Threat Modelling Contracts

Threat Modelling
UK

The following table provides summary statistics for contract job vacancies with a requirement for Threat Modelling skills. Included is a benchmarking guide to the contractor rates offered in vacancies that have cited Threat Modelling over the 6 months to 18 May 2024 with a comparison to the same period in the previous 2 years.

6 months to
18 May 2024
Same period 2023 Same period 2022
Rank 386 479 588
Rank change year-on-year +93 +109 -60
Contract jobs citing Threat Modelling 185 213 262
As % of all contract jobs advertised in the UK 0.43% 0.37% 0.30%
As % of the Processes & Methodologies category 0.50% 0.42% 0.33%
Number of daily rates quoted 95 135 172
10th Percentile £463 £513 £513
25th Percentile £513 £550 £550
Median daily rate (50th Percentile) £625 £650 £638
Median % change year-on-year -3.85% +1.96% +7.14%
75th Percentile £770 £748 £741
90th Percentile £823 £837 £850
UK excluding London median daily rate £575 £600 £625
% change year-on-year -4.17% -4.00% +7.30%
Number of hourly rates quoted 1 4 3
10th Percentile - £72.04 £42.00
25th Percentile £81.75 £73.30 £45.00
Median hourly rate £83.50 £74.40 £50.00
Median % change year-on-year +12.24% +48.79% -20.00%
75th Percentile £85.25 £81.09 -
90th Percentile - £92.44 -
UK excluding London median hourly rate £83.50 £74.40 -
% change year-on-year +12.24% - -

All Process and Methodology Skills
UK

Threat Modelling is in the Processes and Methodologies category. The following table is for comparison with the above and provides summary statistics for all contract job vacancies with a requirement for process or methodology skills.

Contract vacancies with a requirement for process or methodology skills 36,673 51,121 79,325
As % of all contract IT jobs advertised in the UK 86.13% 89.77% 90.61%
Number of daily rates quoted 23,631 35,432 55,673
10th Percentile £300 £325 £344
25th Percentile £413 £438 £430
Median daily rate (50th Percentile) £525 £550 £530
Median % change year-on-year -4.55% +3.77% +7.07%
75th Percentile £638 £650 £638
90th Percentile £750 £750 £738
UK excluding London median daily rate £500 £500 £480
% change year-on-year - +4.17% +9.09%
Number of hourly rates quoted 2,440 1,683 1,892
10th Percentile £12.75 £10.63 £12.50
25th Percentile £15.99 £16.01 £15.50
Median hourly rate £36.05 £36.00 £25.68
Median % change year-on-year +0.13% +40.19% +7.00%
75th Percentile £60.00 £65.00 £49.54
90th Percentile £72.50 £75.00 £65.00
UK excluding London median hourly rate £37.50 £35.00 £20.00
% change year-on-year +7.14% +75.00% -4.99%

Threat Modelling
Job Vacancy Trend

Job postings citing Threat Modelling as a proportion of all IT jobs advertised.

Job vacancy trend for Threat Modelling in the UK

Threat Modelling
Contractor Daily Rate Trend

3-month moving average daily rate quoted in jobs citing Threat Modelling.

Daily rate trend for Threat Modelling in the UK

Threat Modelling
Daily Rate Histogram

Daily rate distribution for jobs citing Threat Modelling over the 6 months to 18 May 2024.

Daily rate histogram for Threat Modelling in the UK

Threat Modelling
Contractor Hourly Rate Trend

3-month moving average hourly rates quoted in jobs citing Threat Modelling.

Hourly rate trend for Threat Modelling in the UK

Threat Modelling
Top 14 Contract Locations

The table below looks at the demand and provides a guide to the median contractor rates quoted in IT jobs citing Threat Modelling within the UK over the 6 months to 18 May 2024. The 'Rank Change' column provides an indication of the change in demand within each location based on the same 6 month period last year.

Location Rank Change
on Same Period
Last Year
Matching
Contract
IT Job Ads
Median
Daily Rate
Past 6 Months
Median Daily Rate
% Change
on Same Period
Last Year
Live
Jobs
England +94 144 £653 -5.09% 57
UK excluding London +86 91 £575 -4.17% 31
London +75 78 £700 - 29
Work from Home +75 53 £600 -5.88% 25
South East +59 42 £538 -10.42% 11
Scotland +53 29 £575 -3.04% 1
North of England +29 6 £575 -5.12% 6
South West +11 6 £550 -8.33% 4
Midlands +9 5 £571 -7.00% 8
East Midlands +10 4 £567 -10.43%
North West +17 3 £575 -5.12% 6
Yorkshire +15 3 - -
East of England +1 3 £750 -9.09% 1
West Midlands +14 1 £575 -11.54% 8

Threat Modelling
Co-occurring Skills and Capabilities by Category

The follow tables expand on the table above by listing co-occurrences grouped by category. The same employment type, locality and period is covered with up to 20 co-occurrences shown in each of the following categories:

