The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
Promotion from Information Security Assistant (L1)
1-2 yearsSkills to master
- Independent alert triage, basic vulnerability analysis, clear incident documentation, foundational scripting skills.
You're ready to move on when
- Consistently meeting MTTA targets for L1 alerts.
- Demonstrating initiative in taking on more complex tasks.
- Proactively identifying areas for process improvement.
- Receiving positive feedback on documentation and collaboration.
- 2
Graduate with Specialised Cybersecurity Degree
2-3 years (post-graduation, including internships)Skills to master
- Practical application of theoretical knowledge, hands-on experience with enterprise security tools, understanding of real-world threat landscapes.
You're ready to move on when
- Successful completion of security-focused internships or projects.
- Strong understanding of security frameworks and incident response.
- Ability to quickly adapt academic knowledge to practical scenarios.
- Relevant certifications (e.g., Security+, CySA+).
- 3
Transition from IT Support / Network Operations
2-4 years (in previous role, plus 1-2 years focused security experience)Skills to master
- Security-specific mindset (skepticism, threat modelling), incident response methodologies, use of security tools (SIEM, EDR), understanding of attack vectors.
You're ready to move on when
- Demonstrable interest in security (e.g., personal projects, certifications).
- Strong foundational IT/networking knowledge.
- Experience with troubleshooting and problem-solving in a production environment.
- Ability to learn and apply new security concepts rapidly.