The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
Senior Network Security Analyst (L3)
3-5 years as a Senior AnalystSkills to master
- Leading complex investigations end-to-end, developing new detection content, mentoring junior team members, making sound technical decisions under pressure, and taking ownership of significant workstreams.
You're ready to move on when
- You're consistently the go-to person for the trickiest incidents.
- You've successfully led the technical aspects of multiple major security projects.
- You've actively mentored junior analysts, and they've shown demonstrable growth.
- You proactively identify security gaps and propose solutions, not just react to problems.
- 2
Security Engineer (from another domain, e.g., Cloud Security, Application Security)
5-8 years in a related security engineering roleSkills to master
- Deepening network security fundamentals (TCP/IP, firewalls, packet analysis), understanding incident response processes specific to network threats, and gaining hands-on experience with SIEM and EDR platforms in a network context.
You're ready to move on when
- You've taken on network security responsibilities in your current role (e.g., securing cloud networks).
- You've actively pursued network security certifications or self-study.
- You demonstrate a strong understanding of network attack vectors and defence strategies.
- You're keen to pivot your deep technical skills into a dedicated network defence role.
- 3
Network Engineer with strong Security Focus
8-10 years as a Network Engineer, with at least 3-5 years focused on security aspectsSkills to master
- Transitioning from network operations to security operations, understanding threat intelligence, incident response playbooks, and how to use security tools (SIEM, EDR) for detection and analysis, not just network performance.
You're ready to move on when
- You've been responsible for firewall policy management and network segmentation.
- You're the person who spots suspicious network traffic that others miss.
- You've actively pursued security certifications (e.g., CCNA Security, Palo Alto PCNSE).
- You're passionate about moving from building networks to actively defending them from cyber threats.