MITRE ATT&CK
UK

The following table provides summary statistics for permanent job vacancies with a requirement for MITRE ATT&CK skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited MITRE ATT&CK over the 6 months to 18 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
18 May 2024
Same period 2023 Same period 2022
Rank 753 724 966
Rank change year-on-year -29 +242 -139
Permanent jobs citing MITRE ATT&CK 137 257 279
As % of all permanent jobs advertised in the UK 0.14% 0.26% 0.17%
As % of the Processes & Methodologies category 0.16% 0.27% 0.18%
Number of salaries quoted 105 152 219
10th Percentile £47,000 £40,350 £49,150
25th Percentile £47,500 £55,000 £57,500
Median annual salary (50th Percentile) £65,000 £65,000 £65,000
Median % change year-on-year - - +4.00%
75th Percentile £75,000 £81,875 £82,500
90th Percentile £92,296 £103,750 £100,000
UK excluding London median annual salary £47,000 £60,000 £65,000
% change year-on-year -21.67% -7.69% +4.00%

All Process and Methodology Skills
UK

MITRE ATT&CK is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 85,135 94,784 153,905
As % of all permanent jobs advertised in the UK 85.22% 95.58% 95.76%
Number of salaries quoted 59,872 55,911 82,488
10th Percentile £29,089 £34,000 £33,635
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £61,180 £60,000
Median % change year-on-year -10.10% +1.97% +9.09%
75th Percentile £72,500 £81,250 £80,000
90th Percentile £92,500 £100,000 £96,250
UK excluding London median annual salary £50,000 £55,000 £52,500
% change year-on-year -9.09% +4.76% +9.38%

MITRE ATT&CK
Job Vacancy Trend

Job postings citing MITRE ATT&CK as a proportion of all IT jobs advertised.

Job vacancy trend for MITRE ATT&CK in the UK

MITRE ATT&CK
Salary Trend

3-month moving average salary quoted in jobs citing MITRE ATT&CK.

Salary trend for MITRE ATT&CK in the UK

MITRE ATT&CK
Salary Histogram

Salary distribution for jobs citing MITRE ATT&CK over the 6 months to 18 May 2024.

Salary histogram for MITRE ATT&CK in the UK

MITRE ATT&CK
Top 12 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing MITRE ATT&CK within the UK over the 6 months to 18 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -18 113 £65,000 - 25
Work from Home +64 72 £59,000 -13.24% 6
UK excluding London -33 66 £47,000 -21.67% 12
London +10 61 £68,500 +0.74% 12
South East +10 18 £47,000 -16.44% 6
Scotland -51 18 £47,000 +16.46% 1
North of England +38 17 £47,000 -21.67% 1
North West -8 16 £47,000 -21.67% 1
South West -19 10 £78,750 +95.14% 1
Midlands -16 3 £70,000 +2.94% 2
West Midlands +4 2 £70,000 +2.94% 2
Yorkshire +82 1 £62,500 +4.17%

