Threat Modelling Jobs

Threat Modelling
UK

The following table provides summary statistics for permanent job vacancies with a requirement for Threat Modelling skills. Included is a benchmarking guide to the salaries offered in vacancies that have cited Threat Modelling over the 6 months to 1 June 2024 with a comparison to the same period in the previous 2 years.

6 months to
1 Jun 2024
Same period 2023 Same period 2022
Rank 750 540 739
Rank change year-on-year -210 +199 -2
Permanent jobs citing Threat Modelling 158 461 582
As % of all permanent jobs advertised in the UK 0.15% 0.49% 0.34%
As % of the Processes & Methodologies category 0.18% 0.51% 0.36%
Number of salaries quoted 115 253 280
10th Percentile £46,875 £44,192 £47,500
25th Percentile £57,250 £61,750 £60,000
Median annual salary (50th Percentile) £72,500 £82,500 £78,750
Median % change year-on-year -12.12% +4.76% +2.94%
75th Percentile £83,750 £100,000 £92,500
90th Percentile £101,250 £121,000 £101,250
UK excluding London median annual salary £65,000 £70,000 £72,000
% change year-on-year -7.14% -2.78% +10.77%

All Process and Methodology Skills
UK

Threat Modelling is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all permanent job vacancies with a requirement for process or methodology skills.

Permanent vacancies with a requirement for process or methodology skills 87,829 90,354 161,874
As % of all permanent jobs advertised in the UK 83.68% 95.46% 95.93%
Number of salaries quoted 61,251 54,292 82,971
10th Percentile £29,250 £34,000 £33,500
25th Percentile £40,000 £45,000 £43,750
Median annual salary (50th Percentile) £55,000 £60,800 £60,000
Median % change year-on-year -9.54% +1.33% +9.09%
75th Percentile £72,500 £81,250 £80,000
90th Percentile £92,500 £100,000 £96,250
UK excluding London median annual salary £50,000 £55,000 £52,500
% change year-on-year -9.09% +4.76% +9.38%

Threat Modelling
Job Vacancy Trend

Job postings citing Threat Modelling as a proportion of all IT jobs advertised.

Job vacancy trend for Threat Modelling in the UK

Threat Modelling
Salary Trend

3-month moving average salary quoted in jobs citing Threat Modelling.

Salary trend for Threat Modelling in the UK

Threat Modelling
Salary Histogram

Salary distribution for jobs citing Threat Modelling over the 6 months to 1 June 2024.

Salary histogram for Threat Modelling in the UK

Threat Modelling
Top 13 Job Locations

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Threat Modelling within the UK over the 6 months to 1 June 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
England -213 122 £70,000 -15.15% 72
UK excluding London -126 79 £65,000 -7.14% 40
London -71 49 £81,250 -4.41% 32
Work from Home -85 35 £75,000 -5.66% 34
North of England -5 27 £50,000 -28.57% 10
North West -20 21 £45,000 -35.71% 9
West Midlands -8 17 £72,500 +6.62% 8
Midlands -10 17 £72,500 +6.62% 8
South West -21 14 £72,500 +11.97% 4
South East -50 14 £62,000 -27.06% 16
Yorkshire +41 6 £50,000 -28.57% 1
Scotland -83 6 - - 1
East of England -1 1 - - 1

