The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
Associate Security Analyst (L1) Internally
1-2 yearsSkills to master
- Mastering alert triage, playbook adherence, basic log analysis, and understanding our specific security tools and environment.
You're ready to move on when
- Consistently accurate and timely triage of Tier 1 alerts.
- Successfully completing all steps in routine incident response playbooks.
- Demonstrating a proactive attitude towards learning new tools and techniques.
- Receiving positive feedback on documentation quality and teamwork.
- 2
IT Support / Network Administrator with Security Focus
2-3 years in IT Support, then 1-2 years focused on security tasksSkills to master
- Deepening knowledge of network protocols, operating system internals, and moving from reactive IT problem-solving to proactive security thinking.
You're ready to move on when
- Successfully implementing security configurations on network devices or servers.
- Proactively identifying and addressing security gaps in IT infrastructure.
- Taking ownership of security-related tickets and seeing them through to resolution.
- Demonstrating a strong interest and self-study in cybersecurity topics.
- 3
Graduates from a Cybersecurity Degree Programme
0-1 year in an entry-level security role, then moving to this levelSkills to master
- Translating academic knowledge into practical, real-world incident response and security operations, getting hands-on with enterprise-grade tools.
You're ready to move on when
- Successfully completing a cybersecurity internship or entry-level role.
- Demonstrating strong theoretical knowledge backed by practical lab experience.
- Quickly picking up new tools and processes in a professional environment.
- Showing initiative in learning about the company's specific security challenges.