Threat Modelling Job Trends in the UK excluding London

Threat Modelling
UK > UK excluding London

The table below provides summary statistics and salary benchmarking for jobs advertised in the UK excluding London requiring Threat Modelling skills. It covers permanent job vacancies from the 6 months leading up to 19 November 2025, with comparisons to the same periods in the previous two years.

6 months to
19 Nov 2025
Same period 2024 Same period 2023
Rank 454 510 514
Rank change year-on-year +56 +4 +55
Permanent jobs citing Threat Modelling 64 96 33
As % of all permanent jobs in the UK excluding London 0.17% 0.20% 0.11%
As % of the Processes & Methodologies category 0.21% 0.25% 0.12%
Number of salaries quoted 40 43 29
10th Percentile £48,165 £43,086 £47,533
25th Percentile £62,188 £50,000 £60,000
Median annual salary (50th Percentile) £80,000 £72,500 £62,500
Median % change year-on-year +10.34% +16.00% +5.00%
75th Percentile £90,000 £75,500 £63,750
90th Percentile - £90,000 £72,000
UK median annual salary £80,000 £72,500 £67,500
% change year-on-year +10.34% +7.41% -6.90%

All Process and Methodology Skills
UK excluding London

Threat Modelling falls under the Processes and Methodologies category. For comparison with the information above, the following table provides summary statistics for all permanent job vacancies requiring process or methodology skills in the UK excluding London.

Permanent vacancies with a requirement for process or methodology skills 30,524 38,256 28,303
As % of all permanent jobs advertised in the UK excluding London 83.33% 81.00% 93.89%
Number of salaries quoted 18,378 18,422 20,969
10th Percentile £27,000 £31,250 £28,500
25th Percentile £32,000 £40,000 £38,870
Median annual salary (50th Percentile) £47,500 £55,000 £52,500
Median % change year-on-year -13.64% +4.76% -
75th Percentile £65,000 £69,500 £67,500
90th Percentile £80,000 £82,500 £81,250
UK median annual salary £55,000 £60,000 £60,000
% change year-on-year -8.33% - -

Threat Modelling
Job Vacancy Trend in the UK excluding London

Historical trend showing the proportion of permanent IT job postings citing Threat Modelling relative to all permanent IT jobs advertised in the UK excluding London.

Threat Modelling job vacancy trend in the UK excluding London

Threat Modelling
Salary Trend in the UK excluding London

Salary distribution trend for jobs in the UK excluding London citing Threat Modelling.

Salary distribution trend for jobs in the UK excluding London citing Threat Modelling

Threat Modelling
Salary Histogram in the UK excluding London

Salary distribution for jobs citing Threat Modelling in the UK excluding London over the 6 months to 19 November 2025.

Salary histogram for Threat Modelling in the UK excluding London

Threat Modelling
Job Locations in the UK excluding London

The table below looks at the demand and provides a guide to the median salaries quoted in IT jobs citing Threat Modelling within the UK excluding London region over the 6 months to 19 November 2025. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Permanent
IT Job Ads
Median Salary
Past 6 Months
Median Salary
% Change
on Same Period
Last Year
Live
Jobs
South East +14 18 £61,000 -15.86% 28
South West +32 15 £88,750 +77.50% 28
North of England +53 9 £70,000 +12.00% 12
Scotland +10 9 £90,000 - 10
Midlands +47 7 £78,750 +8.62% 15
West Midlands +36 6 £78,750 +8.62% 14
East of England +12 5 £77,500 - 9
North West +30 4 £80,000 +60.00% 10
Yorkshire +13 4 £70,000 -30.00% 2
North East 0 1 £65,000 -
East Midlands - 1 - - 1
Wales - 1 £70,000 - 1
Northern Ireland - 1 - -
Threat Modelling
UK

Threat Modelling
Co-Occurring Skills & Capabilities in the UK excluding London by Category

The following tables expand on the one above by listing co-occurrences grouped by category. They cover the same employment type, locality and period, with up to 20 co-occurrences shown in each category:

Application Platforms
1 1 (1.56%) Confluence
Cloud Services
1 26 (40.63%) Azure
2 13 (20.31%) AWS
2 13 (20.31%) GitHub
3 12 (18.75%) GitHub Actions
4 10 (15.63%) PaaS
5 9 (14.06%) Azure DevOps
6 4 (6.25%) SaaS
7 3 (4.69%) Amazon ECS
7 3 (4.69%) Entra ID
7 3 (4.69%) GCP
7 3 (4.69%) IaaS
8 2 (3.13%) Azure Logic Apps
8 2 (3.13%) Azure Sentinel
9 1 (1.56%) Amazon EKS
9 1 (1.56%) Amazon GuardDuty
9 1 (1.56%) Amazon Macie
9 1 (1.56%) AWS Control Tower
9 1 (1.56%) Azure AKS
9 1 (1.56%) Azure API Management
9 1 (1.56%) Google Kubernetes Engine
Communications & Networking
1 15 (23.44%) Firewall
2 9 (14.06%) Network Security
3 4 (6.25%) DMZ
3 4 (6.25%) Modbus
4 3 (4.69%) VPN
4 3 (4.69%) Wireshark
5 2 (3.13%) Intrusion Detection
5 2 (3.13%) SSL
6 1 (1.56%) BGP
6 1 (1.56%) Broadband
6 1 (1.56%) EIGRP
6 1 (1.56%) HTTP
6 1 (1.56%) IKE
6 1 (1.56%) Internet
6 1 (1.56%) LAN
6 1 (1.56%) OSPF
6 1 (1.56%) TCP/IP
6 1 (1.56%) WAN
6 1 (1.56%) Wireless
6 1 (1.56%) WLAN
Development Applications
1 13 (20.31%) Jenkins
2 2 (3.13%) Burp Suite
3 1 (1.56%) Git
3 1 (1.56%) GitLab
3 1 (1.56%) JIRA
3 1 (1.56%) Metasploit
3 1 (1.56%) Snyk
General
1 28 (43.75%) Finance
2 12 (18.75%) Social Skills
3 7 (10.94%) Analytical Skills
4 5 (7.81%) Public Sector
5 3 (4.69%) Manufacturing
6 2 (3.13%) Law
7 1 (1.56%) Automotive
7 1 (1.56%) Avionics
7 1 (1.56%) Games
7 1 (1.56%) Inclusion and Diversity
7 1 (1.56%) Influencing Skills
7 1 (1.56%) Legal
7 1 (1.56%) Organisational Skills
7 1 (1.56%) Retail
Job Titles
1 33 (51.56%) Security Engineer
2 15 (23.44%) Applications Engineer
3 10 (15.63%) Lead
4 8 (12.50%) Architect
5 6 (9.38%) Consultant
5 6 (9.38%) Security Architect
6 4 (6.25%) Cybersecurity Engineer
6 4 (6.25%) Security Consultant
6 4 (6.25%) Senior
7 3 (4.69%) Cybersecurity Consultant
7 3 (4.69%) Operations Engineer
7 3 (4.69%) Senior Security Engineer
7 3 (4.69%) Threat Hunter
8 2 (3.13%) Analyst
8 2 (3.13%) Penetration Tester
8 2 (3.13%) Product Engineer
8 2 (3.13%) Tester
9 1 (1.56%) Azure Architect
9 1 (1.56%) Cyber Threat Analyst
9 1 (1.56%) IT Engineer
Libraries, Frameworks & Software Standards
1 8 (12.50%) YAML
2 3 (4.69%) OAuth
3 2 (3.13%) OAuth2
4 1 (1.56%) GraphQL
4 1 (1.56%) JWT
4 1 (1.56%) REST
4 1 (1.56%) SOAP
Miscellaneous
1 22 (34.38%) Security Posture
2 8 (12.50%) Cloud Security Posture
2 8 (12.50%) Operational Technology
3 7 (10.94%) Cloud Native
3 7 (10.94%) Cyber Kill Chain
4 5 (7.81%) SCADA
5 4 (6.25%) Cyber Threat
5 4 (6.25%) Cyberattack
5 4 (6.25%) Enterprise Software
5 4 (6.25%) Management Information System
5 4 (6.25%) PKI
6 3 (4.69%) Blog
6 3 (4.69%) Renewable Energy
7 2 (3.13%) Cyber Defence