Threat Modelling
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Applications
1 12 (7.59%) Microsoft Office
2 9 (5.70%) Microsoft Excel
Cloud Services
1 82 (51.90%) AWS
2 79 (50.00%) Azure
3 29 (18.35%) GCP
4 19 (12.03%) Serverless
5 18 (11.39%) Microsoft 365
6 15 (9.49%) AWS CloudFormation
6 15 (9.49%) Virtual Private Cloud
7 14 (8.86%) Amazon CloudWatch
7 14 (8.86%) Amazon EC2
7 14 (8.86%) Amazon GuardDuty
7 14 (8.86%) Amazon S3
7 14 (8.86%) AWS CloudTrail
7 14 (8.86%) AWS Lambda
8 12 (7.59%) Power Platform
9 11 (6.96%) Cloud Computing
10 8 (5.06%) PaaS
11 6 (3.80%) Azure Service Fabric
11 6 (3.80%) Entra ID
11 6 (3.80%) IaaS
11 6 (3.80%) SaaS
Communications & Networking
1 31 (19.62%) Firewall
2 24 (15.19%) LAN
3 16 (10.13%) DNS
4 11 (6.96%) Intrusion Detection
5 10 (6.33%) Network Security
6 9 (5.70%) WAN
7 8 (5.06%) SSL
8 6 (3.80%) Internet
9 5 (3.16%) VPN
10 4 (2.53%) HTTP
10 4 (2.53%) SMTP
10 4 (2.53%) Wireless
10 4 (2.53%) Wireshark
11 2 (1.27%) 802.11
11 2 (1.27%) Bluetooth
11 2 (1.27%) ZigBee
12 1 (0.63%) NGFW
12 1 (0.63%) SD-WAN
12 1 (0.63%) TCP/IP
Database & Business Intelligence
1 14 (8.86%) Amazon RDS
2 9 (5.70%) Power BI
3 6 (3.80%) Azure SQL Database
4 3 (1.90%) Data Lake
5 2 (1.27%) Big Data
Development Applications
1 20 (12.66%) Jenkins
2 8 (5.06%) Burp Suite
3 7 (4.43%) Metasploit
4 3 (1.90%) sqlmap
5 2 (1.27%) Bitbucket
6 1 (0.63%) CircleCI
6 1 (0.63%) GitLab
6 1 (0.63%) Postman
6 1 (0.63%) Snyk
6 1 (0.63%) Visual Studio
General
1 48 (30.38%) Social Skills
2 38 (24.05%) Finance
3 17 (10.76%) Banking
3 17 (10.76%) Inclusion and Diversity
4 16 (10.13%) Law
4 16 (10.13%) Presentation Skills
4 16 (10.13%) Public Sector
5 14 (8.86%) Retail
6 10 (6.33%) Marketing
7 7 (4.43%) Analytical Skills
8 6 (3.80%) Investment Banking
8 6 (3.80%) Manufacturing
9 5 (3.16%) Legal
10 2 (1.27%) Cyber-Physical System
10 2 (1.27%) Financial Institution
10 2 (1.27%) Influencing Skills
10 2 (1.27%) Organisational Skills
11 1 (0.63%) Advertising
11 1 (0.63%) Automotive
11 1 (0.63%) Pharmaceutical
Job Titles
1 50 (31.65%) Architect
2 43 (27.22%) Security Architect
3 38 (24.05%) Senior
4 29 (18.35%) Security Engineer
5 22 (13.92%) Cybersecurity Architect
6 18 (11.39%) Lead
7 16 (10.13%) Senior Architect
8 15 (9.49%) AWS Engineer
9 13 (8.23%) Consultant
9 13 (8.23%) DevSecOps Engineer
9 13 (8.23%) Security Consultant
10 10 (6.33%) Analyst
10 10 (6.33%) Security Technical Architect
10 10 (6.33%) Senior Security Architect
10 10 (6.33%) Technical Architect
11 9 (5.70%) Cybersecurity Engineer
11 9 (5.70%) Security Analyst
12 8 (5.06%) Information Architect
12 8 (5.06%) Information Security Architect
13 7 (4.43%) Senior Consultant
Libraries, Frameworks & Software Standards
1 13 (8.23%) Web Services
2 9 (5.70%) OAuth
3 7 (4.43%) REST
3 7 (4.43%) SOAP
4 6 (3.80%) SAML
5 2 (1.27%) 802.1X
5 2 (1.27%) OAuth2
5 2 (1.27%) OpenID
6 1 (0.63%) .NET
6 1 (0.63%) ASP.NET
6 1 (0.63%) AWS CDK
6 1 (0.63%) HTML
6 1 (0.63%) JWT
6 1 (0.63%) Middleware
6 1 (0.63%) Swagger
6 1 (0.63%) YAML
Miscellaneous
1 35 (22.15%) Cyberattack
2 31 (19.62%) Management Information System
3 26 (16.46%) Cyber Threat
4 21 (13.29%) Data Centre
5 18 (11.39%) PKI
6 16 (10.13%) Security Posture
7 14 (8.86%) Onboarding
8 11 (6.96%) PropTech
9 10 (6.33%) iPhone
