79,236
As % of all contract IT jobs advertised in the UK 86.22% 89.83% 90.60%
Number of daily rates quoted 23,611 35,552 55,630
10th Percentile £300 £325 £343
25th Percentile £413 £438 £430
Median daily rate (50th Percentile) £525 £550 £530
Median % change year-on-year -4.55% +3.77% +8.16%
75th Percentile £638 £650 £638
90th Percentile £750 £750 £738
UK excluding London median daily rate £500 £500 £476
% change year-on-year - +5.04% +8.51%
Number of hourly rates quoted 2,428 1,693 1,906
10th Percentile £12.75 £10.77 £12.50
25th Percentile £16.00 £16.13 £15.63
Median hourly rate £36.05 £36.00 £25.68
Median % change year-on-year +0.13% +40.19% +4.82%
75th Percentile £60.00 £65.00 £49.52
90th Percentile £72.50 £75.00 £65.00
UK excluding London median hourly rate £37.50 £35.00 £20.00
% change year-on-year +7.14% +75.00% -6.98%

Static Application Security Testing
Job Vacancy Trend

Job postings citing Static Application Security Testing as a proportion of all IT jobs advertised.

Job vacancy trend for Static Application Security Testing in the UK

Static Application Security Testing
Contractor Daily Rate Trend

3-month moving average daily rate quoted in jobs citing Static Application Security Testing.

Daily rate trend for Static Application Security Testing in the UK

Static Application Security Testing
Daily Rate Histogram

Daily rate distribution for jobs citing Static Application Security Testing over the 6 months to 15 May 2024.

Daily rate histogram for Static Application Security Testing in the UK

Static Application Security Testing
Contractor Hourly Rate Trend

3-month moving average hourly rates quoted in jobs citing Static Application Security Testing.

Hourly rate trend for Static Application Security Testing in the UK

Static Application Security Testing
Top 11 Contract Locations

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing Static Application Security Testing within the UK over the 6 months to 15 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Jobs
England +108 82 £650 +4.00% 18
London +118 68 £650 +4.00% 8
Work from Home +121 36 £650 - 12
UK excluding London +52 18 £613 -2.00% 9
South West +23 7 £600 -4.00% 3
Scotland - 6 £488 -
South East +21 2 £650 -13.33% 3
North of England +19 2 £663 +32.50% 2
North West +19 2 £663 +17.78% 1
Midlands +24 1 £750 +3.45%
West Midlands +11 1 £750 +3.45%