7 2 (3.13%) Legacy Systems
8 1 (1.56%) DataPower
8 1 (1.56%) Distributed Denial-of-Service
8 1 (1.56%) Onboarding
Operating Systems
1 9 (14.06%) Linux
2 7 (10.94%) Windows
3 3 (4.69%) Mac OS
Processes & Methodologies
1 33 (51.56%) Cybersecurity
2 26 (40.63%) Application Security
3 25 (39.06%) Security Testing
4 22 (34.38%) SDLC
5 20 (31.25%) CI/CD
5 20 (31.25%) Penetration Testing
6 16 (25.00%) OWASP
7 15 (23.44%) Computer Science
7 15 (23.44%) DevOps
7 15 (23.44%) DevSecOps
7 15 (23.44%) Roadmaps
8 14 (21.88%) Agile
8 14 (21.88%) Cloud Security
8 14 (21.88%) Vulnerability Management
8 14 (21.88%) Vulnerability Remediation
9 13 (20.31%) Incident Response
9 13 (20.31%) Strategic Roadmap
10 12 (18.75%) Information Security
10 12 (18.75%) Security Architecture
10 12 (18.75%) Technology Transformation
Programming Languages
1 27 (42.19%) PowerShell
2 21 (32.81%) Python
3 16 (25.00%) Bash
4 2 (3.13%) Java
4 2 (3.13%) JavaScript
5 1 (1.56%) C
5 1 (1.56%) C++
5 1 (1.56%) Kusto Query Language
5 1 (1.56%) SQL
Qualifications
1 23 (35.94%) CISSP
2 19 (29.69%) Degree
3 14 (21.88%) Computer Science Degree
4 13 (20.31%) CREST Certified
5 12 (18.75%) SANS
5 12 (18.75%) Security Cleared
6 9 (14.06%) CISM
7 8 (12.50%) Master's Degree
7 8 (12.50%) SC Cleared
8 6 (9.38%) OSCP
9 5 (7.81%) CEH
9 5 (7.81%) Cisco Certification
9 5 (7.81%) DV Cleared
10 4 (6.25%) (ISC)2 CCSP
10 4 (6.25%) CompTIA Security+
10 4 (6.25%) GIAC
11 3 (4.69%) AWS Certification
11 3 (4.69%) GREM
12 2 (3.13%) CHECK Team Leader
12 2 (3.13%) CISA
Quality Assurance & Compliance
1 31 (48.44%) ISO/IEC 27001
2 27 (42.19%) NIST
3 19 (29.69%) NCSC
4 12 (18.75%) Accessibility
4 12 (18.75%) GDPR
5 7 (10.94%) PCI DSS
6 5 (7.81%) NIST 800
7 4 (6.25%) ISO/IEC 42001
7 4 (6.25%) JSP 440
8 3 (4.69%) GRC
9 2 (3.13%) Def Stans
10 1 (1.56%) Cyber Essentials
10 1 (1.56%) Cyber Essentials PLUS
10 1 (1.56%) ISO 31000
10 1 (1.56%) ISO/IEC 27002 (supersedes ISO/IEC 17799)
10 1 (1.56%) ISO/IEC 27005
System Software
1 3 (4.69%) Docker
2 2 (3.13%) Firmware
3 1 (1.56%) Active Directory
Systems Management
1 6 (9.38%) Kubernetes
2 3 (4.69%) Computer Incident Response Team
2 3 (4.69%) QRadar
3 2 (3.13%) Single Sign-On
3 2 (3.13%) Terraform
4 1 (1.56%) Ansible
4 1 (1.56%) CSIRT
4 1 (1.56%) Fluentd
4 1 (1.56%) Nmap
Vendors
1 12 (18.75%) Microsoft
2 6 (9.38%) Splunk
3 3 (4.69%) CrowdStrike
4 1 (1.56%) Checkmarx
4 1 (1.56%) CheckPoint
4 1 (1.56%) Cisco
4 1 (1.56%) Citrix
4 1 (1.56%) Cribl.io
4 1 (1.56%) CyberArk
4 1 (1.56%) Google
4 1 (1.56%) HP
4 1 (1.56%) IBM
4 1 (1.56%) Palo Alto
4 1 (1.56%) Pega
4 1 (1.56%) Qualys
4 1 (1.56%) Salesforce
4 1 (1.56%) Tenable