Application Platforms
1 4 (2.16%) Confluence
2 1 (0.54%) Microsoft Exchange
2 1 (0.54%) SAS
Applications
1 7 (3.78%) MS Visio
2 5 (2.70%) Microsoft Excel
3 4 (2.16%) Simulink
4 3 (1.62%) Microsoft Office
4 3 (1.62%) Microsoft PowerPoint
Business Applications
1 4 (2.16%) Dynamics GP
2 3 (1.62%) Sparx Enterprise Architect
Cloud Services
1 39 (21.08%) Azure
2 29 (15.68%) AWS
3 16 (8.65%) GCP
4 11 (5.95%) Power Platform
5 8 (4.32%) Azure Sentinel
6 6 (3.24%) Microsoft 365
7 5 (2.70%) Azure DevOps
7 5 (2.70%) Virtual Private Cloud
8 4 (2.16%) Amazon S3
8 4 (2.16%) Cloud Computing
9 3 (1.62%) Amazon GuardDuty
9 3 (1.62%) Entra ID
10 2 (1.08%) GitHub
10 2 (1.08%) GitHub Actions
10 2 (1.08%) SaaS
10 2 (1.08%) Serverless
11 1 (0.54%) Amazon EC2
11 1 (0.54%) Google Kubernetes Engine
11 1 (0.54%) IaaS
11 1 (0.54%) Microsoft Purview
Communications & Networking
1 17 (9.19%) Network Security
2 13 (7.03%) Firewall
3 5 (2.70%) Intrusion Detection
3 5 (2.70%) SSL
4 4 (2.16%) SAN
4 4 (2.16%) SCCP
5 2 (1.08%) TCP/IP
5 2 (1.08%) WAN
6 1 (0.54%) Cisco IPT
6 1 (0.54%) HTTP
6 1 (0.54%) HTTPS
6 1 (0.54%) Kerberos
6 1 (0.54%) LAN
6 1 (0.54%) SD-WAN
6 1 (0.54%) WLAN
Database & Business Intelligence
1 1 (0.54%) Amazon RDS
1 1 (0.54%) BigQuery
1 1 (0.54%) Data Lake
1 1 (0.54%) MySQL
1 1 (0.54%) SAP HANA
1 1 (0.54%) SQL Server
Development Applications
1 12 (6.49%) Jenkins
2 10 (5.41%) GitLab
3 4 (2.16%) Burp Suite
3 4 (2.16%) JIRA
4 3 (1.62%) Metasploit
4 3 (1.62%) TeamCity
5 1 (0.54%) CircleCI
5 1 (0.54%) Git
General
1 38 (20.54%) Finance
2 37 (20.00%) Aerospace
3 33 (17.84%) Public Sector
4 17 (9.19%) Social Skills
5 11 (5.95%) Banking
6 8 (4.32%) Analytical Skills
7 6 (3.24%) Military
8 4 (2.16%) Front Office
9 3 (1.62%) Automotive
9 3 (1.62%) Retail
10 2 (1.08%) Financial Institution
10 2 (1.08%) Manufacturing
10 2 (1.08%) Multimedia
11 1 (0.54%) Electronics
11 1 (0.54%) Inclusion and Diversity
11 1 (0.54%) Presentation Skills
Job Titles
1 50 (27.03%) Architect
2 49 (26.49%) Security Architect
3 18 (9.73%) Analyst
3 18 (9.73%) Security Engineer
3 18 (9.73%) Senior
4 17 (9.19%) Consultant
4 17 (9.19%) Security Consultant
5 14 (7.57%) Applications Architect
6 13 (7.03%) Security Analyst
7 12 (6.49%) Security Advisor
8 9 (4.86%) Lead
9 7 (3.78%) Cybersecurity Analyst
10 6 (3.24%) Cybersecurity Specialist
10 6 (3.24%) DevSecOps Engineer
10 6 (3.24%) Lead Architect
10 6 (3.24%) Lead Security Architect
10 6 (3.24%) Security Specialist
11 5 (2.70%) AWS Security Architect
11 5 (2.70%) Enterprise Architect
11 5 (2.70%) Senior Analyst
Libraries, Frameworks & Software Standards
1 3 (1.62%) OAuth
1 3 (1.62%) OpenID
1 3 (1.62%) PyTorch
1 3 (1.62%) SAML
1 3 (1.62%) scikit-learn
1 3 (1.62%) TensorFlow
2 2 (1.08%) Kafka
3 1 (0.54%) .NET
3 1 (0.54%) JSON
3 1 (0.54%) RESTful
3 1 (0.54%) SailPoint
3 1 (0.54%) YAML
Miscellaneous
1 31 (16.76%) Cyber Threat
2 23 (12.43%) Management Information System
3 19 (10.27%) Security Posture
4 8 (4.32%) Cyber Kill Chain
5 7 (3.78%) Security Operations Centre