10 9 (5.70%) Public Cloud
11 8 (5.06%) Hybrid Cloud
11 8 (5.06%) IoT
12 6 (3.80%) Distributed Systems
12 6 (3.80%) Self-Motivation
13 5 (3.16%) Cyber Kill Chain
13 5 (3.16%) Mobile App
14 3 (1.90%) Client/Server
14 3 (1.90%) Cloud Native
14 3 (1.90%) SCADA
15 2 (1.27%) Renewable Energy
Operating Systems
1 27 (17.09%) Windows
2 9 (5.70%) Kali Linux
3 8 (5.06%) Unix
4 6 (3.80%) Android
4 6 (3.80%) Apple iOS
5 5 (3.16%) Linux
5 5 (3.16%) Windows Server
6 4 (2.53%) Windows XP
7 1 (0.63%) Red Hat Enterprise Linux
Processes & Methodologies
1 107 (67.72%) Cybersecurity
2 66 (41.77%) Information Security
3 55 (34.81%) Incident Response
4 46 (29.11%) Application Security
5 42 (26.58%) Penetration Testing
6 41 (25.95%) Vulnerability Management
7 32 (20.25%) Security Architecture
8 31 (19.62%) Cyber Threat Intelligence
8 31 (19.62%) Threat Intelligence
9 30 (18.99%) Threat Management
10 29 (18.35%) Stakeholder Management
11 28 (17.72%) Secure Coding
12 26 (16.46%) Cloud Security
12 26 (16.46%) SIEM
13 25 (15.82%) MITRE ATT&CK
14 24 (15.19%) OWASP
14 24 (15.19%) Roadmaps
15 23 (14.56%) Identity Access Management
15 23 (14.56%) Risk Management
16 22 (13.92%) SDLC
Programming Languages
1 41 (25.95%) Python
2 9 (5.70%) Java
3 8 (5.06%) Go
4 6 (3.80%) SQL
5 5 (3.16%) PowerShell
6 4 (2.53%) C#
7 3 (1.90%) JavaScript
8 2 (1.27%) C++
9 1 (0.63%) Dart
9 1 (0.63%) Kotlin
9 1 (0.63%) Lua
9 1 (0.63%) Objective-C
9 1 (0.63%) PHP
9 1 (0.63%) Ruby
9 1 (0.63%) Rust
9 1 (0.63%) Swift
Qualifications
1 77 (48.73%) CISSP
2 57 (36.08%) CISM
3 45 (28.48%) AWS Certification
4 39 (24.68%) GIAC
5 27 (17.09%) Degree
6 25 (15.82%) OSCP
7 24 (15.19%) CREST Certified
8 22 (13.92%) Azure Certification
8 22 (13.92%) Security Cleared
9 21 (13.29%) CRISC
9 21 (13.29%) SC Cleared
10 16 (10.13%) ISSMP
11 10 (6.33%) BPSS Clearance
11 10 (6.33%) CISA
12 9 (5.70%) CEH
12 9 (5.70%) Cisco Certification
12 9 (5.70%) Computer Science Degree
13 8 (5.06%) (ISC)2 CCSP
13 8 (5.06%) Master's Degree
13 8 (5.06%) SANS
Quality Assurance & Compliance
1 55 (34.81%) NIST
2 35 (22.15%) ISO/IEC 27001
3 26 (16.46%) COBIT
4 12 (7.59%) PCI DSS
5 8 (5.06%) Cyber Essentials
5 8 (5.06%) QA
6 7 (4.43%) SOC 2
7 6 (3.80%) Cyber Essentials PLUS
7 6 (3.80%) IASME
7 6 (3.80%) Web Application Security Consortium
8 5 (3.16%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
8 5 (3.16%) NIST 800
9 4 (2.53%) GDPR
9 4 (2.53%) NCSC
10 2 (1.27%) HIPAA
10 2 (1.27%) ISO 31000
11 1 (0.63%) GRC
11 1 (0.63%) GxP
11 1 (0.63%) IEC 61508
System Software
1 20 (12.66%) Active Directory
2 3 (1.90%) Docker
3 2 (1.27%) Virtual Machines
Systems Management
1 18 (11.39%) Kubernetes
2 17 (10.76%) Ansible
3 10 (6.33%) Nessus
4 7 (4.43%) Computer Emergency Response Teams
5 5 (3.16%) Nmap
5 5 (3.16%) Suricata
6 4 (2.53%) HP Fortify
7 2 (1.27%) QRadar
7 2 (1.27%) Terraform
8 1 (0.63%) Anchore
8 1 (0.63%) Computer Incident Response Team
8 1 (0.63%) Single Sign-On
Vendors
1 26 (16.46%) Microsoft
2 16 (10.13%) Alibaba
3 13 (8.23%) Google
4 9 (5.70%) Cisco
4 9 (5.70%) Splunk
5 6 (3.80%) Palo Alto
6 5 (3.16%) Juniper
7 4 (2.53%) Qualys
7 4 (2.53%) VMware
8 3 (1.90%) Veracode
9 2 (1.27%) Fortinet
9 2 (1.27%) IBM
10 1 (0.63%) Forcepoint
10 1 (0.63%) Intel
10 1 (0.63%) Netskope
10 1 (0.63%) Okta
10 1 (0.63%) Red Hat
10 1 (0.63%) Zscaler