MITRE ATT&CK
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 6 (4.38%) Microsoft Exchange
2 1 (0.73%) SharePoint
Applications
1 7 (5.11%) Microsoft Office
2 1 (0.73%) Microsoft Excel
2 1 (0.73%) MS Visio
Cloud Services
1 75 (54.74%) Azure
2 43 (31.39%) Microsoft 365
3 16 (11.68%) AWS
3 16 (11.68%) IaaS
3 16 (11.68%) SaaS
4 14 (10.22%) PaaS
5 11 (8.03%) Entra ID
6 9 (6.57%) GCP
7 7 (5.11%) Azure Sentinel
8 6 (4.38%) Azure Service Fabric
9 4 (2.92%) Amazon S3
9 4 (2.92%) Azure AKS
9 4 (2.92%) Google Kubernetes Engine
10 2 (1.46%) Power Platform
11 1 (0.73%) Cloud Computing
Communications & Networking
1 33 (24.09%) Firewall
2 27 (19.71%) DNS
3 26 (18.98%) DKIM
3 26 (18.98%) DMARC
3 26 (18.98%) Internet
4 10 (7.30%) Wireshark
5 9 (6.57%) Intrusion Detection
6 6 (4.38%) Network Security
6 6 (4.38%) TCP/IP
7 4 (2.92%) HTTP
7 4 (2.92%) SMTP
7 4 (2.92%) SSL
8 3 (2.19%) LAN
8 3 (2.19%) WAN
9 2 (1.46%) 802.11
9 2 (1.46%) Bluetooth
9 2 (1.46%) ZigBee
10 1 (0.73%) Cisco IPT
10 1 (0.73%) tcpdump
Database & Business Intelligence
1 6 (4.38%) Azure SQL Database
2 4 (2.92%) SQL Server
3 2 (1.46%) Power BI
4 1 (0.73%) Hadoop
Development Applications
1 9 (6.57%) Metasploit
2 6 (4.38%) Burp Suite
General
1 41 (29.93%) Finance
2 36 (26.28%) Social Skills
3 11 (8.03%) Banking
3 11 (8.03%) Inclusion and Diversity
3 11 (8.03%) Law
4 9 (6.57%) Analytical Skills
4 9 (6.57%) Legal
5 7 (5.11%) Marketing
6 6 (4.38%) Games
7 4 (2.92%) Presentation Skills
7 4 (2.92%) Retail Banking
8 3 (2.19%) Manufacturing
8 3 (2.19%) Public Sector
9 2 (1.46%) Cyber-Physical System
9 2 (1.46%) Investment Banking
9 2 (1.46%) Organisational Skills
9 2 (1.46%) Retail
10 1 (0.73%) Automotive
10 1 (0.73%) Financial Institution
10 1 (0.73%) Telecoms
Job Titles
1 68 (49.64%) Analyst
2 60 (43.80%) Security Analyst
3 27 (19.71%) Information Analyst
3 27 (19.71%) Information Security Analyst
4 22 (16.06%) Cybersecurity Analyst
4 22 (16.06%) Senior
5 17 (12.41%) Architect
6 14 (10.22%) Lead
7 11 (8.03%) Security Engineer
7 11 (8.03%) Senior Analyst
8 10 (7.30%) Senior Security Analyst
9 9 (6.57%) Security Manager
10 7 (5.11%) IT Analyst
10 7 (5.11%) IT Security Analyst
10 7 (5.11%) Lead Architect
11 6 (4.38%) Cybersecurity Architect
11 6 (4.38%) Email Analyst
11 6 (4.38%) SOC Engineer
11 6 (4.38%) Vulnerability Analyst
11 6 (4.38%) Vulnerability Management Analyst
Libraries, Frameworks & Software Standards
1 13 (9.49%) REST
2 10 (7.30%) OAuth
2 10 (7.30%) SAML
3 6 (4.38%) SOAP
3 6 (4.38%) Web Services
4 4 (2.92%) Kafka
5 2 (1.46%) 802.1X
Miscellaneous
1 51 (37.23%) Cyberattack
2 32 (23.36%) Cyber Threat
3 31 (22.63%) Cyber Kill Chain
4 20 (14.60%) Cyber Defence
5 17 (12.41%) Security Operations Centre
6 14 (10.22%) Management Information System
7 11 (8.03%) Public Cloud
8 8 (5.84%) Security Posture
9 6 (4.38%) Distributed Systems
10 4 (2.92%) Cloud Native
10 4 (2.92%) Operational Technology
10 4 (2.92%) SCADA