Static Application Security Testing
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 2 (1.96%) Confluence
2 1 (0.98%) Microsoft Exchange
2 1 (0.98%) SAS
Applications
1 3 (2.94%) Microsoft Office
1 3 (2.94%) Microsoft Project
Business Applications
1 4 (3.92%) Dynamics GP
Cloud Services
1 34 (33.33%) AWS
1 34 (33.33%) Azure
2 12 (11.76%) Azure DevOps
2 12 (11.76%) GCP
2 12 (11.76%) GitHub
2 12 (11.76%) GitHub Actions
2 12 (11.76%) PaaS
2 12 (11.76%) SaaS
3 10 (9.80%) IaaS
4 5 (4.90%) Microsoft 365
4 5 (4.90%) Power Platform
5 4 (3.92%) Miro
6 3 (2.94%) Azure AKS
7 2 (1.96%) Amazon EKS
7 2 (1.96%) Amazon S3
7 2 (1.96%) Azure Sentinel
7 2 (1.96%) OpenShift
8 1 (0.98%) Amazon EC2
8 1 (0.98%) CloudFront
8 1 (0.98%) Route 53
Communications & Networking
1 7 (6.86%) Firewall
2 4 (3.92%) SSL
3 1 (0.98%) HTTP
3 1 (0.98%) HTTPS
3 1 (0.98%) Intrusion Detection
3 1 (0.98%) Kerberos
3 1 (0.98%) TCP/IP
3 1 (0.98%) Wi-Fi
Database & Business Intelligence
1 4 (3.92%) SQL Server
2 1 (0.98%) Amazon RDS
2 1 (0.98%) Data Lake
2 1 (0.98%) DynamoDB
2 1 (0.98%) MySQL
Development Applications
1 12 (11.76%) SonarQube
2 10 (9.80%) Jenkins
3 8 (7.84%) GitLab
4 4 (3.92%) JIRA
5 3 (2.94%) Snyk
6 2 (1.96%) Burp Suite
7 1 (0.98%) Selenium
General
1 48 (47.06%) Finance
2 12 (11.76%) Financial Institution
3 11 (10.78%) Banking
4 9 (8.82%) Social Skills
5 8 (7.84%) Public Sector
6 4 (3.92%) Front Office
6 4 (3.92%) Retail
7 3 (2.94%) Documentation Skills
8 1 (0.98%) Automotive
8 1 (0.98%) Health Technology
Job Titles
1 25 (24.51%) Project Manager
1 25 (24.51%) Security Manager
1 25 (24.51%) Security Project Manager
2 18 (17.65%) Security Engineer
3 15 (14.71%) Architect
3 15 (14.71%) Security Architect
4 13 (12.75%) Cybersecurity Manager
4 13 (12.75%) Project Manager - Cybersecurity
5 12 (11.76%) Applications Architect
6 10 (9.80%) Consultant
6 10 (9.80%) IT Manager
6 10 (9.80%) IT Project Manager
6 10 (9.80%) IT Security Manager
6 10 (9.80%) IT Security Project Manager
7 9 (8.82%) CISSP Manager
7 9 (8.82%) Security Consultant
7 9 (8.82%) Senior
8 8 (7.84%) Contracts Manager
8 8 (7.84%) IT Services Manager
8 8 (7.84%) Service Security Manager
Libraries, Frameworks & Software Standards
1 10 (9.80%) ARM Templates
1 10 (9.80%) Azure Blueprints
2 4 (3.92%) GraphQL
2 4 (3.92%) Java EE
2 4 (3.92%) Kafka
2 4 (3.92%) REST
2 4 (3.92%) SOAP
2 4 (3.92%) Spring
2 4 (3.92%) Spring Boot
3 1 (0.98%) AWS CDK
3 1 (0.98%) JSON
3 1 (0.98%) RESTful
3 1 (0.98%) YAML
Miscellaneous
1 23 (22.55%) Management Information System
2 11 (10.78%) Onboarding
3 7 (6.86%) PKI
3 7 (6.86%) Security Posture
4 4 (3.92%) Cyber Threat
5 3 (2.94%) Cyber Kill Chain
5 3 (2.94%) Foreign Exchange (FX)
5 3 (2.94%) PMI
5 3 (2.94%) Public Cloud
6 2 (1.96%) Cloud Native
7 1 (0.98%) Cyber Security Posture
7 1 (0.98%) Cyberattack
7 1 (0.98%) Data Protection Act
7 1 (0.98%) IoT
Operating Systems
1 11 (10.78%) Windows
2 6 (5.88%) Linux
3 5 (4.90%) Windows Server
4 3 (2.94%) zOS
5 1 (0.98%) Unix
Processes & Methodologies
1 89 (87.25%) Dynamic Application Security Testing
2 44 (43.14%) Application Security
2 44 (43.14%) Cybersecurity
3 38 (37.25%) Security Testing
4 37 (36.27%) DevOps
5 32 (31.37%) Threat Modelling
6 31 (30.39%) DevSecOps
6 31 (30.39%) Vulnerability Management
7 30 (29.41%) Project Management
8 29 (28.43%) CI/CD
9 22 (21.57%) Test Automation
10 20 (19.61%) Agile
10 20 (19.61%) Information Security
10 20 (19.61%) Software Engineering
11 19 (18.63%) Interactive Application Security Testing
12 15 (14.71%) Deployment Automation
12 15 (14.71%) Project Delivery
12 15 (14.71%) Security Operations
13 14 (13.73%) Containerisation
13 14 (13.73%) SDLC
Programming Languages
1 10 (9.80%) Java
2 6 (5.88%) C++
3 5 (4.90%) Bash
3 5 (4.90%) PowerShell
4 4 (3.92%) C#
5 3 (2.94%) Python
6 2 (1.96%) Bicep
7 1 (0.98%) SQL
Qualifications
1 22 (21.57%) CISSP
2 20 (19.61%) CISM
3 16 (15.69%) CISA
4 15 (14.71%) SC Cleared
4 15 (14.71%) Security Cleared
5 11 (10.78%) BPSS Clearance
6 5 (4.90%) Degree
7 4 (3.92%) ITIL Certification
7 4 (3.92%) MCSE
7 4 (3.92%) Microsoft Certification
8 3 (2.94%) CRISC
8 3 (2.94%) PMI Certification
9 1 (0.98%) AWS Certification
9 1 (0.98%) CCNP
9 1 (0.98%) CEH
9 1 (0.98%) Cisco Certification
9 1 (0.98%) GCIA
9 1 (0.98%) GCIH
9 1 (0.98%) GIAC
9 1 (0.98%) GSEC
Quality Assurance & Compliance
1 10 (9.80%) NCSC
2 8 (7.84%) ISO/IEC 27001
2 8 (7.84%) NIST
3 5 (4.90%) QA
4 3 (2.94%) Disclosure Scotland
4 3 (2.94%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
5 2 (1.96%) GDPR
6 1 (0.98%) HIPAA
6 1 (0.98%) PCI DSS
System Software
1 15 (14.71%) Docker
2 7 (6.86%) Hyper-V
3 5 (4.90%) Active Directory
3 5 (4.90%) Virtual Machines
Systems Management
1 25 (24.51%) Terraform
2 24 (23.53%) Kubernetes
3 15 (14.71%) Ansible
4 5 (4.90%) SCCM
5 2 (1.96%) Argo
6 1 (0.98%) HP Fortify
6 1 (0.98%) Microsoft Intune
6 1 (0.98%) Nessus
6 1 (0.98%) Nmap
6 1 (0.98%) Single Sign-On
6 1 (0.98%) Trend Micro Deep Security
Vendors
1 6 (5.88%) Microsoft
2 5 (4.90%) Qualys
2 5 (4.90%) Splunk
3 4 (3.92%) VMware
4 3 (2.94%) F5
5 2 (1.96%) Checkmarx
5 2 (1.96%) Veracode
6 1 (0.98%) ArcSight
6 1 (0.98%) Atlassian
6 1 (0.98%) CyberArk
6 1 (0.98%) Okta
6 1 (0.98%) Red Hat
6 1 (0.98%) SAP
6 1 (0.98%) Trend Micro