6 6 (3.24%) Cloud Native
6 6 (3.24%) PKI
6 6 (3.24%) Product Ownership
7 3 (1.62%) Algorithms
7 3 (1.62%) Cyber Defence
7 3 (1.62%) Data Protection Act
7 3 (1.62%) Mobile App
8 1 (0.54%) CSOC
8 1 (0.54%) Cyberattack
8 1 (0.54%) Distributed Denial-of-Service
8 1 (0.54%) Distributed Systems
8 1 (0.54%) FMCG
8 1 (0.54%) Onboarding
8 1 (0.54%) Public Cloud
8 1 (0.54%) YARA
Operating Systems
1 23 (12.43%) Windows
2 12 (6.49%) Linux
3 7 (3.78%) Unix
4 5 (2.70%) Windows Server
5 3 (1.62%) Kali Linux
Processes & Methodologies
1 70 (37.84%) Cybersecurity
2 51 (27.57%) Information Security
3 42 (22.70%) Application Security
4 39 (21.08%) CI/CD
5 38 (20.54%) Penetration Testing
6 37 (20.00%) Risk Management
7 32 (17.30%) Cloud Security
7 32 (17.30%) DevOps
7 32 (17.30%) Static Application Security Testing
8 31 (16.76%) Agile
9 28 (15.14%) Security Architecture
9 28 (15.14%) Security Operations
10 26 (14.05%) DevSecOps
10 26 (14.05%) Vulnerability Management
11 24 (12.97%) Dynamic Application Security Testing
12 22 (11.89%) Risk Assessment
13 20 (10.81%) Threat Intelligence
14 18 (9.73%) Cyber Threat Intelligence
15 17 (9.19%) Secure Coding
15 17 (9.19%) Security Testing
Programming Languages
1 7 (3.78%) PowerShell
2 6 (3.24%) C++
2 6 (3.24%) Java
3 4 (2.16%) C#
3 4 (2.16%) MATLAB
3 4 (2.16%) Python
4 2 (1.08%) SQL
5 1 (0.54%) Go
5 1 (0.54%) Kusto Query Language
Qualifications
1 62 (33.51%) Security Cleared
2 60 (32.43%) SC Cleared
3 44 (23.78%) CISSP
4 28 (15.14%) Degree
5 22 (11.89%) CISM
6 12 (6.49%) Computer Science Degree
7 9 (4.86%) CISA
7 9 (4.86%) DV Cleared
7 9 (4.86%) ISO 27001 Lead Auditor
7 9 (4.86%) ISO 27001 Lead Implementer
8 8 (4.32%) ITIL Certification
9 7 (3.78%) GSEC
9 7 (3.78%) MCSE
9 7 (3.78%) Microsoft Certification
9 7 (3.78%) OSCP
10 6 (3.24%) GREM
11 5 (2.70%) CEH
11 5 (2.70%) CRISC
11 5 (2.70%) SANS
12 4 (2.16%) CSSLP
Quality Assurance & Compliance
1 33 (17.84%) ISO/IEC 27001
2 28 (15.14%) NIST
3 10 (5.41%) NCSC
4 9 (4.86%) QA
5 8 (4.32%) Cyber Essentials
6 6 (3.24%) Disclosure Scotland
7 5 (2.70%) GDPR
8 4 (2.16%) COBIT
8 4 (2.16%) ISO 31000
8 4 (2.16%) PCI DSS
9 3 (1.62%) Actionable Recommendations
9 3 (1.62%) HMG Security Policy Framework
10 2 (1.08%) COSO
10 2 (1.08%) ISO 22301
10 2 (1.08%) PMO
11 1 (0.54%) Cyber Essentials PLUS
11 1 (0.54%) GRC
11 1 (0.54%) HIPAA
11 1 (0.54%) NIST 800
System Software
1 6 (3.24%) Active Directory
2 5 (2.70%) Hyper-V
3 2 (1.08%) Docker
Systems Management
1 15 (8.11%) Terraform
2 5 (2.70%) Nessus
2 5 (2.70%) SCCM
3 4 (2.16%) Kubernetes
4 2 (1.08%) HP Fortify
4 2 (1.08%) Microsoft Intune
4 2 (1.08%) Single Sign-On
5 1 (0.54%) Ansible
5 1 (0.54%) CASB
5 1 (0.54%) Nmap
Vendors
1 17 (9.19%) Microsoft
2 14 (7.57%) Google
3 6 (3.24%) SAP
4 5 (2.70%) Qualys
5 4 (2.16%) Atlassian
6 3 (1.62%) Oracle
6 3 (1.62%) Sparx
6 3 (1.62%) Unisys
7 2 (1.08%) Cisco
7 2 (1.08%) Cybereason
7 2 (1.08%) Rapid7
7 2 (1.08%) Splunk
8 1 (0.54%) CrowdStrike
8 1 (0.54%) CyberArk
8 1 (0.54%) Fortinet
8 1 (0.54%) IBM
8 1 (0.54%) Intel
8 1 (0.54%) Varonis