11 3 (2.19%) Insider Threat
11 3 (2.19%) Self-Motivation
12 2 (1.46%) CAN bus
12 2 (1.46%) IoT
12 2 (1.46%) NHS
13 1 (0.73%) Blog
13 1 (0.73%) Cybercrime
13 1 (0.73%) Data Centre
Operating Systems
1 13 (9.49%) Windows
2 7 (5.11%) Linux
2 7 (5.11%) Unix
3 4 (2.92%) CentOS
3 4 (2.92%) Solaris
3 4 (2.92%) Ubuntu
3 4 (2.92%) zOS
4 2 (1.46%) Windows Server
4 2 (1.46%) Windows XP
5 1 (0.73%) Mac OS X
Processes & Methodologies
1 79 (57.66%) Cybersecurity
2 77 (56.20%) SIEM
3 60 (43.80%) Information Security
4 58 (42.34%) Incident Response
5 54 (39.42%) Security Operations
6 49 (35.77%) Cloud Security
7 44 (32.12%) SOAR
8 42 (30.66%) Cyber Threat Intelligence
8 42 (30.66%) Threat Intelligence
9 38 (27.74%) Vulnerability Management
10 32 (23.36%) Vulnerability Remediation
11 27 (19.71%) Application Security
12 23 (16.79%) OWASP
12 23 (16.79%) Threat Modelling
13 19 (13.87%) Cyber Intelligence
14 18 (13.14%) Identity Access Management
15 17 (12.41%) Problem Management
16 15 (10.95%) Change Management
16 15 (10.95%) Continuous Improvement
16 15 (10.95%) DevSecOps
Programming Languages
1 7 (5.11%) SQL
2 3 (2.19%) Kusto Query Language
3 2 (1.46%) Python
4 1 (0.73%) Bash
4 1 (0.73%) C
4 1 (0.73%) Java
4 1 (0.73%) PowerShell
4 1 (0.73%) R
4 1 (0.73%) Scala
Qualifications
1 36 (26.28%) CISSP
2 28 (20.44%) CISM
3 24 (17.52%) GIAC
4 14 (10.22%) Degree
5 13 (9.49%) Security Cleared
6 11 (8.03%) SC Cleared
7 9 (6.57%) SANS
8 8 (5.84%) Computer Science Degree
9 7 (5.11%) CEH
10 6 (4.38%) AWS Certified Cloud Practitioner
10 6 (4.38%) DV Cleared
10 6 (4.38%) Master's Degree
11 5 (3.65%) (ISC)2 CCSP
11 5 (3.65%) CCSP
11 5 (3.65%) Cisco Certification
11 5 (3.65%) CREST Certified
11 5 (3.65%) CRISC
11 5 (3.65%) GCIH
11 5 (3.65%) GPEN
12 4 (2.92%) GCIA
Quality Assurance & Compliance
1 60 (43.80%) NIST
2 30 (21.90%) ISO/IEC 27001
3 20 (14.60%) NCSC
4 17 (12.41%) PCI DSS
5 13 (9.49%) GDPR
6 9 (6.57%) GRC
7 7 (5.11%) COBIT
8 6 (4.38%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
8 6 (4.38%) Web Application Security Consortium
9 4 (2.92%) Cyber Essentials
9 4 (2.92%) Cyber Essentials PLUS
9 4 (2.92%) ISO 9001
10 2 (1.46%) ISO 31000
10 2 (1.46%) NIST 800
10 2 (1.46%) SOC 2
11 1 (0.73%) Actionable Recommendations
11 1 (0.73%) California Consumer Privacy Act
11 1 (0.73%) HIPAA
11 1 (0.73%) PSD2
11 1 (0.73%) Sarbanes-Oxley
System Software
1 4 (2.92%) Active Directory
1 4 (2.92%) Docker
2 2 (1.46%) Virtual Machines
3 1 (0.73%) Hyper-V
Systems Management
1 26 (18.98%) CASB
2 6 (4.38%) Computer Emergency Response Teams
2 6 (4.38%) CSIRT
2 6 (4.38%) Kubernetes
2 6 (4.38%) Nmap
3 5 (3.65%) Terraform
4 4 (2.92%) QRadar
5 3 (2.19%) Nessus
6 1 (0.73%) Microsoft Intune
Vendors
1 29 (21.17%) Microsoft
2 14 (10.22%) Qualys
3 9 (6.57%) Splunk
4 3 (2.19%) IBM
4 3 (2.19%) Intel
5 1 (0.73%) CrowdStrike
5 1 (0.73%) Darktrace
5 1 (0.73%) Netskope
5 1 (0.73%) Palo Alto
5 1 (0.73%) VMware
5 1 (0.73%) Zscaler